Information Security Engineer

3 weeks ago


Lahore, Punjab, Pakistan Kualitatem Inc. Full time
Information Security Engineer - Compliance

KUALITATEM is a global Consulting, Audit, and Assurance company specializing in Software Quality Assurance, Information Security, Technology Process Optimization & Cloud Infrastructure. Kualitatem is an ISO 9001:2015 and ISO 27001:2013 certified company.

Required Experience - 4+ Years

Department - Information Security

Reporting - HOD

Job Description

  • Responsible for taking up external and internal projects at Kualitatem.
  • External projects will be the Client projects around compliance and assurance of desired information security standards.
  • Similarly, internal projects may include compliance and assurance on adapted information security standards of the company.
  • Client projects will require travel within Pakistan and abroad for the successful completion of the tasks.
  • Collaborate on critical IT projects to ensure that security policy/risk issues are addressed throughout the project life cycle.
  • Conduct thorough Risk Assessment and Threat Modelling exercises for various clients.
  • Identify major risk factors for IS/IT Governance and develop and coordinate the implementation of strategies to reduce/remediate process, operational, regulatory, and compliance risks.
  • Provide hands-on support and oversight to Company's and its Client's various IT/IS audit projects, including audits of its internal controls.
  • Enable clients against various standards by doing Internal Audits and Gap Assessments and further building controls for compliance.
  • Review, revise, and, where appropriate, propose new policies and procedures to ensure compliance with applicable laws and regulations or standards.
  • Deliver security services such as GRC Audit and Implementation to Clients, which includes technical security assessments of applications and infrastructure, security design reviews as well as risk assessments.
  • Perform application and infrastructure Cyber Security Assessments, as well as physical security review and social engineering tests for our global clients.
  • Ensure that the appropriate IT controls are considered throughout new system implementation projects and review documentation for new IT processes that impact compliance, as required.
  • Work on improvements for provided security services, including the continuous enhancement of existing methodology material and supporting assets.

Required Skillset

  • Master's or Bachelor's degree in business / IT, with IT audit or compliance experience, or computer science, with business and IT audit or compliance experience desired.
  • Knowledge and understanding of ISO 27001, ISO 9001, GRC, NIST and SOC-2 information security standards.
  • Working knowledge of common IT security-related regulations and/or standards such as Sarbanes-Oxley and ISO highly desired.
  • Minimum five years' experience conducting security control assessments or audits.
  • Minimum two years' experience developing or managing a security awareness program.
  • At least one industry certification (e.g. CISA, CISM, CRISC, CISSP, ISAAP) highly desired.
  • Strong oral and written communication skills.
  • Ability to maintain security documentation and manuals.
  • Must have strong analytical and critical-thinking skills.
  • High-level of attention to detail and focus on the end goal.
  • Self-starter with ability to work independently, multi-task and adjust to shifting priorities.

Seniority level: Mid-Senior level

Employment type: Full-time

Job function: Information Technology

Industries: IT Services and IT Consulting

#J-18808-Ljbffr

  • Lahore, Punjab, Pakistan beBee Careers Full time

    Digitt Plus is seeking an experienced Chief Information Security Officer to lead its information security strategy and ensure the safety of its fintech operations. This role requires a proven leader with deep expertise in cybersecurity, risk management, and compliance within the financial or digital services sector.Key ResponsibilitiesDevelop and implement a...


  • Lahore, Punjab, Pakistan Dukan Full time

    Network Department, Lahore Apply By Jan 5, 2025We are looking for a skilled Information Security Analyst to protect our organization's information assets and maintain the integrity of our systems.In this role, you will monitor network security, assess risks, and identify potential threats while conducting thorough incident response.A strong understanding of...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Position Overview:We are seeking an experienced Information Security Specialist to join our team. The ideal candidate will have a deep understanding of information security principles and practices.Responsibilities:Develop Security Solutions: Create and implement comprehensive security solutions that align with industry best practices.Cyber Threat Analysis:...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job Summary:Cybersecurity is a critical component of any organization's infrastructure. As an Information Security Expert, you will be responsible for protecting our systems and networks from security threats. Your duties will include analyzing data breaches, developing defensive strategies, and implementing security measures to safeguard our digital...


  • Lahore, Punjab, Pakistan SeerSolutionz Full time

    Senior Analyst – Information Security TechnologiesSenior Analyst – Information Security TechnologiesDirect message the job poster from SeerSolutionzHIRING for Dubai & OUR OFFSHORE DEVELOPMENT CENTRE- LAHOREEnd-to-End Recruiter in Tech, IT, BankTech, & Fintech | Specializing in Talent…Job DescriptionThis role is for a hands-on technical expert...


  • Lahore, Punjab, Pakistan SeerSolutionz Full time

    Senior Analyst – Information Security Technologies (8 Years Experience)Get AI-powered advice on this job and more exclusive features.Direct message the job poster from SeerSolutionzThis role is for a hands-on technical expert specializing in security technologies across the enterprise. The successful candidate will be responsible for ensuring the security...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    About the RoleWe are looking for an experienced Information Security Professional to join our team. The ideal candidate will have a strong understanding of security technologies, threat analysis, and incident response.Responsibilities:Monitor security event logs, network traffic, and system alerts to identify potential security threatsAnalyze and triage...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job Summary:We are seeking a highly skilled Information Security Specialist to develop, implement, and maintain an Information Security Management System (ISMS) in line with ISO 27001 standards. The ideal candidate will have strong expertise in security governance, risk management, and compliance.The role involves collaborating with internal stakeholders and...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job SummaryWe are seeking a skilled Information Security Specialist to develop, implement, and maintain an Information Security Management System (ISMS) in line with ISO 27001 standards. The role involves collaborating with internal stakeholders and third-party security partners to establish robust security policies, implement GRC controls, and conduct...


  • Lahore, Punjab, Pakistan Digitt Plus Full time

    Digitt Plus is seeking an experienced Chief Information Security Officer (CISO) to lead its information security strategy and ensure the safety of its fintech operations. This role requires a proven leader with deep expertise in cybersecurity, risk management, and compliance within the financial or digital services sector.Key Responsibilities:Develop and...