Specialist, Information Security

2 weeks ago


Karachi, Sindh, Pakistan Aga Khan University Full time

Get AI-powered advice on this job and more exclusive features.

Direct message the job poster from Aga Khan University.

Introduction to the Aga Khan University:

Chartered in 1983, Aga Khan University (AKU) is a private, autonomous and self-governing international university with 13 teaching sites in 6 countries distributed across three continents. As an integral part of the Aga Khan Development Network, AKU provides higher education in several disciplines, carries out research pertinent to the countries in which it exists and has campuses, programmes and/or teaching hospitals in Afghanistan, Kenya, Pakistan, Tanzania, Uganda and the UK. As an international institution, AKU operates on the core principles of quality, relevance, impact and access; and AKU is a model of academic excellence and an agent of social change.

As an equal opportunity employer, AKU believes in promoting a diverse and inclusive culture and is committed to adopt appropriate standards for safeguarding and promoting a respectful relationship with and between diverse workforce of its faculty, staff, trainees, volunteers, beneficiaries, wider communities, and other stakeholders with whom it works, including children and vulnerable adults and expects all employees/trainees and partners to share this commitment.

Job Role / Responsibilities:

Reporting to the Senior Manager, AKU Information Security. You will be responsible for:

  • Preparing, assessing and enforcing information security policies, standards, guidelines and procedures to ensure ongoing maintenance of security for all campuses.
  • Ensuring all IT and Information Security programs and policies are in compliance with applicable privacy and identity theft laws and other regulations such as ISO 27001, GDPR etc.
  • Assisting in the implementation of ISO-27001 security controls, and information security management system (ISMS) at AKU.
  • Monitoring security trends and driving security best practices throughout the organization.
  • Monitoring for security breaches and investigating violations when they occur; preparing reports that document security breaches and the extent of the damage caused by the breaches.
  • Evaluating and recommending counter measures against threats to information or privacy globally.
  • Identifying/recommending tools, processes, software, and hardware to improve or replace current security infrastructure practices, services, or technologies used globally to meet future requirements.
  • Coordinating with internal and external auditors, third party firms and consultants for audits, security risk assessments, vulnerability scans and penetration tests.
  • Managing and driving remediation efforts related to information security; remediation may be from incidents, penetration tests, vulnerability scans, internal/external audits for all campuses and critical practice assessments.
  • Understanding the business activities performed by AKU, and based on this understanding, suggesting appropriate information security solutions that adequately protect these activities AKU-wide.
  • Organizing, planning and conducting AKU-wide security awareness programs and campaigns, that are aligned with global security policy, standards, regulatory requirements, and industry practices.
  • Identifying information security weaknesses and/or gaps in the current operations and working with other teams to bring information security operations up to standards AKU-wide.
  • Working with other departments such as internal audit, legal and vendors to supervise AKU-wide information security requirements are incorporated into the rollout of new systems.
  • Providing support and guidance to internal users when they need to learn about new security products and procedures.
  • Working with the Technology team to manage threat protection strategies to include all layers of Information Security strategies such as firewalls, patching, anti-virus, log monitoring, data backup, disaster recovery, etc.

Eligibility Criteria / Requirements:

You should have:

  • A Master's degree in Computer Science, Information Technology, Information Security or related field.
  • 4-6 years of hands-on experience in IT and Information Security Management.
  • Possession of standard certifications including CISSP, CISM, CISA, strongly preferred.
  • Strong knowledge of Information Security and technology standards including but not limited to ISO 27001, NIST, COBIT, ITIL, HIPAA etc.
  • Experience or good understanding of implementing and maintaining ISO 27001 information security management system (ISMS).
  • The ability to perform information security risk assessments. IT security assessments and identify information security weaknesses and/or gaps in the current operations is a must.
  • The capability to evaluate and recommend new global information security technologies and counter measures against threats to information or privacy globally.
  • The ability to administer incident response planning and investigation processes of security breaches globally, and facilitate the management with disciplinary and legal matters associated with such breaches as necessary.
  • Knowledge of Business Continuity Planning, IT Disaster Recovery, auditing, and risk management, as well as contract and vendor negotiation.
  • The ability to manage and drive remediation efforts related to information security; remediation may be from incidents, penetration tests, vulnerability scans, internal/external audits for all campuses and critical practice assessments.
  • Experience of understanding the business activities performed by AKU, and based on this understanding, suggests appropriate information security solutions that adequately protect these activities AKU-wide.
  • The ability to work with other departments and vendors to supervise AKU-wide information security requirements are incorporated into the rollout of new systems.
  • Experience of working with a diverse group of individuals in a collaborative team environment.
  • Must be highly analytical and effectively able to troubleshoot and prioritize needs, requirements and other issues.
  • Aside from technical skills; excellent communications, teamwork, leadership and conflict management skills.

