Senior Information Security Strategist

2 days ago


Lahore, Punjab, Pakistan beBee Careers Full time

Job Summary:

We are seeking a highly skilled Information Security Specialist to develop, implement, and maintain an Information Security Management System (ISMS) in line with ISO 27001 standards. The ideal candidate will have strong expertise in security governance, risk management, and compliance.

The role involves collaborating with internal stakeholders and third-party security partners to establish robust security policies, implement GRC (Governance, Risk, and Compliance) controls, and conduct regular security assessments to protect the organization's systems and data.

Key Responsibilities:
  • Information Security Governance:
    • Develop and implement an Information Security Management System (ISMS) aligned with ISO 27001 standards.
    • Coordinate with third-party security partners to develop corporate information security policies and standards and ensure continuous monitoring of security controls, KRIs, and KPIs.
    • Ensure compliance with industry security frameworks, including NIST CSF & CIS Critical Security Controls.
    • Assist in the implementation of GRC controls and measures, performing audits and assessments to mitigate security risks.
  • Risk Management & Compliance:
    • Identify, communicate, and manage emerging security threats and vulnerabilities with key stakeholders.
    • Implement firewalls, endpoint security, SIEM, SOC, EDR/XDR, and mobility management tools to enhance security.
    • Conduct risk assessments, security audits, vulnerability scans, and penetration tests to validate security effectiveness.
    • Work with internal IT teams to adopt security best practices and ensure compliance with security policies.
  • Security Operations & Incident Management:
    • Monitor security systems and network performance to detect irregular activity and potential security incidents.
    • Collaborate with Managed Security Service Providers (MSSP) to conduct and review security assessments, including penetration testing and vulnerability scanning.
    • Use data encryption, firewalls, and security applications to protect digital information.
    • Validate IT infrastructure and recommend security enhancements to reduce risks and strengthen security posture.
  • Business Continuity & Disaster Recovery:
    • Work with third-party security partners and internal IT teams to develop Business Continuity and Disaster Recovery (BCDR) Plans and conduct regular drills.
    • Review, establish, and implement effective disaster recovery strategies.
  • Security Awareness & Training:
    • Conduct information security awareness training for employees and ensure adherence to security best practices.
    • Promote a security-first culture within the organization.
Qualifications & Experience:
  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • 3+ years of experience in information security operations, risk management, and compliance.
  • Strong understanding of ISO 27001, NIST CSF, CIS Critical Security Controls, ITIL, and COBIT.
  • Expertise in firewalls, endpoint security, SIEM, SOC, EDR/XDR, mobility management, vulnerability scanning, and penetration testing.
  • Certified professionals preferred (CISSP, CISM, CISA, ISO 27001 Lead Implementer/Auditor).
  • Experience working with certified security professionals, auditors, and SOC analysts.
  • Strong analytical, problem-solving, and communication skills.
Preferred Skills:
  • Knowledge of cloud security, DevSecOps, and threat intelligence.
  • Experience in working with security vendors, MSSPs, and security consulting firms.
  • Ability to design and implement risk treatment plans for complex security environments.

About This Role:

  • Opportunity to work with cutting-edge security technologies and industry best practices.
  • Collaborative and fast-paced work environment.
  • Continuous learning and professional growth opportunities.


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Digitt Plus is seeking an experienced Chief Information Security Officer to lead its information security strategy and ensure the safety of its fintech operations. This role requires a proven leader with deep expertise in cybersecurity, risk management, and compliance within the financial or digital services sector.Key ResponsibilitiesDevelop and implement a...


  • Lahore, Punjab, Pakistan Kualitatem Inc. Full time

    Information Security Engineer - ComplianceKUALITATEM is a global Consulting, Audit, and Assurance company specializing in Software Quality Assurance, Information Security, Technology Process Optimization & Cloud Infrastructure. Kualitatem is an ISO 9001:2015 and ISO 27001:2013 certified company.Required Experience - 4+ YearsDepartment - Information...


  • Lahore, Punjab, Pakistan The Children's Place Full time

    Direct message the job poster from The Children's PlaceTechnical Recruiter | 360 Recruitment | HR Operations | Performance Management | Talent Acquisition SpecialistPosition SummaryThe Information Security Analyst will be responsible for providing key development, design, integration, and enhancement of information security governance and frameworks...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    About the RoleThis is an exciting opportunity to join our team as an Information Security Professional. We are looking for someone with a strong background in information security, who can help us design and implement secure solutions for our clients.Key responsibilities include:Designing and developing secure architecture for cloud-based systemsImplementing...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job OverviewThe Data Security Strategist will be responsible for developing and implementing key security frameworks, controls, and risk management processes to ensure consistent security practices throughout the organization.Main Responsibilities:Develop and Implement Security Frameworks: Create and enforce information security frameworks and controls such...


  • Lahore, Punjab, Pakistan Dukan Full time

    Network Department, Lahore Apply By Jan 5, 2025We are looking for a skilled Information Security Analyst to protect our organization's information assets and maintain the integrity of our systems.In this role, you will monitor network security, assess risks, and identify potential threats while conducting thorough incident response.A strong understanding of...


  • Lahore, Punjab, Pakistan Dukan Full time

    Dukan is looking for a highly skilled Information Security Professional to join our team.In this role, you will be responsible for protecting our organization's digital assets and maintaining the integrity of our systems.This position involves:Monitoring network security to identify potential threats and breachesAssessing risks and developing strategies to...


  • Lahore, Punjab, Pakistan UOH Full time

    About the Role:The University of Buner is seeking a highly skilled Information Security Manager to lead its cybersecurity efforts. This critical role involves developing and implementing comprehensive security programs to safeguard the university's digital assets.Key Responsibilities:Developing Security Programs: Design, implement, and manage comprehensive...


  • Lahore, Punjab, Pakistan beBee Careers Full time

    Job Summary:Cybersecurity is a critical component of any organization's infrastructure. As an Information Security Expert, you will be responsible for protecting our systems and networks from security threats. Your duties will include analyzing data breaches, developing defensive strategies, and implementing security measures to safeguard our digital...


  • Lahore, Punjab, Pakistan Kualitatem Inc. Full time

    Cybersecurity Expert Job DescriptionKualitatem Inc. is a renowned consulting, audit, and assurance company specializing in software quality assurance, information security, and technology process optimization.We are seeking an experienced cybersecurity expert to lead external and internal projects at Kualitatem, ensuring compliance with desired information...