الوصف الوظيفي
الأدوار والمسؤوليات
المتخصص في إدارة التغيير تكنولوجيا المعلومات مسؤول عن قيادة تسليم برامج وشدمات الاعتماد الأمن السيبراني الشامل وخدمات الضمان من البداية للنهاية. يشرف على تقييمات الاعتماد، تدقيق القطاعات الحيوية، وتطوير منهجيات وأطر موحدة. يضمن فاعلية الاتساق والتحسين المستمر لعمليات الاعتماد مع تحويل الأهداف الاستراتيجية إلى برامج قابلة للتنفيذ. كما يقود تفاعل أصحاب المصلحة، وإدارة الفريق، وتنفيذ مبادرات الاعتماد الأمني على المستوى الوطني. المسؤوليات الرئيسية: قيادة تسليم جميع الخدمات والبرامج الاعتمادية من البداية للنهاية؛ الإشراف على تقييم مراجعة الاعتماد لجميع البرامج؛ المسؤولية عن تدقيق القطاعات الحيوية كقائد الاعتماد؛ وضع ومراقبة وتحسين منهجيات التدقيق الموحدة والممارسات ومعايير الاعتماد. تقييم مستمر وتحسين كفاءة وفاعلية برنامج الاعتماد. ترجمة التوجيه الاستراتيجي من رئيس القسم إلى مشاريع وبرامج قابلة للتنفيذ. التخطيط والبناء والتشغيل لمعايير الاعتماد الأمني السيبراني وآليات الضمان ذات الصلة. التخطيط والتحديد الأولويات ومتابعة تسليم المشاريع والمبادرات ضمن محفظة خدمات الاعتماد. تقديم حلول للتحديات التي تواجه تشغيل والترويج لخدمات الضمان. المتابعة مع الإدارة العليا بشأن الموارد والمتطلبات من أجل مصلحة القسم. إدارة ومراقبة ودعم التخطيط والإعداد والتنفيذ للفعاليات العامة المتعلقة بالاعتماد (ورش عمل، تدريبات، مؤتمرات، إلخ). التفاعل مع الأطراف المعنية، وتقديم تقييمات خبراء حول التحديات والرؤى لث فريق التشغيل. التنسيق مع أنشطة الأقسام الأخرى فيما يتعلق بالضمان. إدارة تفاعل أصحاب المصلحة للتعاون مع المشاريع الداخلية والخارجية. إدارة وتوجيه وقيادة فريق الاعتماد وتحسين تقديم الخدمة (الإرشاد التشغيلي، التطوير المهني، وتعزيز القدرات).
الملف المرغوب للمترشح
التعليم والخبرة: درجة الماجستير في تكنولوجيا المعلومات أو الأمن السيبراني أو إدارة المخاطر أو المجال ذات الصلة، أو خبرة لا تقل عن 15 عامًا ذات صلة. ما لا يقل عن 6 سنوات من الخبرة في تقييم الأمن السيبراني، تدقيق تقنية المعلومات، أو أدوار ذات صلة بالاعتماد. خلفية قوية في حوكمة الأمن السيبراني، المخاطر والامتثال. الشهادات (مفضلة): CISA، ISO 27001 Lead Auditor/Implementer. COBIT، CRISC، CGEIT، أو شهادات أخرى في الحوكمة وإدارة المخاطر. المهارات التقنية: معرفة قوية بمعايير الأمن السيبراني وأمن المعلومات (ISO 27001، NIA، COBIT، Common Criteria، إلخ). فهم أطر الاعتماد والاعتماد (ISO 17021، 17024، 17065، 17025، 27006). خبرة في تطوير المعايير والتوجيهات الفنية وSOPs ووثائق التدقيق. خلفية قوية في إدارة المخاطر وتقييم الامتثال. خبرة مثبتة في إدارة المشاريع وتنفيذ المبادرات في الوقت المحدد، ضمن النطاق والميزانية. خبرة في الامتثال التنظيمي وتطوير معايير الأمن السيبراني الوطنية. المهارات الأساسية: مهارات كتابة تقارير فنية وتوثيق قوية. مهارات اتصال وتقديم ممتازة، بما في ذلك إحاطة التنفيذيين العليا. قدرات تحليلية قوية، وحل مشكلات، وتفكير نقدي. القدرة على إدارة مشاريع متعددة وأصحاب مصلحة في بيئات معقدة. الكفاءات السلوكية: قيادة قوية وقدرات إدارة الفريق. القدرة على العمل تحت الضغط وإدارة الأولويات المتنافسة بفعالية. دقة عالية مع التزام بالجودة والدقة. مهارات التعامل مع الآخرين وبناء العلاقات مع أصحاب المصلحة. القدرة على العمل بشكل مستقل وقيادة المبادرات بشكل استباقي. اللغة: الإنجليزية (مطلوب) التوفر: في أقرب وقت ممكن مدة العقد 12 شهراً، مع إمكانية التمديد بناءً على متطلبات القسم.
