Associate Principal Job

Elm Company


Date: 2 weeks ago
City: Riyadh
Contract type: Full time
ROLE PURPOSE

The aim is to state the overall significance of the job from the organization’s perspective.

Perform and support risk-based information security audits covering cybersecurity, access controls, data privacy, and protection of sensitive data; contribute to providing independent assurance and advisory services to enhance governance, control effectiveness, and overall security posture.

Key Accountabilities & Activities

This section describes the principal outputs required from the job.

Key Accountabilities

Key Activities

  • Risk-Based Planning & Prioritization
  • Define and execute the Information Security audit plan covering cybersecurity, access controls, and protection of sensitive data.
  • Evaluate and prioritize security-related risks and determine high-priority audit engagements for execution.
  • Security Assurance & Advisory
  • Provide assurance and consultancy on information security governance, policies, procedures, and regulatory compliance.
  • Recommend improvements to information security controls to address vulnerabilities and strengthen defense mechanisms.
  • Provide reasonable assurance for compliance with applicable security standards to ensure data confidentiality, integrity, and availability.
  • Threat-Led Testing & Technical Assessments
  • Conduct or oversee compromise assessment and penetration testing activities to evaluate the effectiveness of existing security defenses, detect potential breaches, and validate remediation efforts.
  • Conduct formal audits and gap assessments against national, regional, and industry security standards.
  • Privacy, Data Governance & AI Ethics
  • Audit data privacy, governance, and protection mechanisms to ensure adherence to applicable laws and internal policies.
  • Evaluate the AI lifecycle from data acquisition to deployment to ensure fairness, transparency, and compliance with ethical and regulatory requirements.
  • Assess controls that influence user trust, service reliability, and the organization’s overall security posture.
  • Follow-Up & Performance Metrics
  • Monitor implementation of information security-related corrective actions to ensure timely and effective resolution.
  • Develop and review periodic information security audit metrics to monitor performance, risk coverage, and control effectiveness.
  • Special Assignments & Reporting
  • Perform special security-related audit assignments based on management requests.
  • Issue concise reports with risk-ranked findings, root causes, and actionable recommendations; brief management/committee.
  • Policies, Processes & Procedures
  • Follow all relevant departmental policies, processes, standard operating procedures and instructions so that work is carried out in a controlled and consistent manner.
  • Comply with all relevant safety, quality and environmental management policies, procedures and controls to ensure a healthy and safe work environment.
  • Information Security
  • Ensure the implementation of various information Security practices and standards to ensure compliance with relevant policies and the protection of ELM data and information.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Car Polish and Window Tinting- Filipino, Indian, Nepalese, Bangladesh

Taeyen-تعيين, Riyadh
1 day ago
Job Title: Car Polisher & Window Tinting TechnicianLocation: Dammam, Saudi ArabiaHiring Type: Local hiring only (Transferable Iqama required)Nationality Preferred: Filipino, Indian, Nepalese, BangladeshiJob Description:We are looking for a skilled and experienced Car Polisher & Window Tinting Technician to join our team in Dammam. The ideal candidate should have hands-on experience in car detailing, polishing, and professional window tint installation.Key Responsibilities:Perform...

Actuarial Analyst KSA

The Cigna Group, Riyadh
3 days ago
Job Description: Actuarial Associate Analyst Cigna Saudi Arabia, a branch of Cigna Worldwide Insurance Company, a leading global health insurer, is looking to appoint an Actuarial Analyst based in Riyadh. This is a new position required as the local office develops its actuarial function. While the main area of focus will be the KSA market, the successful candidate will work...

Sales Specialist - Data & AI Security

Veeam Software, Riyadh
3 days ago
Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in...