
Information Security Manager
5 hours ago
Get AI-powered advice on this job and more exclusive features.
Direct message the job poster from Bit-Development.dev
Building High-Impact Tech Teams | Talent Acquisition Expert | Tech & Non-Tech Recruiter | Head Hunter | HR Manager | Strategic Recruitment Partner |Information Security Manager
- Reporting to: Chief Technology Officer
- Experience: 10+ years
- Language: Outstanding Written and Spoken English Skills
Summary:
We are seeking a skilled, experienced, and collaborative leader of Information Security to lead our information security team based in Karachi. This individual will manage a team of security professionals and play a key role in operating our Security Operations Center (SOC), securing the enterprise environment, supporting compliance efforts (ISO 27001 and SOC 2), and driving continuous improvement in our security posture.
The ideal candidate combines strong technical expertise with sound risk judgment; focusing on prioritizing and addressing risks in a balanced, business-aligned manner over default patching of automated scan findings. This role emphasizes pragmatic, continuous security improvement over idealism, and requires a leadership style grounded in trust, mentorship, and team growth. This role offers global visibility and requires close coordination with cross-functional stakeholders across regions to continually mature our security posture and risk management practices.
Key Responsibilities:
- Lead and mentor a team of information security professionals promoting learning, collaboration and professional development.
- Implement security controls, risk assessment framework, and programs that align to best practices and regulatory requirements.
- Advise and recommend improvements to the design, development and expansion of ISMS across the global organization consistent with business needs and capabilities.
- Support the implementation and maintenance of the Information Security Management System (ISMS).
- Ensure timely identification, communication, and remediation of security risks and issues.
- Oversee vulnerability management efforts with a focus on contextual risk analysis—ensuring findings are prioritized based on business impact and not automatically relayed scan outputs.
- Balance risk identification and treatment with business capabilities and resources.
- Conduct and oversee third-party risk assessments, including vendor assessments, control reviews and policy adherence.
- Provide global security governance support, including preparation of stakeholder reports and communication of security posture.
- Measure and analyze control effectiveness; identify and develop relevant metrics; report findings and lead remediation tracking efforts.
- Champion security initiatives across the enterprise.
Required Qualifications:
- 10+ years of progressive experience in Information Security, with at least 5 years in a leadership role managing global or internationally alligned teams.
- Track record of successfully supporting or leading security programs for ISO 27001 and SOC 2 compliance within a service provider or B2B environment.
- Led or materially contributed to the implementation and audit-readiness of security frameworks (ISO 27001, NIST CSF, SOC 2) across multiple geographies.
- Hands-on experience analyzing risk, assessing requirements, and remediating findings in high-compliance environments.
- Proven experience leading vulnerability management with a focus on contextual risk analysis—going beyond scan output to prioritize and drive remediation based on business impact.
- Experience partnering with enterprise IT, legal, and compliance teams to operationalize security controls and improve governance maturity.
- Relevant industry certification such as ISO 27001 Lead Auditor, CISSP / CISA / CISM / CCSP etc. (at least two) is highly desirable.
Knowledge:
- Broad level of knowledge of security and risk issues and techniques across platforms.
- Deep understanding of security frameworks: ISO 27001:2013, NIST CSF, SOC 2, PCI DSS, MITRE ATT&CK, etc.
- Strong technical knowledge of core security technologies: DLP, EDR, CASB, NGAV, WAF, email security, firewalls, PAM, etc.
- Experience with cyber and cloud security operations, controls, and architecture.
- Familiarity with IS audit and risk assessment practices and methodologies.
