GRC Specialist (Governance, Risk & Compliance)

NETSOL Technologies Inc.

Lahore

On-site

PKR 2,000,000 - 3,200,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

NETSOL Technologies, a global leader in enterprise software, seeks a GRC Specialist to support its ISMS. You will conduct information security audits, perform risk assessments, and manage governance, policy, and compliance aligned with ISO standards and privacy regulations.

The role requires a bachelor’s degree, 3+ years of experience in information security or GRC, and strong communication and stakeholder management skills to collaborate with IT, engineering, and business teams.

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, or a related field
  • 3+ years of experience in Information Security, GRC, Risk Management, or Compliance
  • Strong understanding of the Information Security Risk Management lifecycle
  • Hands-on knowledge of ISO 27001, ISO 27005, ISO 27701, ISO 20000, ISO 22301, and SOC 2
  • Experience in security documentation, policy development, and process definition
  • Solid understanding of IT systems and enterprise technologies
  • Excellent written and verbal communication skills
  • Strong interpersonal and stakeholder management skills

Responsibilities

  • Conduct information security audits in line with ISO standards and regulatory requirements
  • Develop and maintain information security testing and assessment plans
  • Define and track security metrics and KPIs to measure security posture and support risk-based decision-making
  • Perform information security risk assessments, identify controls, and monitor control effectiveness
  • Support the development and delivery of security awareness and training programs
  • Create, review, and maintain information security policies, procedures, and related documentation
  • Advise stakeholders on GDPR and data protection compliance requirements
  • Collaborate with IT, engineering, and business teams to align security controls with organizational objectives

Skills

Information Security
GRC
Risk Management
Compliance
Policy Management
Stakeholder management
Communication

Education

Bachelor’s degree in Computer Science, Information Systems, or related field

Tools

ISO 27001
ISO 27005
ISO 27701
ISO 20000
ISO 22301
SOC 2

Job description

NETSOL Technologies is a global leader in enterprise software and services for asset financing and leasing, serving the automotive, equipment, banking, and lending industries worldwide. We deliver secure, scalable, and innovative technology solutions across cloud and enterprise platforms.

NETSOL is seeking an GRC Specialist to support our Information Security Management System (ISMS). The role focuses on information security audits, risk assessments, governance, compliance, and policy management aligned with international standards and data protection regulations.

Key Responsibilities
  • Conduct information security audits in line with ISO standards and regulatory requirements
  • Develop and maintain information security testing and assessment plans
  • Define and track security metrics and KPIs to measure security posture and support risk-based decision-making
  • Perform information security risk assessments, identify controls, and monitor control effectiveness
  • Support the development and delivery of security awareness and training programs
  • Create, review, and maintain information security policies, procedures, and related documentation
  • Advise stakeholders on GDPR and data protection compliance requirements
  • Collaborate with IT, engineering, and business teams to align security controls with organizational objectives
Required Skills & Qualifications
  • Bachelor’s degree in Computer Science, Information Systems, or a related field
  • 3+ years of experience in Information Security, GRC, Risk Management, or Compliance
  • Strong understanding of the Information Security Risk Management lifecycle
  • Hands‑on knowledge of ISO 27001, ISO 27005, ISO 27701, ISO 20000, ISO 22301, and SOC 2
  • Experience in security documentation, policy development, and process definition
  • Solid understanding of IT systems and enterprise technologies
  • Excellent written and verbal communication skills
  • Strong interpersonal and stakeholder management skills
Preferred Qualifications
  • CISA, CISM, CISSP, or equivalent certifications
  • Experience supporting audits, certifications, and compliance programs
  • Exposure to privacy management and data protection frameworks
Why Join NETSOL?
  • Work with a globally recognized enterprise technology company
  • Be part of a strong governance, risk, and compliance culture
  • Exposure to international standards and enterprise audits
  • Career growth through continuous learning and challenging projects
  • Competitive compensation and benefits

Location: Lahore (Onsite) Employment Type: Full-time | Permanent

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ISMS & GRC Specialist — ISO & GDPR Focus
ISMS & GRC Specialist — ISO & GDPR Focus

NETSOL Technologies Inc. • Lahore

On-site
PKR 2,000,000 - 3,200,000
GRC Analyst
GRC Analyst

Global CB - EMAP • Karachi Division

On-site
PKR 600,000 - 800,000
Competitive salary and performance bonuses
Sponsored trainings & international certifications
Travel opportunities (local & international)
GRC Analyst
GRC Analyst

TheGlobalCB • Karachi Division

On-site
PKR 837,000 - 1,116,000
Competitive salary
Performance bonuses
Sponsored trainings & international certifications
+1
GRC Specialist
GRC Specialist

Keka Inc. • Hyderabad City Taluka

On-site
PKR 1,800,000 - 3,000,000
Assistant Manager - GRC Karachi, Pakistan
Assistant Manager - GRC Karachi, Pakistan

Risk Associates Pvt. Ltd. • Karachi Division

On-site
PKR 1,800,000 - 3,000,000
Governance, Risk & Compliance (GRC) Expert
Governance, Risk & Compliance (GRC) Expert

leading-edge • Karachi Division

On-site
PKR 1,674,000 - 2,176,000
GRC Analyst - InfoSec & ISO Compliance
GRC Analyst - InfoSec & ISO Compliance

Global CB - EMAP • Karachi Division

On-site
PKR 600,000 - 800,000
Competitive salary and performance bonuses
Sponsored trainings & international certifications
Travel opportunities (local & international)
Senior GRC Leader: IT/Cyber, Compliance & Risk
Senior GRC Leader: IT/Cyber, Compliance & Risk

leading-edge • Karachi Division

On-site
PKR 1,674,000 - 2,176,000
Governance, Risk & Compliance (GRC) Expert
Governance, Risk & Compliance (GRC) Expert

Leading Edge • Karachi Division

On-site
PKR 2,031,120 - 2,432,880
Cyber & Information Security Specialist
Cyber & Information Security Specialist

Oxiliry • Hyderabad City Taluka, Karachi Division

On-site
PKR 13,939,225 - 19,514,915