Job Description
Roles & Responsibilities
The ICT Change Management Specialist is responsible for leading the end-to-end delivery of cybersecurity certification programs and assurance services. The role oversees certification assessments, critical sector audits, and the development of standardized methodologies and frameworks. It ensures the effectiveness, consistency, and continuous improvement of certification operations while translating strategic objectives into executable programs. The role also leads stakeholder engagement, team management, and the delivery of national-level cybersecurity certification initiatives. Key Responsibilities : Lead end-to-end delivery of all certification services and programs Oversee certification review assessment for all certification programs Responsible for critical sector audits as the Certification Lead Establish, monitor and enhance standardized audit methodologies, practices, and certification standards. Continuously assess and improve the efficiency and effectiveness of the Certification program. Translate the strategic direction from the department head into actionable projects and programs. Plan, build and operate cybersecurity certification standards and related assurance mechanisms Plan, prioritize, and oversee delivery of projects and initiatives within the Certification Services portfolio Provide solutions for challenges encountered in the operation and promotion of assurance services. Follow-up with the top management on resources and requirements for the benefits of the department. Manage, monitor and support the planning, preparation and delivery of certification related public events (workshops, trainings, conferences, etc.) Interact with stakeholders, providing expert feedback on challenges and insights to the operation team. Coordinate with other departments activities in relation to assurance. Manage stakeholder interaction for collaboration with internal and external projects Manage, mentor and lead the certification team and improve service delivery (operational guidance, professional development, and capability enhancement)
Desired Candidate Profile
Education & Experience: Master s degree in IT, Cybersecurity, Risk Management, or related field, or minimum 15 years of relevant experience. At least 6 years of experience in cybersecurity assessment, IT auditing, or certification-related roles. Strong background in cybersecurity governance, risk, and compliance. Certifications (Preferred): CISA, ISO 27001 Lead Auditor/Implementer. COBIT, CRISC, CGEIT, or other governance and risk management certifications. Technical Skills: Strong knowledge of cybersecurity and information security standards (ISO 27001, NIA, COBIT, Common Criteria, etc.). Understanding of accreditation and certification frameworks (ISO 17021, 17024, 17065, 17025, 27006). Experience in developing standards, technical directives, SOPs, and audit documentation. Strong background in risk management and compliance assessment. Proven project management experience delivering initiatives on time, within scope, and budget. Experience in regulatory compliance and national cybersecurity standard development. Core Skills: Strong technical report writing and documentation skills. Excellent communication and presentation skills, including briefing senior executives. Strong analytical, problem-solving, and critical thinking abilities. Ability to manage multiple projects and stakeholders in complex environments. Behavioral Competencies: Strong leadership and team management capabilities. Ability to work under pressure and manage competing priorities effectively. High attention to detail with a commitment to quality and accuracy. Strong interpersonal and stakeholder engagement skills. Ability to work independently and drive initiatives proactively. Language: English (required) Availability: As soon as possible The contract duration is 12 months, with the possibility of extension based on departmental requirements.