Governance, Risk, and Compliance (GRC) Specialist

NETSOL Technologies Inc.

Lahore

On-site

PKR 1,800,000 - 3,000,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

NETSOL Technologies Inc. in Lahore, Pakistan is seeking an Information Security Auditor to perform audits, develop testing plans, and implement risk-controlled procedures.

You will help measure security posture, create metrics, and contribute to the training of staff on information security best practices. The role requires extensive knowledge of ISO standards (27001/27005/27701/20000/22301) and SOC2, plus a track record in risk management and policy documentation.

Qualifications

  • Bachelor degree in information security related field or equivalent experience.
  • CISA, CISM, or CISSP certification required or equivalent.
  • Strong knowledge of ISO 27001/27005/27701/20000/22301 and SOC2 standards is essential.
  • Excellent verbal and written communication skills and strong interpersonal abilities.

Responsibilities

  • Perform information security audits.
  • Develop and maintain security testing plans.
  • Develop meaningful metrics to reflect the true posture of information security to make educated decisions based on risk.
  • Assist with development and delivery of security awareness training.
  • Carry out risk assessments, identifying controls and monitoring controls against objectives and KPI metrics.
  • Document, update, and implement security policies, procedures, and other related documents.
  • Inform and advise team members about obligations to comply with GDPR and other data protection laws.

Skills

ISO 27001
ISO 27005
ISO 27701
ISO 20000
ISO 22301
SOC2
Risk management
Verbal communication
Written communication
Interpersonal skills

Education

B.S. in Computer Science or Information Systems
CISA/CISM/CISSP certification
5+ years process documentation experience

Job description

Job Description

  • Perform information security audits
  • Develop and maintain security testing plans
  • Develop meaningful metrics to reflect the true posture of the information security to make educated decisions based on risk
  • Assist with development and delivery of security awareness training
  • Carry out risk assessments, identifying controls and monitoring controls against objectives and KPI metrics
  • Document, update, and implement security policies, procedures, and other related documents
  • Inform and advise team members about obligations to comply with the GDPR and other data protection laws

Required skills and qualifications:

  • In-depth knowledge of ISO 27001, ISO 27005, ISO 27701, ISO 20000, ISO 22301 and SOC2 standards
  • In-depth knowledge of Information Security Risk Management lifecycle
  • B.S. in Computer Science or Information Systems
  • Minimum 5+ years of process documentation experience
  • CISA, CISM, or CISSP certified
  • Strong knowledge of IT systems, IT technologies, etc.
  • Excellent verbal and written communication skills
  • Good interpersonal skills
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

TheGlobalCB • Karachi Division

On-site
Competitive salary
Performance bonuses
Sponsored trainings & international certifications
+1
Senior Consultant - GRC
Senior Consultant - GRC

Risk Associates Pvt. Ltd. • Karachi Division

On-site
PKR 1,116,000 - 1,674,000
Assistant Manager: GRC & Compliance
Assistant Manager: GRC & Compliance

Arpatech (Pvt) Ltd • Karachi Division

On-site
AM Information Security - Risk Management & Compliance
AM Information Security - Risk Management & Compliance

Zong 5G • Islamabad

On-site
PKR 1,800,000 - 2,400,000
SOX ITGC Consultant
SOX ITGC Consultant

Systems Limited • Islamabad

On-site
PKR 900,000 - 1,300,000
Risk Analyst
Risk Analyst

i2c Inc • Lahore

On-site
PKR 150,000 - 210,000
SOX ITGC Consultant
SOX ITGC Consultant

iSystems Ltd • Islamabad

On-site
PKR 1,800,000 - 3,000,000
SOX ITGC Consultant
SOX ITGC Consultant

Systems Limited • Karachi Division

On-site
PKR 1,800,000 - 3,400,000
Cyber Security Technical Consultant / Security Specialist
Cyber Security Technical Consultant / Security Specialist

AURMAK LIMITED • Pakistan

On-site
PKR 2,000,000 - 4,000,000
GRC Analyst
GRC Analyst

Alykas • Karachi Division

On-site
PKR 1,200,000 - 2,200,000
Company-sponsored certifications
Ongoing professional development
Unlimited lab access