Qiddiya Investment Company logo

Senior Manager, Third Party Security

Qiddiya Investment Company

Riyadh, Saudi Arabia
Full-time
Salary not listedPosted 4m ago

Real job — pulled straight from Qiddiya Investment Company’s careers page · Verified September 22, 2026 · No reposts.

Job description

Qiddiya Investment Company is hiring a Senior Manager, Third Party Security — a full-time, based in Riyadh, Saudi Arabia role. Apply directly on Qiddiya Investment Company's careers page below.

Senior Manager - Third Party Security

Location: Riyadh, Riyadh Province, Saudi Arabia

Department: Qiddiya Technology

Workplace: on_site

Employment Type: full

Description

Lead and manage Qiddiya's Third-Party Security Risk Management program to ensure vendors, partners, consultants, and service providers comply with cybersecurity requirements and do not introduce unacceptable risks to Qiddiya's information assets, systems, and operations. The role is responsible for establishing security assessment frameworks, overseeing vendor security reviews, and driving remediation of identified risks. This aligns with industry practices for cybersecurity risk management and third-party oversight.

Key Responsibilities

  • Develop and maintain the Third-Party Security Risk Management (TPSRM) framework.
  • Conduct cybersecurity due diligence and risk assessments for vendors and suppliers.
  • Review security requirements during procurement, RFP, and contract stages.
  • Assess cloud providers, SaaS platforms, managed service providers, and strategic partners.
  • Define vendor security controls aligned with NCA ECC, ISO 27001, NIST, and Qiddiya cybersecurity standards.
  • Establish vendor risk classification and assessment methodologies.
  • Monitor remediation plans and track closure of identified security gaps.
  • Collaborate with Procurement, Legal, Compliance, Enterprise Risk, and Technology teams.
  • Lead periodic reassessments of critical vendors.
  • Report third-party cyber risks, trends, and KPIs to senior management.
  • Manage external security audits, questionnaires, and assurance activities.
  • Lead and develop the Third-Party Security team.

Requirements

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, or related field.
  • 8–12 years of cybersecurity experience.
  • Minimum 4 years in Third-Party Security, Vendor Risk Management, Cybersecurity Risk Management, or GRC.
  • Experience within large enterprises, giga projects, banking, telecom, government, or critical infrastructure environments.
  • Experience managing teams and stakeholder engagement at senior levels.

Get Senior Manager, Third Party Security jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
VAST Data logo

Senior Software Engineer, Kafka / Event Streaming

Tel Aviv, Israel
✓ From careers page· 4h ago
FourKites logo

Senior AI Engineer

Remote
✓ From careers page· 4h ago
Syner-G BioPharma Group logo

Senior Validation Engineer

San Diego, CA
✓ From careers page· 4h ago

Frequently asked questions

How do I apply for Senior Manager, Third Party Security at Qiddiya Investment Company?

You can view the full description and apply for Senior Manager, Third Party Security at Qiddiya Investment Company on EchoJobs: https://echojobs.io/job/qiddiya-investment-company-senior-manager-third-party-security-19nxf.