
Cyber Security GRC
3 weeks ago
As part of our cybersecurity team, the Cybersecurity GRC Officer/Manager will play a strategic role in shaping and enforcing governance, risk, and compliance practices across our digital and operational landscape. This position is responsible for ensuring our cybersecurity controls, frameworks, and risk strategies meet evolving regulatory requirements and industry standards. The ideal candidate will bring both deep technical understanding and pragmatic leadership to align GRC initiatives with broader business and security goals.
Duties and Responsibilities- Design, implement, and maintain cybersecurity governance policies and documentation.
- Oversee internal governance structures ensuring consistency with international standards and business objectives.
- Provide policy leadership on emerging compliance areas such as AI governance and cloud-specific standards.
- Lead risk assessments and threat modeling exercises focused on cybersecurity and third-party risks.
- Maintain a dynamic risk register, ensuring mitigation strategies are timely and actionable.
- Advise the leadership team on cybersecurity risk appetite and priority initiatives.
- Manage compliance with standards including ISO 27001, PCI-DSS, SOC 2, CIS Controls, NIST CSF, and SANS. Ensure alignment with regional and international regulations (e.g., GDPR, CBUAE, SAMA, CMA).
- Coordinate and lead audit readiness efforts; manage relationships with external auditors and assessors.
- Work closely with security operations and engineering teams to validate control effectiveness.
- Recommend improvements to technical security controls (firewalls, SIEM, DLP, endpoint protection).
- Stay current with threat intelligence and advise on proactive defenses and incident readiness.
- Contribute to incident response planning and lead compliance-related post-incident reviews.
- Provide comprehensive risk and compliance reporting to executive leadership.
- Develop role-specific cybersecurity and GRC training modules. Promote a culture of cybersecurity awareness across departments and geographies.
- Availability outside business hours may be required during security incidents or audits.
- The role supports a fully remote, globally distributed environment.
- Minimum 3 years in GRC roles with direct engagement in cybersecurity domains.
- Demonstrated experience with compliance management and cybersecurity operations.
- Familiarity with international and regional regulators, including those in the GCC and Europe.
- In-depth knowledge of cybersecurity architecture and tools (e.g., SIEM, IDS/IPS, DLP).
- Proficient in risk frameworks like ISO 27005, NIST SP 800-30, FAIR. Able to bridge compliance frameworks with technical implementation.
- CISSP, CISA, CRISC, CISM, ISO 27001 Lead Implementer/Auditor, or equivalent certifications.
- Excellent written and verbal communication with an executive presence.
- Strong organizational skills and ability to manage high-impact cross-functional projects.
- High attention to detail with a proactive, improvement-oriented mindset. Ability to guide teams with a cyber risk-focused approach.
- Ability to translate risk and compliance insights into strategic business decisions.
- Data-driven decision making with a strong analytical mindset.
- Driving security adoption and awareness.
- Bachelor's or Master's degree in Cybersecurity, Information Security, Risk Management, or related fields.
- Work Mode: Onsite - Full Time
- Location: Karachi
- Experience: 5+ years
- Days: Monday to Friday
- Timing: 9 am - 6 pm
- Salary: Market Competitive
HR Ways is an award-winning technical recruitment firm helping software houses and IT product companies internationally and locally to find IT talent. We are engaged by 300+ employers worldwide, ranging from the world's biggest SaaS companies to the most competitive startups. We have entities in Dubai, Canada, US, UK, Pakistan, India, Saudi Arabia, Portugal, Brazil, and other parts of the world. Join our WhatsApp Channel https://shorturl.at/983azto to stay updated or visit www.hrways.co to learn more.
#J-18808-Ljbffr-
Senior Cyber GRC Analyst I
3 weeks ago
Karachi, Sindh, Pakistan Careem Full timeCareem is building the Everything App for the greater Middle East, making it easier than ever to move around, order food and groceries, manage payments, and more. Careem is led by a powerful purpose to simplify and improve the lives of people and build an awesome organisation that inspires. Since 2012, Careem has created earnings for over 2.5 million...
