Consultant - GRC

4 weeks ago


Karachi, Sindh, Pakistan Internetwork Expert Full time

We are looking for a Consultant with expertise in Information Security Management Systems (ISMS) and IT Governance, Risk, and Compliance (IT GRC). The ideal candidate should have hands-on experience in ISO 27001 implementation, IT risk assessments, and governance frameworks, like COBIT, also having strong knowledge in NIST, GDPR, NESA, NCA, SAMA, PDPL etc. This role involves working closely with senior consultants and clients to support security and compliance initiatives.

ISMS Responsibilities:
  • Experience of implementation and maintenance of ISO 27001-based Information Security Management Systems (ISMS).
  • Perform gap assessments to identify areas of non-compliance and assist in remediation planning against various standards & frameworks like, NIST, NCA, SAMA etc.
  • Participate in risk assessments and help develop mitigation strategies.
  • Developing ISMS policies, procedures, and security controls aligned with ISO 27001 standards.
  • Prepare documentation and provide support during ISO 27001 certification audits.
  • Conduct security awareness training and incident management processes.
IT GRC Responsibilities:
  • Assist in developing and implementing IT governance frameworks (COBIT, NIST, ITIL).
  • Support IT risk assessments, compliance audits, and regulatory reporting activities.
  • Help clients align IT strategies with their business goals while ensuring compliance with regulations like COBIT, GDPR, HIPAA, SOX, etc.
  • Support in developing and maintaining IT compliance programs and policies.
  • Contribute to the development and implementation of GRC tools and processes.
  • Participate in internal audits and help clients prepare for external certification audits/compliance checks.
Minimum Requirements:
  • Minimum Bachelor's degree in Information Security, Computer Science, or a related field.
  • Certifications (preferred): ISO 27001 Lead Implementer / Lead Auditor, CISM, CRISC, or COBIT Foundation.
  • Experience: 3–4 years of experience in ISMS and IT GRC consulting, auditing, or implementation.
  • Familiarity with ISO 27001 gap assessments, risk assessments, and audits.
  • Basic knowledge of IT governance frameworks (COBIT, NIST, ITIL, etc.).
  • Understanding of regulatory compliance such as GDPR, NIST, and PCI-DSS.
  • Strong documentation, report writing, and communication skills is a must.
#J-18808-Ljbffr
  • Senior Consultant-GRC

    4 weeks ago


    Karachi, Sindh, Pakistan Internetwork Expert Full time

    We are seeking a highly experienced Senior Consultant with strong expertise in Information Security Management Systems (ISMS) and IT Governance, Risk, and Compliance (IT GRC). The ideal candidate should have a proven track record of implementing and auditing ISO 27001, developing and designing IT GRC frameworks based on COBIT, NIST, and conducting risk...

  • Consultant - GRC

    1 day ago


    Karachi, Sindh, Pakistan Risk Associates Pvt. Ltd. Full time

    Lead Cybersecurity assessments, including risk assessments, vulnerability assessments, and compliance audits, to evaluate clients' Cybersecurity posture.Develop and implement Cybersecurity frameworks, policies, and procedures to address identified risks and compliance gaps, ensuring alignment with industry standards and regulatory requirements.Collaborate...

  • Consultant - ITSM/BCM

    4 weeks ago


    Karachi, Sindh, Pakistan Inbox Business Technologies Full time

    We are looking for a Consultant with expertise in Information Security Management Systems (ISMS) and IT Governance, Risk, and Compliance (IT GRC). The ideal candidate should have hands-on experience in ISO 27001 implementation, IT risk assessments, and governance frameworks like COBIT, also having strong knowledge in NIST, GDPR, NESA, NCA, SAMA, PDPL etc....

  • Senior Consultant

    4 weeks ago


    Karachi, Sindh, Pakistan Inbox Business Technologies Full time

    We are seeking a highly experienced Senior Consultant with strong expertise in Information Security Management Systems (ISMS) and IT Governance, Risk, and Compliance (IT GRC). The ideal candidate should have a proven track record of implementing and auditing ISO 27001, developing and designing IT GRC frameworks based on COBIT, NIST, and conducting risk...

  • Manager – Audits

    4 weeks ago


    Karachi, Sindh, Pakistan Sui Southern Gas Company Limited Full time

    Manager – Audits (Consulting Assignments)September 23, 2024JOB DETAILS:Qualification & Experience:MBA with at least 04 years of relevant experience. Any relevant certification for job role will be preferred. Experience of PPRA rules / quality control procedures will be preferred.Responsibilities:Consulting AssignmentsManaging Grievance Redressal Committee...


  • Karachi, Sindh, Pakistan beBee Careers Full time

    Job Title: Risk Management ConsultantWe are looking for a skilled Risk Management Consultant to join our team.About the Role:Leverage your expertise to lead IT audit engagements and ensure compliance with global and local risk management standards.Identify vulnerabilities in IT systems and processes through thorough risk assessments.Advise clients on IT risk...

  • Lead GRC Consultant

    20 hours ago


    Karachi, Sindh, Pakistan Foodpanda Pakistan Full time

    Job ResponsibilitiesAssisting in localizing, implementing, maintaining, and updating Compliance Policies, Procedures, and Processes. Supporting the roll-out of a global Compliance Management System and key policies (e.g., Code of Conduct, Conflict of Interest, and Anti-Bribery & Corruption), ensuring alignment with laws, regulations, and business...

  • Lead GRC Consultant

    3 days ago


    Karachi, Sindh, Pakistan foodpanda hk Full time

    About the opportunityAssist in localizing, implementing, maintaining, and updating Compliance Policies, Procedures, and Processes. Support the roll-out of a global Compliance Management System and key policies (e.g., Code of Conduct, Conflict of Interest, Anti-Bribery & Corruption), ensuring alignment with laws, regulations, and business contexts.Assess...

  • Lead GRC Consultant

    20 hours ago


    Karachi, Sindh, Pakistan Delivery Hero SE Full time

    Company Descriptionfoodpanda is part of the Delivery Hero Group, the world's pioneering local delivery platform. Our mission is to deliver an amazing experience—fast, easy, and to your door. We operate in over 70 countries worldwide. Headquartered in Berlin, Germany. Delivery Hero has been listed on the Frankfurt Stock Exchange since 2017 and is part of...

  • Assistant Manager

    1 day ago


    Karachi, Sindh, Pakistan Risk Associates Pvt. Ltd. Full time

    Planning, execution & management of Cybersecurity consulting assignments for our National and International clients. Some of the key responsibilities of these roles are as follows:Cybersecurity team members work in a client-facing role and take on the responsibility of identifying, assessing, and monitoring Cybersecurity risks.Client relationship & team...