
Lead Cloud Security Engineer GRC
2 weeks ago
About the job Lead Cloud Security Engineer GRC
About Our Client:
Our client company is one ofUAEs largest compliance company.
Job Description:
As part of our cybersecurity team, the Cybersecurity GRC Officer/Manager will play a strategic role in shaping and enforcing governance, risk, and compliance practices across our digital and operational landscape. This is a critical position responsible for ensuring our cybersecurity controls, frameworks, and risk strategies meet evolving regulatory requirements and industry standards. The ideal candidate will bring both deep technical understanding and pragmatic leadership to align GRC initiatives with broader business and security goals.
Duties and Responsibilities
Design, implement, and maintain cybersecurity governance policies and documentation.
Oversee internal governance structures ensuring consistency with international standards and business objectives.
Provide policy leadership on emerging compliance areas such as AI governance and cloud specific standards.
Lead risk assessments and threat modeling exercises focused on cybersecurity and third-party risks.
Maintain a dynamic risk register, ensuring mitigation strategies are timely and actionable.
Advise the leadership team on cybersecurity risk appetite and priority initiatives.
Manage compliance with standards including ISO 27001, PCI-DSS, SOC 2, CIS Controls, NIST CSF, and SANS. Ensure alignment with regional and international regulations (e.g., GDPR, CBUAE, SAMA, CMA).
Coordinate and lead audit readiness efforts; manage relationships with external auditors and assessors.
Work hand-in-hand with security operations and engineering teams to validate control effectiveness.
Recommend improvements to technical security controls (firewalls, SIEM, DLP, endpoint protection).
Stay current with threat intelligence and advise on proactive defenses and incident readiness.
Contribute to incident response planning and lead compliance-related post-incident reviews.
Provide comprehensive risk and compliance reporting to executive leadership.
Develop role-specific cybersecurity and GRC training modules. Champion a culture of cybersecurity awareness across departments and geographies.
Availability outside business hours may be required during security incidents or audits.
The role supports a fully remote, globally distributed environment.
Experience (essential to any successful application)
Minimum 3 years in GRC roles with direct engagement in cybersecurity domains.
Demonstrated experience with compliance management and cybersecurity operations.
Familiarity with international and regional regulators, including those in the GCC and Europe.
Skills
In-depth knowledge of cybersecurity architecture and tools (e.g., SIEM, IDS/IPS, DLP).
Proficient in risk frameworks like ISO 27005, NIST SP 800-30, FAIR. Able to bridge compliance frameworks with technical implementation.
CISSP, CISA, CRISC, CISM, ISO 27001 Lead Implementer/Auditor, or equivalent.
Executive presence with excellent written and verbal communication.
Strong organizational skills and ability to manage high-impact cross-functional projects.
High attention to detail with a proactive, improvement-oriented mindset. Guiding teams with a cyber risk-focused mindset.
Translating risk and compliance insights into strategic business input.
Data-driven decision making with a strong analytical approach.
Driving security adoption and awareness.
Qualifications
Bachelor's or Master's degree in Cybersecurity, Information Security, Risk Management, or related fields.
Other Details:
Work Mode: Onsite - Full Time
Location: Karachi
Experience:5+ years
Days: Monday to Friday
Timing: 9 am - 6 pm
Salary: Market Competitive
About HR Ways:
HR Ways is an Award winning Technical Recruitment Firm helping software houses and IT Product companies internationally and locally to find IT Talent. HR Ways is engaged by 300+ Employers worldwide ranging from worlds biggest SaaS Companies to most competitive Startups. We have entities in Dubai, Canada, US, UK, Pakistan, India, Saudi Arabia, Portugal, Brazil and other parts of the world. Join our WhatsApp Channel https://shorturl.at/983azto stay updated or visit www.hrways.co to know more.
