Skip to content
← Back to job listings

Cybersecurity Compliance & Technical Controls Consultant - 2-Year Engagement

MENA Consultant · Remote

Corporate LawRemoteImported listingcontractabout 4 hours ago

About The Role

<div>
<div>
<p>We are seeking a Cybersecurity Compliance & Technical Controls Consultant to assess whether cybersecurity controls are implemented effectively and meet applicable regulatory requirements, security frameworks, Minimum Baseline Security Standards (MBSS), and approved configuration baselines. The consultant will conduct technical compliance reviews across infrastructure, cloud, applications, and critical assets; manage audit evidence and remediation tracking; and develop policies, reports, and metrics that support ongoing compliance.</p>
</div>
<div> </div>
</div>
<h2>Key Requirements</h2>
<ul>
<li>Experience conducting <strong>technical cybersecurity compliance assessments</strong> against regulatory requirements, security frameworks, and MBSS.</li>
<li>Ability to assess the <strong>implementation and effectiveness of security controls</strong>, document gaps, and recommend remediation.</li>
<li>Experience reviewing <strong>secure configuration baselines and golden images</strong> for servers and endpoints, as well as hardening standards for databases, operating systems, and network devices.</li>
<li>Experience assessing <strong>firewall rules, internet-facing systems, cloud services, and security monitoring controls</strong>, including SIEM.</li>
<li>Familiarity with <strong>application security and Secure Software Development Lifecycle (SSDLC)</strong> requirements.</li>
<li>Ability to review <strong>vulnerability assessment and penetration testing results</strong> and track related compliance gaps through remediation.</li>
<li>Experience evaluating <strong>backup, disaster recovery, and business continuity controls</strong> against applicable requirements.</li>
<li>Experience managing <strong>compliance evidence, audit support, findings, and corrective action tracking</strong>.</li>
<li>Ability to develop or maintain <strong>cybersecurity policies, standards, procedures, dashboards, KPIs, and KRIs</strong>.</li>
</ul>
<h2>Key Responsibilites</h2>
<ul>
<li>Assess and validate the implementation and eUectiveness of cybersecurity controls against applicable regulatory requirements, security frameworks, and Minimum Baseline Security Standards (MBSS), and golden images for servers and endpoints.</li>
<li>Conduct periodic and ad-hoc technical and regulatory compliance assessments for critical assets to ensure adherence to security, regulatory, and organizational requirements.</li>
<li>Review and assess security controls and recommend remediation or improvement actions where necessary.</li>
<li>Manage compliance evidence collection, documentation, and repositories to support audits, assessments, and regulatory submissions.</li>
<li>Support internal and external audits, including evidence management, findings remediation, and corrective action tracking.</li>
<li>Support cybersecurity risk assessments and ensure regulatory and compliance risks are identified, assessed, and appropriately managed.</li>
<li>Assist in the development and monitoring of compliance-related Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs).</li>
<li>Develop technical compliance reports, dashboards, and metrics for management and regulatory stakeholders.</li>
<li>Develop, maintain, and review cybersecurity policies, standards, procedures, and controls to support compliance with MBSS and applicable regulatory requirements.</li>
<li>Monitor regulatory and MBSS requirement updates and ensure timely assessment and implementation of new compliance obligations.</li>
<li>Communicate technical and regulatory requirements eUectively to both technical and non-technical stakeholders.</li>
<li>Conduct technical compliance assessments of firewall rules, internet-facing systems, cloud services, and security monitoring controls, including SIEM implementations.</li>
<li>Verify compliance with secure configuration baselines and system hardening standards for servers, databases, operating systems, and network devices.</li>
<li>Evaluate backup, disaster recovery, and business continuity controls to ensure compliance with regulatory, organizational, and MBSS requirements.</li>
<li>Review application security controls and ensure adherence to Secure Software Development Lifecycle (SSDLC) requirements.</li>
<li>Analyze vulnerability assessment and penetration testing results to identify compliance gaps and track remediation activities.</li>
</ul>
<p> </p>
<hr>
<p>If you would like to know more about the<strong> <span style="text-decoration: underline;">Global Consulting Bootcamp</span> </strong>Visit: <a href="https://caseinpointco.com/global-consultant-bootcamp/">https://caseinpointco.com/global-consultant-bootcamp/</a><br><span data-teams="true">If you would like to know more about the<strong> <span style="text-decoration: underline;">MC Club</span> </strong>Visit: <a id="menur21g" class="fui-Link ___1q1shib f2hkw1w f3rmtva f1ewtqcl fyind8e f1k6fduh f1w7gpdv fk6fouc fjoy568 figsok6 f1s184ao f1mk8lai fnbmjn9 f1o700av f13mvf36 f1cmlufx f9n3di6 f1ids18y f1tx3yz7 f1deo86v f1eh06m1 f1iescvh fhgqx19 f1olyrje f1p93eir f1nev41a f1h8hb77 f1lqvz6u f10aw75t fsle3fq f17ae5zn" href="https://menaconsultant.com/mc-club/" target="_blank">https://menaconsultant.com/mc-club/</a></span></p>

This is an external listing. JobSpring does not represent or verify the employer. Report this listing