Assistant Manager Information Security

Master Group

Islamabad

On-site

PKR 1,000,000 - 1,600,000

Full time

48 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Master Group is seeking an Assistant Manager – Information Security to strengthen governance, risk management, and compliance across the organization.

The role oversees ISMS, ensures ISO 27001, ISO 27017, and PCI DSS compliance, conducts risk and vendor assessments, coordinates audits, monitors controls, drives security awareness and continuous improvement; communicates findings to leadership.

Qualifications

  • BS/ MS in Information Technology or equivalent.
  • 4–5 years of relevant experience.
  • Experience with ISO 27001/27017 and PCI DSS is preferred.

Responsibilities

  • Develop and maintain information security policies, standards, and procedures.
  • Manage ISMS implementation and continuous improvements.
  • Ensure compliance with ISO 27001, ISO27017, PCI DSS and regulatory requirements.
  • Coordinate internal and external security audits and remediation tracking.
  • Plan and deliver security awareness programs.
  • Prepare governance and risk reports.

Skills

Security Governance
ISMS
Security Audits
Policy Development
Third-Party Risk
Security Awareness
Stakeholder Management

Education

BS/MS in Information Technology

Job description

Job Summary:

The Assistant Manager – Information Security will be responsible for strengthening information security governance, risk management, and compliance across the organization. The role involves managing ISMS, ensuring compliance with ISO 27001, ISO 27017, and PCI DSS, conducting security risk and vendor assessments, coordinating audits, monitoring security controls, and driving awareness and continuous improvement initiatives.

Job Description:
Governance & Compliance
  • Develop, review, and maintain information security policies, standards, and procedures.
  • Support implementation and continuous improvement of the Information Security
    Management System (ISMS).
  • Ensure compliance with ISO 27001, ISO27017, PCI DSS, and applicable regulatory requirements.
  • Coordinate internal and external security audits and track remediation of audit findings.
Risk Management
  • Conduct information security risk assessments and maintain the risk register.
  • Review security controls for new projects, systems, and cloud deployments.
  • Track risk treatment plans and ensure timely mitigation of identified risks.
Security Operations Governance
  • Monitor compliance with security baselines, vulnerability remediation SLAs, and access review processes.
  • Review security incidents to identify control gaps and recommend corrective actions.
  • Coordinate with SOC and infrastructure teams to improve operational security controls.
Security Awareness & Reporting
  • Plan and deliver security awareness and phishing simulation programs.
  • Prepare periodic reports on security risks, compliance status, audits, and governance metrics.
  • Recommend improvements to security processes and governance practices.

Job Specification:

Education: BS / MS in Information Technology

Experience: 4-5 years of relevant experience

Job Related Competencies:

  • Information Security Operations/GovernanceRisk Assessment & Risk Management
  • ISMS & ISO 27001
  • Security Audits & Compliance
  • Policy Development
  • Third-Party Risk Management
  • Security Awareness
  • Strong analytical, communication, and stakeholder management skills
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

InfoSec Governance & Risk Lead (ISO 27001, PCI DSS)
InfoSec Governance & Risk Lead (ISO 27001, PCI DSS)

Master Group • Islamabad

On-site
PKR 1,000,000 - 1,600,000
AM Information Security - Risk Management & Compliance
AM Information Security - Risk Management & Compliance

Zong 5G • Islamabad

On-site
PKR 1,800,000 - 2,400,000
Governance, Risk, and Compliance (GRC) Specialist
Governance, Risk, and Compliance (GRC) Specialist

NETSOL Technologies Inc. • Lahore

On-site
PKR 1,800,000 - 3,000,000
Information Security Manager
Information Security Manager

Arpatech (Pvt) Ltd • Karachi Division

On-site
PKR 1,674,000 - 2,790,000
Assistant Manager: GRC & Compliance
Assistant Manager: GRC & Compliance

Arpatech (Pvt) Ltd • Karachi Division

On-site
PKR 1,674,000 - 2,790,000
Compliance Analyst
Compliance Analyst

Nextbridge Global • Lahore

On-site
PKR 600,000 - 1,200,000
Software Process Engineer
Software Process Engineer

Brickstech • Lahore

On-site
PKR 900,000 - 1,500,000
Information Security Officer
Information Security Officer

Translation Empire Ltd • Rawalpindi Cantonment

On-site
PKR 80,000 - 140,000
Assistant Engineer / Assistant Manager - IT Security
Assistant Engineer / Assistant Manager - IT Security

Sui Southern Gas Company Limited • Karachi Division

On-site
PKR 900,000 - 1,300,000
Head of Information Security - Confidential
Head of Information Security - Confidential

Brickstech • Lahore

On-site
PKR 3,000,000 - 6,000,000