Information Security Auditor
Zones IT Solutions · Islamabad
Job description
About the role
The Information Security Auditor will independently plan, execute, and report on audits of Zones’ Information Security Management System (ISMS) and Privacy Information Management System (PIMS). Reporting to the CISO, the role drives continuous improvement of the security posture, identifies risks, and delivers actionable recommendations to senior leadership.
Key responsibilities
- Develop, maintain, and execute the internal audit plan under the direction of the CISO.
- Conduct process, technical, and compliance audits aligned with ISO 27001/27701 standards.
- Validate the effectiveness of security controls across infrastructure, applications, and processes.
- Assess compliance with regulatory, contractual, and corporate requirements.
- Identify gaps and risks, and recommend corrective and preventive actions.
- Prepare concise audit reports with clear findings, root causes, and recommendations.
- Present audit results to the CISO and the Information Security Steering Committee.
- Track remediation progress and report status updates to leadership.
- Support the CISO in preparing for external audits such as ISO, SOC 2, and client/vendor assessments.
Required profile
- Bachelor’s degree in Information Security, Computer Science, or a related discipline.
- Proven experience conducting audits against ISO 27001, ISO 27701, SOC 2, or similar frameworks.
- Strong analytical mindset with high integrity, independence, and objectivity.
- Excellent communication skills and the ability to influence cross‑functional teams.
Required skills
- Deep knowledge of ISO 27001:2022 and ISO 27701 standards.
- Familiarity with NIST CSF, SOC 2, PCI DSS, and CIS Controls.
- Understanding of cloud environments (Azure, Office 365) and IT infrastructure security controls.
- Strong audit methodology, documentation, and reporting capabilities.
Questions fréquentes
Why are you reporting this job?
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
Published 5 hours ago
Expires 1 month from now
3 views · 0 applications
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Zones IT Solutions
Islamabad
Related job offers
-
Business Intelligence and Analytics Consultant – Integrated Data System (6‑month contract)
UNICEF Islamabad -
Lead Backend Engineer - Node.JS
Convo Islamabad -
Product Owner – ERP & Custom Software Solutions
Datamatics Technologies Islamabad -
Manager - Technology & Cyber Risk Advisory (TCRA)
Yousuf Adil, Chartered Accountants Division de Karachi -
Product Owner
Abacus Lahore