#J-18808-Ljbffr-
Cyber Security GRC
2 weeks ago
Karachi, Sindh, Pakistan HR WAYS Full timeOur client company is one of UAE's largest compliance companies.Job Description:As part of our cybersecurity team, the Cybersecurity GRC Officer/Manager will play a strategic role in shaping and enforcing governance, risk, and compliance practices across our digital and operational landscape. This position is responsible for ensuring our cybersecurity...
-
consultant - grc
2 weeks ago
Karachi, Sindh, Pakistan Risk Associates - EMEA & Asia Full timeJoin to apply for the CONSULTANT - GRC role at Risk Associates - EMEA & AsiaGet AI-powered advice on this job and more exclusive features.Key ResponsibilitiesLead Cybersecurity assessments, including risk assessments, vulnerability assessments, and compliance audits, to evaluate clients' Cybersecurity posture.Develop and implement Cybersecurity frameworks,...
-
Senior Cyber GRC Analyst I
2 weeks ago
Karachi, Sindh, Pakistan Careem Full timeCareem is building the Everything App for the greater Middle East, making it easier than ever to move around, order food and groceries, manage payments, and more. Careem is led by a powerful purpose to simplify and improve the lives of people and build an awesome organisation that inspires. Since 2012, Careem has created earnings for over 2.5 million...
-
Cloud Engineer
3 weeks ago
Karachi, Sindh, Pakistan NorthBay Solutions Full timeJob OverviewNorthBay is looking for AWS Cloud Engineers to be part of a dynamic team. As an AWS Cloud Engineer with L2 Support responsibilities, you will play a crucial role in deploying, managing, and supporting cloud-based solutions for our clients. Your primary focus will be on AWS technologies, ensuring optimal cloud infrastructure setup, performance...
-
Strategic Information Security Lead
3 days ago
Karachi, Sindh, Pakistan beBeeInformationSecurity Full timeJob Title:Strategic Information Security LeadAbout the Role:This exciting opportunity calls for a highly skilled and experienced Strategic Information Security Lead to spearhead our organization's information security management system (ISMS). As a key member of our team, you will be responsible for implementing and managing our ISMS in accordance with ISO...
-
Senior Cyber Security Governance Specialist
2 weeks ago
Karachi, Sindh, Pakistan beBee Careers Full timeInformation Security Governance SpecialistCareer Opportunity in Information Security Governance, Risk and ComplianceWe are seeking an experienced Information Security Governance Specialist to join our team. The ideal candidate will have hands-on experience implementing PCI DSS requirements and ISO 27001 standards.The role requires close collaboration with...
-
Cloud & Information Security Analyst
2 weeks ago
Karachi, Sindh, Pakistan Astera Software, Inc. Full timeJob Summary:The Cloud & Information Security Analyst is primarily responsible for ensuring the security of our On-premises & Cloud-based infrastructure and Information Systems. The incumbent will play a critical role in identifying potential security risks, implementing measures to mitigate those risks, and maintaining compliance with industry regulations...
-
Devops Engineer
2 weeks ago
Karachi, Sindh, Pakistan Cloud logically Full timeDevops Engineer Cloud logically, Pakistan Education:Bachelor's degree in Computer Science, Design or related field; or equivalent work experience.In a fast-growing environment, you'll work among talented engineers, product designers, marketing, and business leaders. The role requires a mix of technical depth, product thinking, and strategic drive.Key...
-
Cloud Security Architect
2 weeks ago
Karachi, Sindh, Pakistan beBee Careers Full timeJob Summary:The Cloud & Information Security Analyst is primarily responsible for ensuring the security of On-premises & Cloud-based infrastructure and Information Systems. The incumbent will play a critical role in identifying potential security risks, implementing measures to mitigate those risks, and maintaining compliance with industry regulations and...
-
Sr. QA Engineer
5 days ago
Karachi, Sindh, Pakistan Cloud logically Full timeSr. QA Engineer Cloud logically, Pakistan Master's or Bachelor's degree in computer science, Software Engineering, or any related fields.In a fast-growing environment, you'll work among talented engineers, product designers, marketing, and business leaders. The role requires a mix of technical depth, product thinking, and strategic drive.Key Responsibilities...