Chief Information Security & Risk Officer

Taraki

Lahore

On-site

PKR 8,000,000 - 16,000,000

Full time

13 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Confidential is seeking a Head of Information Security in Lahore to lead the company’s security, risk and compliance posture. The role partners with executives to enable product innovation while protecting sensitive borrower data and ensuring SBP audit readiness.

You will own enterprise risk management, drive ISO 27001 and other certifications, and oversee incident response, continuity planning and vendor security risk. This role reports to the CEO and interacts with the Board.

Qualifications

  • 15+ years in information security, risk and compliance in regulated environments.
  • Track record managing regulator audits (SBP or equivalent).
  • Ability to enable business through risk-based security decisions.
  • Must stand firm on material risk and governance.
  • Certifications and strong security framework knowledge (ISO27001/NIST/CIS).

Responsibilities

  • Lead security strategy and risk posture aligned to ISO27001/NIST/CIS.
  • Own SBP relationship for security audits and inspections.
  • Develop and maintain security policies, controls and governance.
  • Plan incident response, disaster recovery, and resilience.
  • Manage third-party security risk and enable secure innovation.

Skills

Information security leadership
Regulatory risk management
Business-minded security leadership
Threat and incident response
Communication with regulators

Education

CISSP, CISM, CRISC and ISO 27001 Lead Auditor/Implementer certifications

Tools

SIEM
SOAR
Firewalls
Encryption
DLP

Job description

Confidential is seeking a Head of Information Security in Lahore to lead the company’s security, risk and compliance posture. The role partners with executives to enable product innovation while protecting sensitive borrower data and ensuring SBP audit readiness.

You will own enterprise risk management, drive ISO 27001 and other certifications, and oversee incident response, continuity planning and vendor security risk. This role reports to the CEO and interacts with the Board.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Information Security & Risk Leader
Chief Information Security & Risk Leader

Brickstech • Lahore

On-site
PKR 3,000,000 - 6,000,000
Head of Information Security - Confidential
Head of Information Security - Confidential

Taraki • Lahore

On-site
PKR 8,000,000 - 16,000,000
Head of Information Security - Confidential
Head of Information Security - Confidential

Brickstech • Lahore

On-site
PKR 3,000,000 - 6,000,000
Head of Cyber Risk & Information Security
Head of Cyber Risk & Information Security

ThePakEdu • Karachi Division

On-site
PKR 2,031,000 - 2,433,000
Head of IS Risk Management – Banking Security Leader
Head of IS Risk Management – Banking Security Leader

ThePakEdu • Karachi Division

On-site
PKR 1,674,000 - 2,232,000
Head of International IS Privacy Research and Innovation
Head of International IS Privacy Research and Innovation

Hblpeople • Karachi Division

On-site
PKR 6,000,000 - 12,000,000
Senior IT Security & Risk Manager
Senior IT Security & Risk Manager

ibex • Lahore

On-site
PKR 3,000,000 - 6,000,000
Head of International IS Privacy Research and Innovation
Head of International IS Privacy Research and Innovation

HBL People • Pakistan

On-site
PKR 9,000,000 - 15,000,000
Senior GRC & InfoSec Governance Lead
Senior GRC & InfoSec Governance Lead

Mobilink Microfinance Bank Limited • Islamabad

On-site
PKR 3,500,000 - 5,200,000
Information Security Strategy Lead: GRC, SOC & Risk
Information Security Strategy Lead: GRC, SOC & Risk

Arpatech (Pvt) Ltd • Karachi Division

On-site
PKR 1,674,000 - 2,790,000