Information Security jobs
- Secure Tech Cards Pvt. LtdIslamabad
- Understanding of network security, IAM, endpoint security, and cloud security basics.
- Develop, implement, and maintain information security policies, standards,…
- Logi TrainPakistan
- Discretion and confidentiality when dealing with sensitive information.
- Proven 3+ years experience in an IT trainer or a teaching role.
- View all Logi Train jobs - Pakistan jobs - Lecturer jobs in Pakistan
- Salary Search: IT Trainer / Lecturer (work from home) salaries in Pakistan
- ZonesIslamabad
- Provide input to the CISO for risk prioritization and security strategy.
- The Information Security Auditor will be responsible for independent planning,…
- View all Zones jobs - Islamabad jobs - IT Security Specialist jobs in Islamabad
- Salary Search: Information Security Auditor salaries in Islamabad
- See popular questions & answers about Zones
- Programmers ForceLahore Johar Town
- Maintain information security risk registers and track risk treatment and remediation activities.
- Perform information security risk assessments and gap analyses…
- MKS LawIslamabad
- Following strict confidentiality, information-security and document-management procedures.
- Reviewing documents for missing information and inconsistencies.
- View all MKS Law jobs - Islamabad jobs - Operations Associate jobs in Islamabad
- Salary Search: Lawyer/Legal Operations Associate salaries in Islamabad
- HBLPakistan
- Decompose and analyze systems to develop security and privacy requirements and identify effective solutions.
- Decompose and analyze systems to develop security…
- View all HBL jobs - Pakistan jobs - CyberSecurity Specialist jobs in Pakistan
- Salary Search: Cyber Security Research Specialist salaries in Pakistan
- See popular questions & answers about HBL
- Leading Food & BeveragesFaisalabad
- Maintain strict confidentiality of CCTV footage and sensitive information.
- Immediately report critical incidents to the relevant management/security authorities…
- TPL Trakker LtdKarachi Gpo
- Bachelors in computer science, information security, or related field.
- 5 years of Experience in information security, technology governance, VAPT or IT Security…
- View all TPL Trakker Ltd jobs - Karachi Gpo jobs - IT Security Specialist jobs in Karachi Gpo
- Salary Search: Assistant Manager Information Security salaries
- See popular questions & answers about TPL Trakker Ltd
- EpazzTechLahore Johar Town
- Ability to handle confidential information with integrity and professionalism.
- Collaborate with IT and DevOps teams to remediate vulnerabilities and enforce…
- View all EpazzTech jobs - Lahore Johar Town jobs
- Salary Search: Security Analyst salaries
- See popular questions & answers about EpazzTech
- The HospitalIslamabad G-8/Markaz
- Maintain strict confidentiality of employee information and HR records.
- Manage the complete employee life cycle, from hiring and onboarding to confirmation,…
- ClaimCareIslamabad
- Implement and maintain IT security protocols to protect sensitive medical billing data.
- Knowledge of data privacy/security best practices (medical billing…
- View all ClaimCare jobs - Islamabad jobs - Network Manager jobs in Islamabad
- Salary Search: IT & Networking Manager salaries in Islamabad
- See popular questions & answers about ClaimCare
- ClaimCareIslamabad
- Implement and maintain IT security protocols to protect sensitive medical billing data.
- Knowledge of data privacy/security best practices (medical billing…
- View all ClaimCare jobs - Islamabad jobs - Network Manager jobs in Islamabad
- Salary Search: IT & Networking Manager salaries in Islamabad
- See popular questions & answers about ClaimCare
- MEP Solutions Pvt.LtdLahore
- Implement and monitor IT policies, SOPs, backup procedures, and security controls.
- We are seeking a skilled and proactive IT Assistant Manager to support the…
- View all MEP Solutions Pvt.Ltd jobs - Lahore jobs - IT Assistant jobs in Lahore
- Salary Search: IT Assistant Manager (Factory) salaries in Lahore
- GoPro ITWah Cantonment
- - Endpoint security and antivirus platforms.
- - Maintain accurate ticket notes, technical documentation, asset records, and customer information.
- Minimum 2-3 years experience in the field of cyber security.
- Assess security systems and measures for weaknesses and possible improvements.
- View all Zones jobs - Lahore jobs - Soc Analyst jobs in Lahore
- Salary Search: SOC Analyst L1 salaries in Lahore
- See popular questions & answers about Zones
- Empowering International Innovations (LLC)Lahore
- Ensure appropriate security, data protection, access controls, and backup procedures are followed.
- Provide general technical support relating to the company's…
Job Post Details
Job details
Pay
- From Rs 120,000 a month
Job type
- Full-time
Location
Full job description
Job Description: GRC & Information Security Specialist
Experience Required: 4–5 Years
Department: Information Security / Risk & Compliance
Location: Islamabad
About the Role
We are looking for a GRC & Information Security professional with 4–5 years of hands-on experience to manage governance, risk, and compliance activities while supporting the organization's broader information security posture. The ideal candidate bridges technical security knowledge with regulatory/compliance frameworks and can work independently with stakeholders across IT, audit, and business teams.
Key Responsibilities
Governance, Risk & Compliance (GRC)
- Develop, implement, and maintain information security policies, standards, and procedures
- Conduct periodic risk assessments and maintain the organizational risk register
- Manage compliance with frameworks/standards such as ISO 27001, NIST CSF, SOC 2, PCI-DSS, GDPR, HIPAA (as applicable)
- Coordinate internal and external audits; track findings through to remediation
- Perform vendor/third-party risk assessments (TPRM)
- Maintain evidence repositories and control documentation for audits and certifications
- Support Business Continuity/Disaster Recovery (BCP/DR) planning and testing
Information Security Operations
- Support vulnerability management program — coordinate scanning, tracking, and remediation with IT teams
- Assist in incident response — documentation, root cause analysis, and post-incident reporting
- Review security architecture/configurations for policy and compliance alignment
- Monitor security controls (access management, encryption, logging, DLP) for effectiveness
- Support security awareness training programs and phishing simulation campaigns
- Track regulatory changes and translate them into actionable internal controls
Reporting & Stakeholder Management
- Prepare risk and compliance dashboards/reports for leadership and audit committees
- Liaise with internal audit, legal, and business units on security and compliance matters
- Assist in maintaining metrics/KPIs for security program maturity
Required Skills & Qualifications
- Bachelor's degree in Information Security, Computer Science, IT, or related field
- 4–5 years of experience in GRC, Information Security, or IT Audit roles
- Strong knowledge of frameworks: ISO 27001, NIST, COBIT, PCI-DSS, GDPR
- Hands-on experience with risk assessment methodologies and control testing
- Familiarity with GRC tools (e.g., ServiceNow GRC, Archer, MetricStream) is a plus
- Understanding of network security, IAM, endpoint security, and cloud security basics
- Experience with audit coordination (internal/external, ISO surveillance audits, etc.)
- Excellent documentation, communication, and stakeholder management skills
Preferred Certifications
- ISO 27001 Lead Implementer / Lead Auditor
- CISA / CRISC / CISM
- CompTIA Security+
- Certified in Risk and Information Systems Control (CRISC) — big plus
Soft Skills
- Strong analytical and problem-solving mindset
- Ability to communicate technical risk to non-technical stakeholders
- Detail-oriented with strong documentation discipline
- Comfortable working cross-functionally with IT, legal, and business teams
Job Type: Full-time
Pay: From Rs120,000.00 per month
Work Location: In person