Back to jobs
New

Cybersecurity Risk Lead

Riyadh, Riyadh, Saudi Arabia

Who Are We


HALA is a leading fintech player in the MENAP region that aims to redefine financial services and build the future bank of SMEs. HALA aims at empowering SMEs to start, run, and grow their businesses by providing them with cutting-edge financial and technological tools.


HALA currently holds multiple entities in UAE, Saudi Arabia and Egypt (including HALA Payments, HALA Cashier and HALA Logistics) and offers solutions that enable merchants to digitize their payments as well as manage their sales and operations.


Founded in 2017, HALA is currently duly licensed by the Saudi Arabian Central Bank as well as the Financials Services Regulatory Authority (FSRA) in Abu Dhabi Global Market.

Job Summary: 

The Cybersecurity Risk Lead's primary function is to develop and govern the overarching risk management methodology to systematically identify, assess, and prioritize cybersecurity threats, vulnerabilities, and potential business impacts; this includes maintaining a corporate risk register, defining the acceptable risk appetite with senior leadership, monitoring the effectiveness of security controls against compliance frameworks (like CSF or NCA), and translating complex technical risk scenarios into clear, actionable business language for executive reporting and resource allocation to ensure risk mitigation aligns with organizational objectives and regulatory requirements.

 

Tasks & Responsibilities:

  • Lead HALA’s cyber risk management program aligned to SAMA CSF and NCA ECC-2. 

  • Own risk assessments, control testing, risk registers, and treatment plans across tech, product, cloud, and third parties.

  • Define cyber risk appetite, KRIs/KPIs, and executive dashboards (residual risk, control maturity, audit findings).

  • Support regulatory exams, internal/external audits, and policy/standard lifecycle.

  • Oversee third-party cyber risk for vendors, PSPs, and critical fintech partners.

 

Qualifications: 

  • Bachelor’s in Cybersecurity, IT, Business, or related field.

  • 8–12+ years in cyber GRC/risk, including financial-sector exposure preferred.

  • Strong grasp of risk frameworks (ISO 27001, NIST CSF/800-53) and mapping to SAMA/NCA controls.

  • Excellent audit, documentation, and stakeholder skills.

  • Certs preferred: CISSP-ISSMP, CISM, CRISC, ISO 27001 LA/LI.

 

What We Offer You
We believe you will love working at HALA!
  • We have an inclusive and diverse culture that encourages innovation and flexibility in remote, in-office, and hybrid work setups.
  • We offer highly competitive compensation packages, including the potential for shares.
  • We prioritize personal development and offer regular training and an annual learning stipend to tackle new challenges and grow your career in a hyper-growth environment.
  • Join a talented team of over 30 nationalities working in 7 countries and gain valuable experience in an exciting industry.
  • We offer autonomy, mentoring, and challenging goals that create incredible opportunities for both you and the company.
  • You will be given a lot of responsibility and trust. We believe that the best results come when the people responsible for a function are given the freedom to do what they think is best.
 
If you think you have what it takes to join a remarkable team #apply_now 

 

Create a Job Alert

Interested in building your career at HALA? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
Select...
Select...
Select...
Select...