Skill Inventory Matrix
Enabler for Internal Mobility Program
Records
| ID | Sector | Division | Department | Unit | Technical Skills |
|---|---|---|---|---|---|
| 4216 | Risk Management | Cybersecurity | Knowledge of cybersecurity governance frameworks, including NCA, SAMA, ISO 27001, and global best practices. | ||
| 4217 | Risk Management | Cybersecurity | Knowledge of cybersecurity risk assessments, third-party risk management practices, and contractual security requirements. | ||
| 4218 | Risk Management | Cybersecurity | Knowledge of Governance, Risk, and Compliance (GRC) tools for tracking policy adherence, compliance obligations, and third-party risks. | ||
| 4219 | Risk Management | Cybersecurity | Ability to design cybersecurity metrics and reporting dashboards that support continuous improvement of governance frameworks. | ||
| 4220 | Risk Management | Cybersecurity | Ability to develop, implement, and monitor cybersecurity policies. | ||
| 4221 | Risk Management | Cybersecurity | Ability to apply data classification standards, implement access controls, and generate data leakage prevention (DLP) reports. | ||
| 4222 | Risk Management | Cybersecurity | Cybersecurity GRC | Knowledge of cybersecurity governance strategy in line with NCA, SAMA, ISO 27001, and organizational objectives. | |
| 4223 | Risk Management | Cybersecurity | Cybersecurity GRC | Knowledge of data classification protocols, access control implementation, and data leakage prevention monitoring. | |
| 4224 | Risk Management | Cybersecurity | Cybersecurity GRC | Knowledge of project governance principles, including planning, tracking, resource allocation, and risk-based prioritization. | |
| 4225 | Risk Management | Cybersecurity | Cybersecurity GRC | Knowledge of incident response governance integration. | |
| 4226 | Risk Management | Cybersecurity | Cybersecurity GRC | Ability to design cybersecurity awareness and training programs. | |
| 4227 | Risk Management | Cybersecurity | Cybersecurity GRC | Ability to lead regulatory engagement and ensure timely reporting and compliance with SAMA, NCA, and global cybersecurity standards. | |
| 4228 | Risk Management | Cybersecurity | Cybersecurity GRC | Ability to conduct cybersecurity risk assessments and manage audit readiness. | |
| 4229 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Knowledge of cybersecurity governance strategy in line with NCA, SAMA, ISO 27001, and organizational objectives. |
| 4230 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Knowledge of data classification protocols, access control implementation, and data leakage prevention monitoring. |
| 4231 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Knowledge of project governance principles, including planning, tracking, resource allocation, and risk-based prioritization. |
| 4232 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Knowledge of incident response governance integration. |
| 4233 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Ability to design cybersecurity awareness and training programs. |
| 4234 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Ability to lead regulatory engagement and ensure timely reporting and compliance with SAMA, NCA, and global cybersecurity standards. |
| 4235 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Governance | Ability to conduct cybersecurity risk assessments and manage audit readiness. |
| 4236 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Knowledge of cybersecurity governance strategy in line with NCA, SAMA, ISO 27001, and organizational objectives. |
| 4237 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Knowledge of data classification protocols, access control implementation, and data leakage prevention monitoring. |
| 4238 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Knowledge of project governance principles, including planning, tracking, resource allocation, and risk-based prioritization. |
| 4239 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Knowledge of incident response governance integration. |
| 4240 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Ability to design cybersecurity awareness and training programs. |
| 4241 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Ability to lead regulatory engagement and ensure timely reporting and compliance with SAMA, NCA, and global cybersecurity standards. |
| 4242 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Compliance | Ability to conduct cybersecurity risk assessments and manage audit readiness. |
| 4243 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Knowledge of cybersecurity governance strategy in line with NCA, SAMA, ISO 27001, and organizational objectives. |
| 4244 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Knowledge of data classification protocols, access control implementation, and data leakage prevention monitoring. |
| 4245 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Knowledge of project governance principles, including planning, tracking, resource allocation, and risk-based prioritization. |
| 4246 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Knowledge of incident response governance integration. |
