# Senior Manager Cybersecurity

## Details

- **Company:** [Esports Foundation](https://hitmarker.net/companies/esports-foundation.md)
- **Location:** Riyadh, Saudi Arabia
- **Contract type:** Full Time
- **Level:** Senior \(5+ years\)
- **Tags:** Cyber Security, Information Technology \(IT\), Project Management, Operations
- **Posted:** 2026-05-07
- **Apply:** [View and apply on Hitmarker](https://hitmarker.net/jobs/esports-foundation-senior-manager-cybersecurity-4448460)

## Description

Team: Cybersecurity

Activity: Full-time

Role grade: Senior Manager (7)

Direct reports: 3

Indirect reports: 0

Reporting to: Chief Finance &amp; Business Services Officer

Role location: Riyadh, Saudi Arabia

**Job Purpose:** As the Senior Manager Cybersecurity, you will lead and oversee all cybersecurity domains across Governance, Risk &amp; Compliance (GRC), Cybersecurity Operations, and Data Protection &amp; Privacy. This role involves leading cybersecurity at the team or departmental level, ensuring that all strategic initiatives are translated into effective operational controls while maintaining alignment with the organization's business goals.

### **Duties and Responsibilities**

**Strategic Oversight:**

- Define and drive the overall cybersecurity strategy across GRC, Operations, and Data Protection functions.
- Ensure alignment between cybersecurity initiatives and business objectives.

**Governance, Risk &amp; Compliance (GRC):**

- Oversee development and continuous improvement of cybersecurity policies and procedures aligned with NCA, ISO 27001, and NIST.
- Ensure enterprise-wide risk management practices including risk assessments, risk registers, and treatment plans.
- Monitor compliance posture and report cybersecurity KPIs and risks to executive management**.**

**Cybersecurity Operations:**

- Oversee cybersecurity operations including SOC, incident response, vulnerability management, and threat intelligence.
- Ensure effective detection, response, and recovery capabilities (MTTD, MTTR).
- Direct handling of major incidents and ensure proper escalation and reporting to NCA**.**

**Data Protection &amp; Privacy (NDMO &amp; PDPL):**

- Ensure compliance with NDMO Data Governance and PDPL regulations.
- Oversee implementation of data classification, data protection, and data lifecycle management.
- Ensure mechanisms for consent management, Data Subject Rights (DSR), and data retentionpolicies are implemented.

**Cross-Functional Integration:**

- Ensure alignment and integration between GRC, Operations, and Data functions.
- Embed cybersecurity and data protection requirements into business processes, procurement, and digital initiatives (Secure by Design).

**Third-Party &amp; Supply Chain Security:**

- Oversee third-party risk management ensuring vendor compliance with NCA and data protection regulations.

**Audit &amp; Assurance:**

- Lead internal and external audits across cybersecurity and data protection domains.
- Ensure timely remediation of findings and compliance gaps.

**Business Continuity &amp; Resilience**

- Ensure cybersecurity strategies and controls are fully integrated with the organization’s Business Continuity Planning (BCP).

**Leadership &amp; Resource Management**

- Lead and manage the three cybersecurity managers (GRC, Operations, Data).
- Ensure effective resource allocation, performance management, and team development.

**Awareness &amp; Culture**

- Govern organization-wide cybersecurity and data privacy awareness programs.

### **Education and Experience**

- Bachelor’s degree in cybersecurity – master’s degree in Cybersecurity.

- 7+ years of experience in cybersecurity.

### **Knowledge, Skills, and Abilities**

- Deep knowledge of cybersecurity, data protection, and data governance regulations (NCA, NDMO, ISO and PDPL).
- Expertise in Governance, Risk, and Compliance (GRC) methodologies.
- High-level decision-making and strategic thinking.
- Exceptional leadership and the ability to manage cross-functional teams under pressure.
- Proficiency in developing and managing Cybersecurity Incident Response Plans (CIRP).
- Strong expertise across GRC, Security Operations, and Data Privacy domains.
- Proven ability to lead multi-functional cybersecurity teams.
- Strong understanding of incident response, secure architecture, and data protection controls.
- Ability to translate cybersecurity and data risks into business impact for executive leadership.
- Bilingual proficiency in Arabic and English

### **Benefits**

- Relocation support
- Transportation allowance
- Competitive compensation
- Housing allowance
- VIP medical insurance
- Opportunity to work on a new exciting project with a group of passionate professionals. You will get the freedom to excel and make a real impact

### **Diversity disclaimer**

Our mission is to build a diverse organization where our members, regardless of background or identity, have a sense of belonging. We genuinely believe that thanks to creating a collaborative environment where different perspectives are valued, we can achieve more. Together, we want to reshape the boundaries of what is achievable in the esports domain.
