
Senior Cybersecurity Risk & Resilience Consultant
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Jordan.
• Support the planning and execution of Risk & Resilience engagements according to established methodologies, project plans, and schedules.
• Conduct assessments of cybersecurity, technology, and enterprise risks, encompassing customer systems, platforms, digital services, technology initiatives, regulatory assessments, NCA compliance activities, and ad hoc risk evaluations.
• Establish, update, and enhance risk registers throughout the entire risk lifecycle.
• Create, monitor, and report on risk treatment plans, mitigation strategies, and remediation efforts.
• Manage risk acceptance and exception processes, which include impact assessments, compensating controls, stakeholder engagement, approvals, and revalidations.
• Evaluate technology changes, cloud deployments, digital transformation projects, third-party services, and strategic initiatives for potential emerging risks.
• Provide risk advisory services related to infrastructure, cloud security, cybersecurity controls, secure software development, digital platforms, data protection, and emerging technologies.
• Enhance cybersecurity risk management frameworks, methodologies, standards, templates, and governance processes.
• Contribute to the development of cybersecurity risk strategies, roadmaps, risk appetite statements, and prioritization of mitigations.
• Collaborate with business, technology, cybersecurity, and project teams to deliver actionable insights.
• Monitor Key Risk Indicators (KRIs), risk trends, emerging threats, and overdue remediation actions.
• Compile and present risk reports, dashboards, management updates, and insights for executive-level audiences.
• Foster a risk-aware culture through engagement with stakeholders, awareness initiatives, workshops, and advisory sessions.
• Ensure compliance with internal policies, regulatory requirements, and industry standards.
• 8–10 years of overall experience.
• Demonstrated expertise in cybersecurity risk and resilience consulting.
• Extensive experience in conducting cybersecurity and technology risk assessments across systems, digital services, cloud environments, and technology projects.
• Practical experience in managing risk registers and the complete risk lifecycle, including assessment, treatment, acceptance, exceptions, and ongoing monitoring.
• Proven ability to develop and track risk treatment and remediation plans, including assessment of control gaps and compensating controls.
• Proficient in advising on risks associated with infrastructure, cloud security, third-party entities, secure software development, and data protection.
• Experience in creating or enhancing cybersecurity risk frameworks, methodologies, risk appetite statements, and key risk indicators (KRIs).
• Familiarity with NCA ECC, SAMA requirements, and ISO 27001.
• Bilingual in Arabic and English, both written and spoken.
• 2-year project engagement.
• Information on the Global Consulting Bootcamp provided.
• Details regarding the MC Club provided.
Reli Group
Second Nature
ASRC Federal
Kyndryl
Get handpicked remote jobs straight to your inbox weekly.