| 4247 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Ability to design cybersecurity awareness and training programs. |
| 4248 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Ability to lead regulatory engagement and ensure timely reporting and compliance with SAMA, NCA, and global cybersecurity standards. |
| 4249 | Risk Management | Cybersecurity | Cybersecurity GRC | Cybersecurity Risk | Ability to conduct cybersecurity risk assessments and manage audit readiness. |
| 4250 | Risk Management | Cybersecurity | Cybersecurity Architecture | Knowledge of security architecture design principles across infrastructure, applications, and cloud environments. | |
| 4251 | Risk Management | Cybersecurity | Cybersecurity Architecture | Knowledge of cybersecurity frameworks and standards, including NCA ECC, SAMA, ISO 27001, NIST, PCI-DSS, and SWIFT CSCF. | |
| 4252 | Risk Management | Cybersecurity | Cybersecurity Architecture | Knowledge of cloud security architectures and controls within AWS, Azure, and GCP platforms, including Zero Trust security models. | |
| 4253 | Risk Management | Cybersecurity | Cybersecurity Architecture | Ability to apply secure development practices using SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools. | |
| 4254 | Risk Management | Cybersecurity | Cybersecurity Architecture | Ability to integrate and configure security technologies such as firewalls, IDS/IPS, SIEM, DLP, CASB, endpoint protection, and encryption solutions. | |
| 4255 | Risk Management | Cybersecurity | Cybersecurity Architecture | Change Advisory and Assessment | Knowledge of security architecture design principles across infrastructure, applications, and cloud environments. |
| 4256 | Risk Management | Cybersecurity | Cybersecurity Architecture | Change Advisory and Assessment | Knowledge of cybersecurity frameworks and standards, including NCA ECC, SAMA, ISO 27001, NIST, PCI-DSS, and SWIFT CSCF. |
| 4257 | Risk Management | Cybersecurity | Cybersecurity Architecture | Change Advisory and Assessment | Knowledge of cloud security architectures and controls within AWS, Azure, and GCP platforms, including Zero Trust security models. |
| 4258 | Risk Management | Cybersecurity | Cybersecurity Architecture | Change Advisory and Assessment | Ability to apply secure development practices using SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools. |
| 4259 | Risk Management | Cybersecurity | Cybersecurity Architecture | Change Advisory and Assessment | Ability to integrate and configure security technologies such as firewalls, IDS/IPS, SIEM, DLP, CASB, endpoint protection, and encryption solutions. |
| 4260 | Risk Management | Cybersecurity | Cybersecurity Architecture | Design and Architecture | Knowledge of security architecture design principles across infrastructure, applications, and cloud environments. |
| 4261 | Risk Management | Cybersecurity | Cybersecurity Architecture | Design and Architecture | Knowledge of cybersecurity frameworks and standards, including NCA ECC, SAMA, ISO 27001, NIST, PCI-DSS, and SWIFT CSCF. |
| 4262 | Risk Management | Cybersecurity | Cybersecurity Architecture | Design and Architecture | Knowledge of cloud security architectures and controls within AWS, Azure, and GCP platforms, including Zero Trust security models. |
| 4263 | Risk Management | Cybersecurity | Cybersecurity Architecture | Design and Architecture | Ability to apply secure development practices using SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools. |
| 4264 | Risk Management | Cybersecurity | Cybersecurity Architecture | Design and Architecture | Ability to integrate and configure security technologies such as firewalls, IDS/IPS, SIEM, DLP, CASB, endpoint protection, and encryption solutions. |
| 4265 | Risk Management | Cybersecurity | Cybersecurity Architecture | Application Cybersecurity | Knowledge of security architecture design principles across infrastructure, applications, and cloud environments. |
| 4266 | Risk Management | Cybersecurity | Cybersecurity Architecture | Application Cybersecurity | Knowledge of cybersecurity frameworks and standards, including NCA ECC, SAMA, ISO 27001, NIST, PCI-DSS, and SWIFT CSCF. |
| 4267 | Risk Management | Cybersecurity | Cybersecurity Architecture | Application Cybersecurity | Knowledge of cloud security architectures and controls within AWS, Azure, and GCP platforms, including Zero Trust security models. |
| 4268 | Risk Management | Cybersecurity | Cybersecurity Architecture | Application Cybersecurity | Ability to apply secure development practices using SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools. |
| 4269 | Risk Management | Cybersecurity | Cybersecurity Architecture | Application Cybersecurity | Ability to integrate and configure security technologies such as firewalls, IDS/IPS, SIEM, DLP, CASB, endpoint protection, and encryption solutions. |
| 4270 | Risk Management | Cybersecurity | Identity and Access Management | Knowledge of Identity and Access Management (IAM) systems. | |
| 4271 | Risk Management | Cybersecurity | Identity and Access Management | Knowledge of regulatory requirements and best practices for IAM compliance and audit readiness. | |
