📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Senior Information Security Manager

Idenfo · Karachi

Senior 🇬🇧 English
ISO 27001 ISMS implementation virtual CISO risk assessment risk register management GDPR SOC 2 ISO 27701 PCI DSS penetration testing secure code review cloud security posture assessment configuration review vulnerability management endpoint security monitoring identity governance incident response planning

Job description

About the role

Protego is seeking a Senior Information Security Manager to lead its technical and compliance security practice. You will own strategy, certification services, and client delivery while mentoring a Junior Information Security Analyst.

Key responsibilities

  • Lead ISO 27001 gap assessments, ISMS implementation, and certification‑readiness consulting.
  • Deliver virtual CISO (vCISO) engagements and act as outsourced security leadership for clients.
  • Manage risk assessments, risk registers, and third‑party/vendor risk engagements.
  • Provide regulatory advisory for GDPR, SOC 2, ISO 27701, PCI DSS, and other data‑protection frameworks.
  • Oversee technical assurance activities such as penetration testing, secure code review, cloud security posture assessment, architecture reviews, and vulnerability management.
  • Run managed security and IT governance services including endpoint monitoring, access & identity governance, and incident response planning.
  • Maintain relationships with certification bodies and ensure audit, surveillance, and recertification processes.
  • Mentor and direct the Junior Information Security Analyst and contribute to service offering development.

Required profile

  • Proven leadership experience in information security service delivery.
  • Ability to balance hands‑on technical work with client account ownership.
  • Experience mentoring junior staff and driving service quality.

Required skills

  • ISO 27001 gap assessment and ISMS implementation.
  • Virtual CISO (vCISO) service delivery.
  • Risk assessment and risk register management.
  • Third‑party/vendor risk management.
  • Regulatory compliance expertise (GDPR, SOC 2, ISO 27701, PCI DSS).
  • Penetration testing and secure code review.
  • Cloud security posture assessment.
  • Architecture and configuration review.
  • Vulnerability management.
  • Endpoint security monitoring.
  • Access and identity governance.
  • Incident response planning.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Idenfo.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 1 month ago

Expires 2 weeks from now

32 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Idenfo

Karachi