Comprehensive employment reference checks will be conducted.

Seniority level
  • Mid-Senior level
Employment type
  • Full-time
Job function
  • Information Technology
  • Industries: Higher Education and Hospitals and Health Care
#J-18808-Ljbffr

  • Karachi, Sindh, Pakistan beBee Careers Full time

    Security Risk Assessment SpecialistWe are seeking a senior level security risk assessment specialist to conduct reviews for application development/enhancement projects.Conducting thorough assessments to ensure successful implementation of security deliverables in accordance with industry best practices.Scheduling review meetings with project managers and...


  • Karachi, Sindh, Pakistan beBeeInformationSecurity Full time

    Job TitleWe are seeking a highly skilled and experienced Information Security Manager to join our team.The successful candidate will be responsible for ensuring the confidentiality, integrity and availability of our organization's information assets.This is an exciting opportunity for someone who is passionate about security and wants to make a real...


  • Karachi, Sindh, Pakistan Abroad Work Full time

    Information Security Analyst vacancy in Karachi, PakistanJunior Information Security AnalystWe are seeking a highly motivated Junior Information Security Analyst to join our team in Karachi. As a Junior Information Security Analyst, you will work with senior analysts to protect our company's data and systems from cyber threats. This is an excellent...


  • Karachi, Sindh, Pakistan HRSI Full time

    About the job Manager Information SecurityCOMPANY OVERVIEW:Our client, a Karachi-based, State Bank of Pakistan (SBP) regulated Electronic Money Institution (EMI), seeks to appoint an experienced professional for the following role:As Manager Information Security, you will be responsible for establishing and enforcing security protocols that safeguard...

  • Security Specialist

    2 weeks ago


    Karachi, Sindh, Pakistan Voice Bridge communications Full time

    Bachelor's degree in Computer Science, Information Technology, or a related fieldWe provide high-quality customer service solutions in the Consumer Services industry. We are currently seeking a Security Specialist with 1 year of experience to join our team for an Online/Remote position in Karachi.Responsibilities:- Develop, implement, and maintain security...


  • Karachi, Sindh, Pakistan HORO Digital Full time

    About the Company: Financial InstitutionKey ResponsibilitiesProvide leadership, vision, and direction on information security to the information security staff. Prepare and launch for various platforms (e.g. Android, iOS, web etc.).Oversee and coordinate all aspects of alignment of the Bank's information security policies and procedures aligned with industry...


  • Karachi, Sindh, Pakistan PTIS - Premier Tubular Inspection Services Full time

    PTIS - Premier Tubular Inspection Services offers quality inspection services, non-destructive testing, calibration services, and instrument calibration to clients in the energy sector. With a strong focus on high-quality non-destructive testing, PTIS has been a leader in the industry for over thirty years. The team at PTIS is known for their expertise and...


  • Karachi, Sindh, Pakistan Sjggroup Full time

    Manager Infrastructure and Information SecurityManager Infrastructure and Information SecurityPosition titleManager Infrastructure and Information SecurityDescriptionWe are seeking an experienced and highly motivated Manager – Infrastructure and Information Security to lead the design, development, and execution of our IT infrastructure and cybersecurity...


  • Karachi, Sindh, Pakistan Halan Microfinance Bank Full time

    Get AI-powered advice on this job and more exclusive features.Ready for your next career move as a CISO? Join the fastest growing Microfinance BankHalan Microfinance Bank - one of the fastest growing banks in Pakistan, is expanding it's outreach. We are looking for enthusiastic individuals to join us and be part of Halan Family in this successful growth...


  • Karachi, Sindh, Pakistan Astera Software, Inc. Full time

    Job Summary:The Cloud & Information Security Analyst is primarily responsible for ensuring the security of our On-premises & Cloud-based infrastructure and Information Systems. The incumbent will play a critical role in identifying potential security risks, implementing measures to mitigate those risks, and maintaining compliance with industry regulations...