—
• Conduct risk assessments, compliance gap analyses, and control effectiveness reviews for client organisations.
• Develop GRC policies, procedures, and governance frameworks tailored to client context and regulatory requirements.
• Support the preparation of audit reports, risk registers, and board-level risk dashboards.
• Assist clients in achieving and maintaining ISO 27001, NCA ECC, or SAMA compliance certification.
• Collaborate with senior consultants to deliver GRC engagements on time and to quality standards.
• Bachelor's or Master's degree in Information Security, Risk Management, or related field.
• 3-5 years of experience in GRC consulting, internal audit, or compliance roles.
• Professional certification in progress or obtained: CISA, CISM, ISO 27001 Foundation/Implementer.
• Working knowledge of GRC tools (ServiceNow GRC, RSA Archer, or equivalent).
• Strong report writing and analytical skills; ability to translate complex regulatory requirements into actionable plans.
• Competitive salary and performance-based bonus scheme.
• Flexible and hybrid working arrangements.
• Continuous learning budget and access to Yellomind Academy programmes.
• Health and wellness coverage.
• International exposure through cross-border client engagements across MENA & Africa.
• Clear career progression framework with mentorship support.
• Dynamic, collaborative team culture driven by innovation and excellence.