
Senior Information Security Strategist
2 days ago
Job Summary:
We are seeking a highly skilled Information Security Specialist to develop, implement, and maintain an Information Security Management System (ISMS) in line with ISO 27001 standards. The ideal candidate will have strong expertise in security governance, risk management, and compliance.
The role involves collaborating with internal stakeholders and third-party security partners to establish robust security policies, implement GRC (Governance, Risk, and Compliance) controls, and conduct regular security assessments to protect the organization's systems and data.
Key Responsibilities:- Information Security Governance:
- Develop and implement an Information Security Management System (ISMS) aligned with ISO 27001 standards.
- Coordinate with third-party security partners to develop corporate information security policies and standards and ensure continuous monitoring of security controls, KRIs, and KPIs.
- Ensure compliance with industry security frameworks, including NIST CSF & CIS Critical Security Controls.
- Assist in the implementation of GRC controls and measures, performing audits and assessments to mitigate security risks.
- Risk Management & Compliance:
- Identify, communicate, and manage emerging security threats and vulnerabilities with key stakeholders.
- Implement firewalls, endpoint security, SIEM, SOC, EDR/XDR, and mobility management tools to enhance security.
- Conduct risk assessments, security audits, vulnerability scans, and penetration tests to validate security effectiveness.
- Work with internal IT teams to adopt security best practices and ensure compliance with security policies.
- Security Operations & Incident Management:
- Monitor security systems and network performance to detect irregular activity and potential security incidents.
- Collaborate with Managed Security Service Providers (MSSP) to conduct and review security assessments, including penetration testing and vulnerability scanning.
- Use data encryption, firewalls, and security applications to protect digital information.
- Validate IT infrastructure and recommend security enhancements to reduce risks and strengthen security posture.
- Business Continuity & Disaster Recovery:
- Work with third-party security partners and internal IT teams to develop Business Continuity and Disaster Recovery (BCDR) Plans and conduct regular drills.
- Review, establish, and implement effective disaster recovery strategies.
- Security Awareness & Training:
- Conduct information security awareness training for employees and ensure adherence to security best practices.
- Promote a security-first culture within the organization.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- 3+ years of experience in information security operations, risk management, and compliance.
- Strong understanding of ISO 27001, NIST CSF, CIS Critical Security Controls, ITIL, and COBIT.
- Expertise in firewalls, endpoint security, SIEM, SOC, EDR/XDR, mobility management, vulnerability scanning, and penetration testing.
- Certified professionals preferred (CISSP, CISM, CISA, ISO 27001 Lead Implementer/Auditor).
- Experience working with certified security professionals, auditors, and SOC analysts.
- Strong analytical, problem-solving, and communication skills.
- Knowledge of cloud security, DevSecOps, and threat intelligence.
- Experience in working with security vendors, MSSPs, and security consulting firms.
- Ability to design and implement risk treatment plans for complex security environments.
About This Role:
- Opportunity to work with cutting-edge security technologies and industry best practices.
- Collaborative and fast-paced work environment.
- Continuous learning and professional growth opportunities.
-
Information Security Strategist
33 minutes ago
Lahore, Punjab, Pakistan beBee Careers Full timeDigitt Plus is seeking an experienced Chief Information Security Officer to lead its information security strategy and ensure the safety of its fintech operations. This role requires a proven leader with deep expertise in cybersecurity, risk management, and compliance within the financial or digital services sector.Key ResponsibilitiesDevelop and implement a...
-
Information Security Engineer
2 weeks ago
Lahore, Punjab, Pakistan Kualitatem Inc. Full timeInformation Security Engineer - ComplianceKUALITATEM is a global Consulting, Audit, and Assurance company specializing in Software Quality Assurance, Information Security, Technology Process Optimization & Cloud Infrastructure. Kualitatem is an ISO 9001:2015 and ISO 27001:2013 certified company.Required Experience - 4+ YearsDepartment - Information...
-
Information Security Analyst
3 weeks ago
Lahore, Punjab, Pakistan The Children's Place Full timeDirect message the job poster from The Children's PlaceTechnical Recruiter | 360 Recruitment | HR Operations | Performance Management | Talent Acquisition SpecialistPosition SummaryThe Information Security Analyst will be responsible for providing key development, design, integration, and enhancement of information security governance and frameworks...
-
Information Security Professional
6 days ago
Lahore, Punjab, Pakistan beBee Careers Full timeAbout the RoleThis is an exciting opportunity to join our team as an Information Security Professional. We are looking for someone with a strong background in information security, who can help us design and implement secure solutions for our clients.Key responsibilities include:Designing and developing secure architecture for cloud-based systemsImplementing...
-
Data Security Strategist
9 hours ago
Lahore, Punjab, Pakistan beBee Careers Full timeJob OverviewThe Data Security Strategist will be responsible for developing and implementing key security frameworks, controls, and risk management processes to ensure consistent security practices throughout the organization.Main Responsibilities:Develop and Implement Security Frameworks: Create and enforce information security frameworks and controls such...
-
Information Security Analyst
2 weeks ago
Lahore, Punjab, Pakistan Dukan Full timeNetwork Department, Lahore Apply By Jan 5, 2025We are looking for a skilled Information Security Analyst to protect our organization's information assets and maintain the integrity of our systems.In this role, you will monitor network security, assess risks, and identify potential threats while conducting thorough incident response.A strong understanding of...
-
Information Security Professional
2 weeks ago
Lahore, Punjab, Pakistan Dukan Full timeDukan is looking for a highly skilled Information Security Professional to join our team.In this role, you will be responsible for protecting our organization's digital assets and maintaining the integrity of our systems.This position involves:Monitoring network security to identify potential threats and breachesAssessing risks and developing strategies to...
-
Information Security Manager
1 week ago
Lahore, Punjab, Pakistan UOH Full timeAbout the Role:The University of Buner is seeking a highly skilled Information Security Manager to lead its cybersecurity efforts. This critical role involves developing and implementing comprehensive security programs to safeguard the university's digital assets.Key Responsibilities:Developing Security Programs: Design, implement, and manage comprehensive...
-
Information Security Expert
17 hours ago
Lahore, Punjab, Pakistan beBee Careers Full timeJob Summary:Cybersecurity is a critical component of any organization's infrastructure. As an Information Security Expert, you will be responsible for protecting our systems and networks from security threats. Your duties will include analyzing data breaches, developing defensive strategies, and implementing security measures to safeguard our digital...
-
Information Security Manager
2 weeks ago
Lahore, Punjab, Pakistan Kualitatem Inc. Full timeCybersecurity Expert Job DescriptionKualitatem Inc. is a renowned consulting, audit, and assurance company specializing in software quality assurance, information security, and technology process optimization.We are seeking an experienced cybersecurity expert to lead external and internal projects at Kualitatem, ensuring compliance with desired information...