| 4272 | Risk Management | Cybersecurity | Identity and Access Management | Knowledge of authentication and authorization technologies including multi-factor authentication (MFA), single sign-on (SSO), and federated identity management. | |
| 4273 | Risk Management | Cybersecurity | Identity and Access Management | Ability to manage user lifecycle processes such as provisioning, deprovisioning, and periodic access certification. | |
| 4274 | Risk Management | Cybersecurity | Identity and Access Management | Ability to design and manage automated IAM workflows for access requests, approvals, and role assignments. | |
| 4275 | Risk Management | Cybersecurity | Identity and Access Management | Ability to apply IAM frameworks and standards such as least privilege, role-based access control (RBAC), and zero trust models. | |
| 4276 | Risk Management | Cybersecurity | Identity and Access Management | Access Control Operation | Knowledge of Identity and Access Management (IAM) systems. |
| 4277 | Risk Management | Cybersecurity | Identity and Access Management | Access Control Operation | Knowledge of regulatory requirements and best practices for IAM compliance and audit readiness. |
| 4278 | Risk Management | Cybersecurity | Identity and Access Management | Access Control Operation | Knowledge of authentication and authorization technologies including multi-factor authentication (MFA), single sign-on (SSO), and federated identity management. |
| 4279 | Risk Management | Cybersecurity | Identity and Access Management | Access Control Operation | Ability to manage user lifecycle processes such as provisioning, deprovisioning, and periodic access certification. |
| 4280 | Risk Management | Cybersecurity | Identity and Access Management | Access Control Operation | Ability to design and manage automated IAM workflows for access requests, approvals, and role assignments. |
| 4281 | Risk Management | Cybersecurity | Identity and Access Management | Access Control Operation | Ability to apply IAM frameworks and standards such as least privilege, role-based access control (RBAC), and zero trust models. |
| 4282 | Risk Management | Cybersecurity | Identity and Access Management | Access Review and Audit | Knowledge of Identity and Access Management (IAM) systems. |
| 4283 | Risk Management | Cybersecurity | Identity and Access Management | Access Review and Audit | Knowledge of regulatory requirements and best practices for IAM compliance and audit readiness. |
| 4284 | Risk Management | Cybersecurity | Identity and Access Management | Access Review and Audit | Knowledge of authentication and authorization technologies including multi-factor authentication (MFA), single sign-on (SSO), and federated identity management. |
| 4285 | Risk Management | Cybersecurity | Identity and Access Management | Access Review and Audit | Ability to manage user lifecycle processes such as provisioning, deprovisioning, and periodic access certification. |
| 4286 | Risk Management | Cybersecurity | Identity and Access Management | Access Review and Audit | Ability to design and manage automated IAM workflows for access requests, approvals, and role assignments. |
| 4287 | Risk Management | Cybersecurity | Identity and Access Management | Access Review and Audit | Ability to apply IAM frameworks and standards such as least privilege, role-based access control (RBAC), and zero trust models. |
| 4288 | Risk Management | Cybersecurity | Identity and Access Management | Third Party Access Management | Knowledge of Identity and Access Management (IAM) systems. |
| 4289 | Risk Management | Cybersecurity | Identity and Access Management | Third Party Access Management | Knowledge of regulatory requirements and best practices for IAM compliance and audit readiness. |
| 4290 | Risk Management | Cybersecurity | Identity and Access Management | Third Party Access Management | Knowledge of authentication and authorization technologies including multi-factor authentication (MFA), single sign-on (SSO), and federated identity management. |
| 4291 | Risk Management | Cybersecurity | Identity and Access Management | Third Party Access Management | Ability to manage user lifecycle processes such as provisioning, deprovisioning, and periodic access certification. |
| 4292 | Risk Management | Cybersecurity | Identity and Access Management | Third Party Access Management | Ability to design and manage automated IAM workflows for access requests, approvals, and role assignments. |
| 4293 | Risk Management | Cybersecurity | Identity and Access Management | Third Party Access Management | Ability to apply IAM frameworks and standards such as least privilege, role-based access control (RBAC), and zero trust models. |
| 4294 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Knowledge of threat intelligence frameworks including MITRE ATT&CK, STIX/TAXII, Diamond Model, and Cyber Kill Chain. | |
| 4295 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Knowledge of Threat Intelligence Platforms (TIPs) and their application. | |
| 4296 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Knowledge of scripting languages such as Python to automate threat data enrichment. | |
