info الوصف
الوظيفي
Senior Risk Consultant is required to assist in day to day business, needs for risk management activities which involves analyzing risks as well as identifying, describing and estimating the risks affecting the business. Also it is required for conducting audits of policy and compliance to standards, including liaison with inte
al and exte
al auditors. Information Security Management.·Risk Management.·Policy & procedures development and implementation.·Installation and maintenance of information security controls.·Audit and compliance with defined standards.·Support to new Projects/Initiatives. Senior Risk Consultant for establishing and quantifying the company 'risk appetite and preparing risk reporting in an appropriate way for different audiences inte
ally. Also conducting audits of policy and compliance to standards, including liaison with inte
aland exte
al auditors as well as Performing the yearly review of the information security policies, processes and procedures. ·Planning, designing and implementing an overall risk management process of the Petro Rabigh. ·Risk assessment, which involves analyzing risks as well as identifying, describing and estimating the risks affecting the business. ·Risk evaluation, which involves comparing estimated risks with criteria established by the company such as costs, legal requirements and environmental factors, and evaluating previous handling of risks. ·Establishing and quantifying the company 'risk appetite'. ·Risk reporting in an appropriate way for different audiences. ·Ensure compliance with approved information security framework (policies, processes, etc.). ·Corporate gove
ance involving exte
al risk reporting to stakeholders. ·Carrying out processes such as purchasing insurance, implementing health and safety measures and making business continuity plans. ·Ensure compliance with approved information security risk management methodology. ·Ensure that inte
al security controls are in place, documented and followed. ·Monitor compliance with associated policies in relation to the protection of personal data. ·Maintain information security records in accordance with defined policies and procedures. ·Conducting audits of policy and compliance to standards, including liaison with inte
al and exte
al auditors. ·Providing support, education and training to staff to build risk awareness within Petro Rabigh.