- Seniority levelDirector
- Employment typeFull-time
- Job functionInformation Technology
- IndustriesIT Services and IT Consulting
Referrals increase your chances of interviewing at Bit-Development.dev by 2x
Sign in to set job alerts for "Information Security Manager" roles.We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr-
Manager Information Security
3 weeks ago
Karachi, Sindh, Pakistan HRSI Full timeAbout the job Manager Information SecurityCOMPANY OVERVIEW:Our client, a Karachi-based, State Bank of Pakistan (SBP) regulated Electronic Money Institution (EMI), seeks to appoint an experienced professional for the following role:As Manager Information Security, you will be responsible for establishing and enforcing security protocols that safeguard...
-
Manager Infrastructure and Information Security
3 weeks ago
Karachi, Sindh, Pakistan Sjggroup Full timeManager Infrastructure and Information SecurityManager Infrastructure and Information SecurityPosition titleManager Infrastructure and Information SecurityDescriptionWe are seeking an experienced and highly motivated Manager – Infrastructure and Information Security to lead the design, development, and execution of our IT infrastructure and cybersecurity...
-
Specialist, Information Security
4 weeks ago
Karachi, Sindh, Pakistan Aga Khan University Full timeGet AI-powered advice on this job and more exclusive features.Direct message the job poster from Aga Khan University.Introduction to the Aga Khan University:Chartered in 1983, Aga Khan University (AKU) is a private, autonomous and self-governing international university with 13 teaching sites in 6 countries distributed across three continents. As an integral...
-
Karachi, Sindh, Pakistan beBeeManager Full time 800,000 - 1,200,000We are seeking a seasoned IT professional to lead our Infrastructure and Information Security initiatives. This role involves designing, developing, and executing strategies for secure, scalable, and efficient technology operations.Key Responsibilities:Develop and implement comprehensive enterprise information security and IT risk management...
-
Information Security Analyst
5 hours ago
Karachi, Sindh, Pakistan Syhtek Full timeThe Information Security Analyst will safeguard Syhtek's digital assets and IT infrastructure. You will monitor and defend against security threats, ensuring compliance with policies and regulations. You will be instrumental in identifying vulnerabilities and implementing security measures to protect our clients and internal systems. Join our team to protect...
-
Information Security Analyst
3 weeks ago
Karachi, Sindh, Pakistan Abroad Work Full timeInformation Security Analyst vacancy in Karachi, PakistanJunior Information Security AnalystWe are seeking a highly motivated Junior Information Security Analyst to join our team in Karachi. As a Junior Information Security Analyst, you will work with senior analysts to protect our company's data and systems from cyber threats. This is an excellent...
-
Information Security Specialist
1 week ago
Karachi, Sindh, Pakistan beBeeRisk Full timeIT Security and Risk Management ProfessionalWe are seeking a highly skilled IT Security and Risk Management professional to join our team. In this role, you will be responsible for conducting audits of IT infrastructure, systems, and applications to assess risks, controls, and compliance.The successful candidate will have a strong understanding of IT...
-
Chief Information Security Officer
4 weeks ago
Karachi, Sindh, Pakistan HORO Digital Full timeAbout the Company: Financial InstitutionKey ResponsibilitiesProvide leadership, vision, and direction on information security to the information security staff. Prepare and launch for various platforms (e.g. Android, iOS, web etc.).Oversee and coordinate all aspects of alignment of the Bank's information security policies and procedures aligned with industry...
-
Cloud & Information Security Analyst
4 weeks ago
Karachi, Sindh, Pakistan Astera Software, Inc. Full timeJob Summary:The Cloud & Information Security Analyst is primarily responsible for ensuring the security of our On-premises & Cloud-based infrastructure and Information Systems. The incumbent will play a critical role in identifying potential security risks, implementing measures to mitigate those risks, and maintaining compliance with industry regulations...
-
Chief Information Security Officer
5 days ago
Karachi, Sindh, Pakistan bank Full timeBank Makramah is seeking a seasoned and highly strategic Chief Information Security Officer (CISO) to lead its information security initiatives at the Head Office in Karachi. The ideal candidate will be responsible for developing, implementing, and maintaining the organization's information security framework to protect digital assets, systems, and data...