Manager Infrastructure Security (AVP) - TJ / 1876283

Recruit AI

Karachi Division

On-site

PKR 9,000,000 - 13,000,000

Full time

8 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

National Bank of Pakistan is seeking an experienced Manager Infrastructure Security (AVP) in Karachi to lead the bank’s infrastructure security program. The role focuses on secure design, vulnerability management, and governance across servers, cloud, virtualization, and networks.

The ideal candidate has 6+ years in information security, strong risk management skills, and familiarity with CIS benchmarks. The position is contractual for three years, with competitive compensation and benefits.

Qualifications

  • Minimum 6 years of experience in Information Technology and/or Information Security.
  • Experience identifying, assessing, and mitigating infrastructure security vulnerabilities across enterprise IT infrastructure.
  • Familiarity with servers, SAN/NAS, containers, IAM, data security lifecycle, virtualization, cloud environments, and other critical infrastructure components.

Responsibilities

  • Manage and enhance the Infrastructure Security Program aligned with business objectives and regulatory requirements.
  • Oversee security architecture reviews for infrastructure projects and provide guidance on secure design principles for servers, virtualization, cloud, storage, and network infrastructure.
  • Coordinate vulnerability assessments, configuration compliance reviews, and penetration testing for infrastructure security.
  • Prepare vulnerability MIS, remediation tracking, and timely closure of findings per risk management requirements.
  • Create infrastructure security assessment reports, dashboards, and management summaries for senior leadership.
  • Define and maintain governance, policies, standards, and baselines for servers, OS, ATMs, virtualization, cloud, storage, and systems.
  • Lead risk assessments and ensure risks are identified, evaluated, treated, and mitigated before production deployment.
  • Enforce secure hardening standards (CIS Benchmarks) across the bank’s environment.
  • Collaborate with IT Infrastructure, Systems, Cloud, Database, and other teams to ensure security controls are implemented and maintained.
  • Ensure secure configuration, hardening, monitoring, and compliance of enterprise infrastructure (Windows/Linux servers, databases, virtualization, cloud workloads, storage, Active Directory).
  • Support internal and external audits with infrastructure security evidence, documentation, and remediation status.

Education

Bachelor’s degree in Computer Science or Computer Engineering or Cybersecurity or Information Technology
Master’s in Information Security or relevant professional certifications (e.g., GSEC, SC-100, AZ-500, VMware VCP-DCV, RHCE, CompTIA CySA+)

Job description

Our client National Bank of Pakistan is looking for a Manager Infrastructure Security (AVP) in Karachi

"The Nation's Bank", National Bank of Pakistan aims to support the financial well-being of the Nation along with enabling sustainable growth and inclusive development through its wide local and international network of branches. Being one of the leading and largest banks of Pakistan, National Bank of Pakistan is contributing significantly towards socioeconomic growth in the country with an objective to transform the institution into a future-fit, agile and sustainable Bank.

In line with our strategy, the Bank is looking for talented, dedicated and experienced professional(s) for the following positions in the area of Risk Management based at Karachi.

The individuals who fulfill the below basic-eligibility criteria may apply for the following position:

Position / Job Title:

Manager Infrastructure Security (AVP)

Reporting to:

