Skip to main content
Post your resume and find your next job on Indeed!

Information Security jobs in Karachi

Sort by: -

People also searched:

soc

Job Post Details

Information Security Specialist - job post

Datamatics Technologies
3.5 out of 5 stars
Karachi

Job details

Job type

  • Full-time

Location

Karachi

Full job description

Job Summary

We are seeking an experienced Information Security Specialist to strengthen the organization's security posture by ensuring compliance with cybersecurity standards, managing security audits, and implementing effective governance, risk, and compliance (GRC) practices. The successful candidate will be responsible for assessing security controls, securing enterprise platforms, APIs, identity and access management (IAM) systems, and supporting data governance initiatives.

The ideal candidate will have strong expertise in information security, security compliance, platform security, API security, IAM, and cybersecurity frameworks, with proven experience conducting security assessments and audits within enterprise environments.

Key Responsibilities

Information Security Management

  • Develop, implement, and maintain information security policies, standards, and procedures.
  • Assess and enhance the organization's overall security posture through continuous monitoring and risk assessments.
  • Implement security controls to protect enterprise systems, applications, and sensitive data.
  • Ensure alignment with industry best practices and internationally recognized security standards.

Governance, Risk & Compliance (GRC)

  • Support cybersecurity governance initiatives and ensure compliance with organizational policies and regulatory requirements.
  • Conduct security risk assessments and recommend appropriate mitigation strategies.
  • Develop and maintain risk registers, security documentation, and compliance reports.
  • Assist in developing and enforcing security governance frameworks and control measures.

Security Audits & Compliance

  • Plan, coordinate, and participate in internal and external security audits.
  • Assess compliance with security frameworks, standards, and regulatory requirements.
  • Track audit findings and coordinate remediation activities with technical and business teams.
  • Prepare audit evidence, documentation, and compliance reports.

Identity & Access Management (IAM)

  • Evaluate and monitor Identity and Access Management (IAM) controls and user access policies.
  • Assess authentication, authorization, privileged access management, and role-based access controls.
  • Support implementation and review of Multi-Factor Authentication (MFA) and Single Sign-On (SSO) solutions.

API & Platform Security

  • Review and assess API security controls and secure integration practices.
  • Conduct security assessments of enterprise applications, cloud platforms, and digital services.
  • Identify vulnerabilities and recommend remediation measures.
  • Support secure application development and platform hardening initiatives.

Data Governance & Security

  • Collaborate with Data Governance teams to ensure the protection of enterprise data assets.
  • Ensure appropriate security controls for data classification, encryption, retention, and privacy.
  • Support data governance initiatives by implementing security best practices.

Incident Response & Monitoring

  • Support security incident investigations and root cause analysis.
  • Collaborate with SOC teams to monitor, detect, and respond to security threats.
  • Participate in vulnerability assessments, penetration testing reviews, and security awareness initiatives.
  • Recommend improvements to strengthen organizational security resilience.

Documentation & Reporting

  • Develop and maintain security policies, procedures, standards, and technical documentation.
  • Prepare executive reports on security posture, compliance status, audit findings, and risk assessments.
  • Maintain evidence required for audits and compliance reviews.

Required Technical Skills

  • Information Security Management
  • Cybersecurity Governance
  • Governance, Risk & Compliance (GRC)
  • Security Risk Assessment
  • Security Audits & Compliance
  • Identity & Access Management (IAM)
  • API Security
  • Platform Security
  • Data Governance & Information Protection
  • Security Policies & Standards
  • Vulnerability Management
  • Security Monitoring & Incident Response
  • Network Security Fundamentals
  • Cloud Security (AWS, Azure, or GCP)
  • Security Documentation & Reporting

Security Frameworks & Standards

  • ISO/IEC 27001
  • NIST Cybersecurity Framework (CSF)
  • CIS Controls
  • OWASP Top 10
  • SOC 2 (Preferred)
  • GDPR / Data Privacy Regulations (Preferred)
  • Zero Trust Security Principles (Preferred)

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Information Security, or a related field.
  • Minimum 7+ years of experience in Information Security, Cybersecurity, or Governance, Risk & Compliance (GRC).
  • Proven experience conducting security audits of enterprise platforms, APIs, Identity & Access Management (IAM), and data governance environments.

LCZ1qWcaWo

Let Employers Find YouUpload Your Resume