-
Lead Cloud Security Engineer GRC
3 weeks ago
Karachi, Sindh, Pakistan HR WAYS Full timeAbout the job Lead Cloud Security Engineer GRCAbout Our Client:Our client company is one ofUAEs largest compliance company.Job Description:As part of our cybersecurity team, the Cybersecurity GRC Officer/Manager will play a strategic role in shaping and enforcing governance, risk, and compliance practices across our digital and operational landscape. This is...
-
Cyber Security Consultant
2 days ago
Karachi, Sindh, Pakistan beBeeCybersecurity Full time 800,000 - 1,500,000Job opening: Remote work opportunity.Bachelor's degree in IT or Business required.Both experienced and fresh candidates considered for this role.Job SummaryThis job is open to unemployed graduates seeking a career in the IT industry. If you wish to be part of a leading cyber security services provider, please submit your resume atLead generation for our...
-
Cyber Security Engineer
2 weeks ago
Karachi, Sindh, Pakistan eZhire Full timeAt eZhire, we're revolutionizing the mobility industry through innovation, reliability, and secure technology. As we expand our digital ecosystem, we're looking for a talented and passionate Cyber Security Engineer to help ensure the integrity, confidentiality, and availability of our systems and data.Job Summary:We are seeking a skilled and driven Cyber...
-
Cyber Security Engineer
6 days ago
Karachi, Sindh, Pakistan eZhire Full timeAt eZhire, we're revolutionizing the mobility industry through innovation, reliability, and secure technology. As we expand our digital ecosystem, we're looking for a talented and passionate Cyber Security Engineer to help ensure the integrity, confidentiality, and availability of our systems and data.Job Summary:We are seeking a skilled and driven Cyber...
-
consultant - grc
3 weeks ago
Karachi, Sindh, Pakistan Risk Associates - EMEA & Asia Full timeJoin to apply for the CONSULTANT - GRC role at Risk Associates - EMEA & AsiaGet AI-powered advice on this job and more exclusive features.Key ResponsibilitiesLead Cybersecurity assessments, including risk assessments, vulnerability assessments, and compliance audits, to evaluate clients' Cybersecurity posture.Develop and implement Cybersecurity frameworks,...
-
OT Cyber Security Engineer
4 weeks ago
Karachi, Sindh, Pakistan Siemens Full timeOT Cyber Security Engineer - Karachi, PakistanJoin to apply for the OT Cyber Security Engineer - Karachi, Pakistan role at SiemensOT Cyber Security Engineer - Karachi, PakistanJoin to apply for the OT Cyber Security Engineer - Karachi, Pakistan role at SiemensSiemens OT Cybersecurity Service Engineer – Karachi, PakistanSiemens Digital Industries is a...
-
Senior Cyber Security Expert
2 weeks ago
Karachi, Sindh, Pakistan beBeeCybersecurity Full timeWe are seeking a skilled Cyber Security Specialist to lead our IT operations, infrastructure and team. This is a full-time position that requires strong skills in networking, firewalls, AD, EDR and cloud (AWS/Azure).Responsibilities:Lead IT operations, infrastructure, and team.Ensure network/server uptime and data security.Oversee cybersecurity tools and...
-
Cyber Security Leader for Financial Services
5 days ago
Karachi, Sindh, Pakistan beBeecybersecurity Full time $90,000 - $120,000Job TitleA highly skilled Cyber Security Leader is sought to lead and enhance our cybersecurity strategy, governance, risk management, and incident response in the financial services sector.Key ResponsibilitiesDevelop, implement, and maintain the organization's cybersecurity strategy, policies, and procedures.Ensure alignment with financial industry...
-
Senior Information Security Specialist
6 days ago
Karachi, Sindh, Pakistan beBee Careers Full timeJob Description: We are seeking a highly experienced Senior Consultant with strong expertise in Information Security Management Systems (ISMS) and IT Governance, Risk, and Compliance (IT GRC).The ideal candidate should have a proven track record of implementing and auditing ISO 27001, developing and designing IT GRC frameworks based on COBIT, NIST, and...