Unit Head - Infrastructure Security

Educational /Professional Qualification:
  • Minimum Graduation in Computer Science and / or Computer Engineering and / or Cybersecurity and / or Information Technology from a local or international university / college / institute recognized by the HEC of Pakistan
  • Candidates having Masters in Information Security or any other relevant professional certification such as GSEC, SC-100, AZ-500, VMware VCP-DCV, RHCE, CompTIA CySA+ etc. will be preferred
Experience:
  • Minimum 06 years of experience in Information Technology and / or Information Security
  • Candidates having experience in identifying, assessing and mitigating infrastructure security vulnerabilities across enterprise IT infrastructure working with operating systems, SAN / NAS, Containers, Identity & Access management, Data security life cycle, virtualization platforms, cloud environments and other critical infrastructure components will be preferred
Other Skills / Expertise / Knowledge Required:
  • Understanding of Information Security function
  • Awareness of risk frameworks and infrastructure security related policies
  • Understanding of essential infrastructure security related security tools and techniques
  • Good interpersonal skills and an active team player
  • Ability to prioritize and meet strict deadlines
Outline of Main Duties / Responsibilities
  • To manage and continuously enhance the organization's Infrastructure Security Program, ensuring alignment with business objectives, cybersecurity strategy, regulatory requirements, and industry best practices
  • To manage security architecture reviews for infrastructure projects and provide strategic guidance on secure design principles for servers, virtualization platforms, cloud services, storage systems, and enterprise network infrastructure
  • To manage infrastructure security assessment activities, including Vulnerability Assessments (VA), configuration compliance reviews, penetration testing coordination, CIS benchmark assessments, operating system hardening and security validation of servers, cloud infrastructure, virtualization platforms and enterprise systems
  • To prepare and maintain infrastructure vulnerability MIS, track remediation activities, and ensure timely closure of identified security findings in accordance with organizational risk management requirements
  • To prepare infrastructure security assessment reports, vulnerability dashboards, compliance reports and management summaries for periodic review by senior management
  • To define, implement, and maintain Infrastructure Security governance, policies, standards, procedures and security baselines for servers, operating systems, ATMs, virtualization platforms, cloud environments, storage and systems infrastructure
  • To oversee infrastructure security risk assessments and ensure security risks are identified, evaluated, treated, and mitigated before deployment into production environments
  • To lead the implementation and enforcement of secure infrastructure hardening standards based on recognized benchmarks (e.g., CIS Benchmarks) across the banks environment
  • To coordinate with IT Infrastructure, Systems, Cloud, Database, System Administration and other technology teams to ensure security controls are effectively implemented and maintained across the infrastructure
  • To ensure secure configuration, hardening, continuous monitoring and compliance of enterprise infrastructure, including Windows and Linux servers, databases, virtualization platforms, cloud workloads, storage systems and Active Directory
  • To support internal and external audits by providing infrastructure security evidence, compliance documentation, remediation status, and technical guidance
  • To perform any other assignment as assigned by the supervisor(s)
Place of Posting:

Karachi

Employment Type:

The employment will be on contractual basis for three years which may be renewed on discretion of the Management. Selected candidates will be offered compensation package and other benefits as per Banks Policy / rules.

Assessment Interview(s):

Only shortlisted candidates strictly meeting the above-mentioned basic eligibility criteria will be invited for panel interview(s).

National Bank of Pakistan is an equal opportunity employer and welcomes applications from all qualified individuals, regardless of gender, religion, or disability.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager Data Quantification (AVP) - TJ / 1876282
Manager Data Quantification (AVP) - TJ / 1876282

Recruit AI • Karachi Division

On-site
PKR 3,000,000 - 6,000,000
Unit Head - MIS Automation (AVP / VP) - TJ / 1876290
Unit Head - MIS Automation (AVP / VP) - TJ / 1876290

Recruit AI • Karachi Division

On-site
PKR 3,000,000 - 6,000,000
Manager Application Security
Manager Application Security

ThePakEdu • Karachi Division

On-site
PKR 1,674,000 - 2,232,000
Regional Executive - CAD (AVP / VP) - TJ / 1873064
Regional Executive - CAD (AVP / VP) - TJ / 1873064

Recruit AI • Hyderabad City Taluka

On-site
PKR 4,000,000 - 8,000,000
Regional Credit Executive (AVP/VP) - Risk Management
Regional Credit Executive (AVP/VP) - Risk Management

Recruit AI • Gilgit-Baltistan

On-site
PKR 1,800,000 - 2,400,000
Head Application And Database Security
Head Application And Database Security

ThePakEdu • Karachi Division

On-site
PKR 1,674,000 - 2,232,000
Chief, Application & Database Security
Chief, Application & Database Security

ThePakEdu • Karachi Division

On-site
PKR 1,674,000 - 2,232,000
Head IS Risk Management
Head IS Risk Management

ThePakEdu • Karachi Division

On-site
PKR 1,674,000 - 2,232,000
Regional Sales Manager - Baluchistan (AVP / VP) - TJ / 1876281
Regional Sales Manager - Baluchistan (AVP / VP) - TJ / 1876281

Recruit AI • Quetta City Tehsil

On-site
PKR 4,000,000 - 6,000,000
Unit Head Monitoring And Incident
Unit Head Monitoring And Incident

ThePakEdu • Karachi Division

On-site
PKR 1,674,000 - 2,232,000