| 4297 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Knowledge of open-source intelligence (OSINT) tools. | |
| 4298 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Ability to assess advanced persistent threat (APT) behaviors and global cybersecurity trends. | |
| 4299 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Ability to develop and deliver executive-level threat briefings, tactical reports, and strategic threat assessments. | |
| 4300 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Ability to integrate threat intelligence feeds and indicators of compromise (IOCs) into SIEM and SOC workflows. | |
| 4301 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Knowledge of threat intelligence frameworks including MITRE ATT&CK, STIX/TAXII, Diamond Model, and Cyber Kill Chain. |
| 4302 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Knowledge of Threat Intelligence Platforms (TIPs) and their application. |
| 4303 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Knowledge of scripting languages such as Python to automate threat data enrichment. |
| 4304 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Knowledge of open-source intelligence (OSINT) tools. |
| 4305 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Ability to assess advanced persistent threat (APT) behaviors and global cybersecurity trends. |
| 4306 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Ability to develop and deliver executive-level threat briefings, tactical reports, and strategic threat assessments. |
| 4307 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Operation Center | Ability to integrate threat intelligence feeds and indicators of compromise (IOCs) into SIEM and SOC workflows. |
| 4308 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Knowledge of threat intelligence frameworks including MITRE ATT&CK, STIX/TAXII, Diamond Model, and Cyber Kill Chain. |
| 4309 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Knowledge of Threat Intelligence Platforms (TIPs) and their application. |
| 4310 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Knowledge of scripting languages such as Python to automate threat data enrichment. |
| 4311 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Knowledge of open-source intelligence (OSINT) tools. |
| 4312 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Ability to assess advanced persistent threat (APT) behaviors and global cybersecurity trends. |
| 4313 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Ability to develop and deliver executive-level threat briefings, tactical reports, and strategic threat assessments. |
| 4314 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Threat Intelligence | Ability to integrate threat intelligence feeds and indicators of compromise (IOCs) into SIEM and SOC workflows. |
| 4315 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Knowledge of threat intelligence frameworks including MITRE ATT&CK, STIX/TAXII, Diamond Model, and Cyber Kill Chain. |
| 4316 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Knowledge of Threat Intelligence Platforms (TIPs) and their application. |
| 4317 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Knowledge of scripting languages such as Python to automate threat data enrichment. |
| 4318 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Knowledge of open-source intelligence (OSINT) tools. |
| 4319 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Ability to assess advanced persistent threat (APT) behaviors and global cybersecurity trends. |
| 4320 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Ability to develop and deliver executive-level threat briefings, tactical reports, and strategic threat assessments. |
| 4321 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Cyber Fraud | Ability to integrate threat intelligence feeds and indicators of compromise (IOCs) into SIEM and SOC workflows. |
| 4322 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Knowledge of threat intelligence frameworks including MITRE ATT&CK, STIX/TAXII, Diamond Model, and Cyber Kill Chain. |
| 4323 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Knowledge of Threat Intelligence Platforms (TIPs) and their application. |
| 4324 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Knowledge of scripting languages such as Python to automate threat data enrichment. |
| 4325 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Knowledge of open-source intelligence (OSINT) tools. |
| 4326 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Ability to assess advanced persistent threat (APT) behaviors and global cybersecurity trends. |
| 4327 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Ability to develop and deliver executive-level threat briefings, tactical reports, and strategic threat assessments. |
| 4328 | Risk Management | Cybersecurity | Cybersecurity Intelligence Center | Security Control Management | Ability to integrate threat intelligence feeds and indicators of compromise (IOCs) into SIEM and SOC workflows. |
| 4337 | Risk Management | Data Management Office | Data Sharing | Knowledge of data privacy risks and mitigation strategies, including cybersecurity controls and compliance with data protection laws. |