GRC Security Specialist

3 days ago


Lahore, Punjab, Pakistan beBee Careers Full time
Information Security Role

We are seeking a skilled Information Security Specialist to develop, implement, and maintain an Information Security Management System (ISMS) in line with ISO 27001 standards. The role involves collaborating with internal stakeholders and third-party security partners to establish robust security policies, implement GRC (Governance, Risk, and Compliance) controls, and conduct regular security assessments to protect the organization's systems and data.

Main Responsibilities:

  • Develop and implement an ISMS aligned with ISO 27001.
  • Coordinate with third-party security partners to develop corporate information security policies and standards and ensure continuous monitoring of security controls, KRIs, and KPIs.
  • Ensure compliance with industry security frameworks, including NIST CSF & CIS Critical Security Controls.
  • Assist in the implementation of GRC controls and measures, performing audits and assessments to mitigate security risks.

Risk Management & Compliance:

  • Identify, communicate, and manage emerging security threats and vulnerabilities with key stakeholders.
  • Implement firewalls, endpoint security, SIEM, SOC, EDR/XDR, and mobility management tools to enhance security.
  • Conduct risk assessments, security audits, vulnerability scans, and penetration tests to validate security effectiveness.
  • Work with internal IT teams to adopt security best practices and ensure compliance with security policies.

Security Operations & Incident Management:

  • Monitor security systems and network performance to detect irregular activity and potential security incidents.
  • Collaborate with Managed Security Service Providers (MSSP) to conduct and review security assessments, including penetration testing and vulnerability scanning.
  • Use data encryption, firewalls, and security applications to protect digital information.
  • Validate IT infrastructure and recommend security enhancements to reduce risks and strengthen security posture.

Business Continuity & Disaster Recovery:

  • Work with third-party security partners and internal IT teams to develop Business Continuity and Disaster Recovery (BCDR) Plans and conduct regular drills.
  • Review, establish, and implement effective disaster recovery strategies.

Security Awareness & Training:

  • Conduct information security awareness training for employees and ensure adherence to security best practices.
  • Promote a security-first culture within the organization.

  • GRC Specialist

    4 weeks ago


    Lahore, Punjab, Pakistan Descon Full time

    Direct message the job poster from DesconHR Professional | Talent Acquisition | Employee Engagement | Workforce Planning | Talent Management | Recruitment Strategy | Performance Management |…Job Summary:We are seeking a skilled Information Security Specialist to develop, implement, and maintain an Information Security Management System (ISMS) in line with...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Senior Cybersecurity PositionThis Information Security Specialist position is focused on developing, implementing, and maintaining an Information Security Management System (ISMS) aligned with ISO 27001 standards. The role involves working with internal stakeholders and third-party security partners to establish robust security policies and implement GRC...

  • GRC Consultant

    7 days ago


    Lahore, Punjab, Pakistan NETSOL Technologies Inc. Full time

    1 day ago Be among the first 25 applicantsDirect message the job poster from NETSOL Technologies Inc.Senior Technical Recruiter at NETSOL | X-Rozee.Pk Assistant Manager | Sr. Talent Acquisition | Head HunterJob Summary:We are seeking an experienced Information Security Compliance Officer to lead and oversee our organization's security compliance initiatives....


  • Lahore, Punjab, Pakistan MedCare MSO Global Full time

    Direct message the job poster from MedCare MSO GlobalMedcare MSO is one of the largest USA-based Healthcare IT organization in Pakistan, with 950+ people on board. We implement best practices and adopt state-of-the-art technology tools to achieve results. We are seeking an experienced Cyber Security Manager with a strong background in both the...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Governance, Risk, and Compliance SpecialistWe are looking for a highly motivated and detail-oriented GRC Specialist to join our team. The ideal candidate will have a strong background in policy drafting, risk assessments, compliance management, and implementation of best practices. This position requires an individual with 3–5 years of experience in GRC...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    We are seeking a highly experienced Information Security Engineer to join our team and oversee the implementation of Information Security Governance, Risk Management, and Compliance (GRC) strategies.The ideal candidate will have a strong background in managing and overseeing compliance across multiple areas, ensuring alignment with regulatory requirements...

  • Sales Executive

    5 days ago


    Lahore, Punjab, Pakistan Catalyic Security Full time

    1 day ago Be among the first 25 applicantsGet AI-powered advice on this job and more exclusive features.Direct message the job poster from Catalyic Security15k+ Followers Human Resources Generalist @ Catalyic Security | Catalyic Tech | Catalyic Consulting |MBA HR | Technical & Non-Technical Recruiter |…Role OverviewWe are looking to hire a motivated and...


  • Lahore, Punjab, Pakistan VaporVM Full time

    The Cyber Security Presales Engineer plays a key role in designing customized cybersecurity services and solutions for clients. This role involves creating technical proposals, presenting solutions, conducting demos, and working closely with sales and technical teams to ensure seamless transitions from sales to implementation.Location: LahoreKey...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    The role of Information Security Engineer is crucial for fostering a culture of transparency and accountability within an organization.This position involves overseeing compliance across security, privacy, legal, and data protection to ensure alignment with regulatory requirements.Responsibilities include:Supporting the governance, risk management, and...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Oversee compliance and data protection in a SaaS environment.This role involves fostering a culture of transparency and accountability.Compliance and Governance: Ensure alignment with regulatory requirements and the organization's strategic objectives.Risk Management: Assist in strengthening risk management processes by working closely with stakeholders,...