BARQ Systems is hiring a Cybersecurity Officer for its CISO Office to drive GRC strategy. Responsibilities include managing risk registers, maintaining ISO 27001/NCA/PDPL compliance, updating policies, and tracking security metrics alongside IT and SOC teams. Requires 3–4 years of GRC experience, ideally with ISO 27001 or NCA knowledge.
We’re Hiring | Cybersecurity Officer – CISO Office
BARQ Systems is looking for a motivated Cybersecurity Officer to join the CISO Office and support the development and execution of our cybersecurity governance and risk management program.
This is an excellent opportunity for a cybersecurity professional who wants to work closely with the CISO and gain broad exposure to cybersecurity governance, risk, compliance, security operations, and enterprise security.
Key Responsibilities
• Support the CISO in executing the cybersecurity strategy and roadmap
• Maintain and follow up on the Cybersecurity Risk Register and remediation plans
• Support in difference compliances like ISO 27001,NCA / CRF and PDPL activities and control assessments
• Develop, maintain and update cybersecurity policies, standards and procedures
• Coordinate security audits and maintain required evidence
• Track cybersecurity vulnerabilities, findings and remediation activities
• Coordinate with the SOC, Penetration Testing, IT Infrastructure, Cloud and Application teams on security actions
• Support Third-Party Security Risk Assessments and security questionnaires
• Support security requirements and reviews during new projects and technology implementations
• Prepare cybersecurity KPIs, KRIs, dashboards and management reports
• Follow up on Security Steering Committee actions and cybersecurity initiatives
• Support security awareness and cybersecurity improvement initiatives
• Assist with incident documentation, post-incident actions and lessons learned
What We’re Looking For
• 3–4 years of experience in Cybersecurity, Information Security, GRC or a related field
• Good understanding of Cybersecurity Governance, Risk & Compliance (GRC)
• Practical knowledge of NCA / CRF and/or ISO 27001 is highly preferred
• Understanding of security risk assessment and risk treatment
• Experience with cybersecurity policies, procedures and control frameworks
• Good understanding of vulnerability management and security assessments
• Experience with third-party/vendor security assessments is a plus
• Strong analytical, documentation and follow-up skills
• Excellent communication and coordination skills
• Excellent command of English
Certifications
Certifications such as ISO 27001, CISA, CRISC, Security+, or similar are an advantage.
If you're looking to grow beyond a purely technical cybersecurity role and build strong experience in enterprise cybersecurity governance and CISO-level activities, we'd love to hear from you.
Fill out the form and upload your CV to submit your application.