Information Security Manager

3 weeks ago


Karachi, Sindh, Pakistan Bit-Development Full time

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Bit-Development.dev

Building High-Impact Tech Teams | Talent Acquisition Expert | Tech & Non-Tech Recruiter | Head Hunter | HR Manager | Strategic Recruitment Partner |

Information Security Manager

  • Reporting to: Chief Technology Officer
  • Experience: 10+ years
  • Language: Outstanding Written and Spoken English Skills

Summary:

We are seeking a skilled, experienced, and collaborative leader of Information Security to lead our information security team based in Karachi. This individual will manage a team of security professionals and play a key role in operating our Security Operations Center (SOC), securing the enterprise environment, supporting compliance efforts (ISO 27001 and SOC 2), and driving continuous improvement in our security posture.

The ideal candidate combines strong technical expertise with sound risk judgment; focusing on prioritizing and addressing risks in a balanced, business-aligned manner over default patching of automated scan findings. This role emphasizes pragmatic, continuous security improvement over idealism, and requires a leadership style grounded in trust, mentorship, and team growth. This role offers global visibility and requires close coordination with cross-functional stakeholders across regions to continually mature our security posture and risk management practices.

Key Responsibilities:

  • Lead and mentor a team of information security professionals promoting learning, collaboration and professional development.
  • Implement security controls, risk assessment framework, and programs that align to best practices and regulatory requirements.
  • Advise and recommend improvements to the design, development and expansion of ISMS across the global organization consistent with business needs and capabilities.
  • Support the implementation and maintenance of the Information Security Management System (ISMS).
  • Ensure timely identification, communication, and remediation of security risks and issues.
  • Oversee vulnerability management efforts with a focus on contextual risk analysis—ensuring findings are prioritized based on business impact and not automatically relayed scan outputs.
  • Balance risk identification and treatment with business capabilities and resources.
  • Conduct and oversee third-party risk assessments, including vendor assessments, control reviews and policy adherence.
  • Provide global security governance support, including preparation of stakeholder reports and communication of security posture.
  • Measure and analyze control effectiveness; identify and develop relevant metrics; report findings and lead remediation tracking efforts.
  • Champion security initiatives across the enterprise.

Required Qualifications:

  • 10+ years of progressive experience in Information Security, with at least 5 years in a leadership role managing global or internationally alligned teams.
  • Track record of successfully supporting or leading security programs for ISO 27001 and SOC 2 compliance within a service provider or B2B environment.
  • Led or materially contributed to the implementation and audit-readiness of security frameworks (ISO 27001, NIST CSF, SOC 2) across multiple geographies.
  • Hands-on experience analyzing risk, assessing requirements, and remediating findings in high-compliance environments.
  • Proven experience leading vulnerability management with a focus on contextual risk analysis—going beyond scan output to prioritize and drive remediation based on business impact.
  • Experience partnering with enterprise IT, legal, and compliance teams to operationalize security controls and improve governance maturity.
  • Relevant industry certification such as ISO 27001 Lead Auditor, CISSP / CISA / CISM / CCSP etc. (at least two) is highly desirable.

Knowledge:

  • Broad level of knowledge of security and risk issues and techniques across platforms.
  • Deep understanding of security frameworks: ISO 27001:2013, NIST CSF, SOC 2, PCI DSS, MITRE ATT&CK, etc.
  • Strong technical knowledge of core security technologies: DLP, EDR, CASB, NGAV, WAF, email security, firewalls, PAM, etc.
  • Experience with cyber and cloud security operations, controls, and architecture.
  • Familiarity with IS audit and risk assessment practices and methodologies.
Seniority level
  • Seniority levelDirector
Employment type
  • Employment typeFull-time
Job function
  • Job functionInformation Technology
  • IndustriesIT Services and IT Consulting

Referrals increase your chances of interviewing at Bit-Development.dev by 2x

Sign in to set job alerts for "Information Security Manager" roles.

We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr

  • Karachi, Sindh, Pakistan VRG (Pvt) Ltd. Full time

    Job Description:Dear All,We are looking to hire Asst. Manager - Information Security – Financial ServicesJob description:Working with all business units to determine possible risks and risk management process, acquiring the correct technology and analyzing IT security threats and their mitigation.Ensuring the newly acquired technology complies with the SBP...


  • Karachi, Sindh, Pakistan Faysal Bank Limited Full time

    Job Responsibilities:Acted as the coordinator for both internal and external audits, as well as SBP inspections, focusing on the information security function.Managed standards compliance initiatives as the project manager, including PCI DSS, ISO 27001, and SWIFT CSCF.Served as the custodian of tagged issues and monitored progress related to Board...


  • Karachi, Sindh, Pakistan Syhtek Full time

    The Information Security Analyst will safeguard Syhtek's digital assets and IT infrastructure. You will monitor and defend against security threats, ensuring compliance with policies and regulations. You will be instrumental in identifying vulnerabilities and implementing security measures to protect our clients and internal systems. Join our team to protect...


  • Karachi, Sindh, Pakistan HR Ways Full time

    About the job: Information Security AnalystClient Introduction:Our client company is a financial wellness platform that plans to change the way you receive and spend your salary.Job Description:Purpose:The ideal candidate will be responsible for managing day-to-day security-related queries, coordinating annual PCI-DSS and ISO 27001 compliance projects, and...


  • Karachi, Sindh, Pakistan bank Full time

    Bank Makramah is seeking a seasoned and highly strategic Chief Information Security Officer (CISO) to lead its information security initiatives at the Head Office in Karachi. The ideal candidate will be responsible for developing, implementing, and maintaining the organization's information security framework to protect digital assets, systems, and data...


  • Karachi, Sindh, Pakistan Samba Bank Limited Full time

    Job Title: Information Technology/Security, System Admin & BCP AuditorJob Type: PermanentMinimum Education: Bachelors (Preferably in Computer Science or related field)2 - 3 years of relevant experienceStrong analytical & report writing skillsSound knowledge and understanding of regulatory frameworkKnowledge of Internal Audit System & Information...


  • Karachi, Sindh, Pakistan Hilal Confectionery Private Limited. Full time

    Hilal Confectionery Private Limited, PakistanResponsible for providing professional assistance to the Security Head/Manager of Factories regarding the implementation of security measures to maintain a high level of discipline.Responsible for the complete safety and security of the premises and personnel.Job SpecificationExcellent communication skillsTeam...


  • Karachi, Sindh, Pakistan VRG (Pvt) Ltd. Full time

    Job Description:Dear All,We are seeking a highly skilled and experienced Manager Cyber Security – Financial Services to lead and enhance our cybersecurity strategy, governance, risk management, and incident response in the financial services sector. The ideal candidate will be responsible for ensuring the security, confidentiality, integrity, and...

  • Security Specialist

    2 weeks ago


    Karachi, Sindh, Pakistan ASK Development Full time

    Job Description of Consultant Security SpecialistsEvent Security OperationsDesign and implement security protocols for TDAP's events, including TEXPO, FOODAG, Engineering and Healthcare Show, and WEXNET.Ensure secure movement and accommodation of high-profile guests such as ambassadors and foreign dignitaries.Risk Assessment and LitigationIdentify potential...

  • Manager Security

    3 weeks ago


    Karachi, Sindh, Pakistan Bahria Town Karachi Full time

    The incumbent must have experience in security, administration, threat assessment of projects, and experience in designing a security plan for housing and commercial projects with a focus on managing good protocols for residents, commercial business units, and visitors.Retired Major or equivalent from fighting Arms of Armed forces ONLY...