Information Security Lead

New
Karachi, Sindh HugoBank

Posted today

Job Viewed

Tap Again To Close

Job Description

Are you an experienced cybersecurity professional eager to take on a key role in securing Digital Retail Banking (DRB) operations? We are looking for a Cybersecurity Specialist to lead the implementation and monitoring of SIEM/SOC solutions, conduct security testing, and manage security tools such as antivirus, endpoint protection, and data leak prevention. This role ensures compliance with security frameworks and enforces cybersecurity policies to protect critical banking infrastructure. If you have a passion for threat management, vulnerability assessments, and security architecture, this is your chance to make a real impact

Requirements

Threat & Incident Management:

  • Identify, assess, and mitigate cybersecurity threats across digital banking platforms.
  • Support incident response by analyzing security events and escalating issues.
  • Manage access control policies to prevent unauthorized access to sensitive data.

Security Tools Management:

  • Deploy, configure, and manage SIEM/SOC solutions (QRadar, Splunk, ArcSight, Wazuh, etc.).
  • Maintain and optimize antivirus, endpoint protection, and data leak prevention tools.
  • Continuously evaluate security tools to enhance detection and response capabilities.

Technical Security Implementation:

  • Design and implement network security controls (firewalls, IDS/IPS, VPNs).
  • Conduct vulnerability assessments and penetration tests on networks, applications, and systems.
  • Implement patch management strategies to address security gaps.

Security Architecture & Compliance:

  • Ensure compliance with MITRE ATT&CK, NIST, PCI-DSS, ISO 27001, and regulatory standards.
  • Monitor security event logs and analyze anomalies for proactive threat detection.
  • Work with cross-functional teams to integrate security best practices across cloud and on-prem environments.

Research & Development:

  • Track emerging cyber threats and enhance detection techniques.
  • Conduct threat intelligence analysis and proactively implement risk mitigation measures.
  • Lead cybersecurity awareness initiatives and train internal teams on security protocols.

Documentation & Reporting:

  • Maintain system documentation, incident response playbooks, and escalation procedures.
  • Generate security reports and dashboards for continuous security posture improvement.

Requirements

  • Bachelor's degree in Computer Science, IT, Cybersecurity, or a related field.
  • 7-9 years of experience in infrastructure security, cybersecurity operations, or penetration testing.
  • Expertise in SIEM implementation & security monitoring using QRadar, Splunk, ArcSight, Wazuh, or similar platforms.
  • Strong knowledge of network security protocols, firewalls, IDS/IPS, VPNs, and endpoint security.
  • Hands-on experience with security testing tools (Metasploit, Burp Suite, Nessus, etc.).
  • Proficiency in scripting and automation (Python, PowerShell, Bash) to improve security controls.
  • Experience with cloud security best practices (AWS, Azure, Google Cloud) and securing virtual environments.
  • Familiarity with forensic investigation techniques, malware analysis, and threat intelligence.
  • Professional certifications such as CISSP, CEH, OSCP, or vendor-specific security credentials are a plus.
This advertiser has chosen not to accept applicants from your region.

Manager Information Security

Karachi, Sindh HRSI

Posted 8 days ago

Job Viewed

Tap Again To Close

Job Description

COMPANY OVERVIEW :

Our client, a Karachi-based, State Bank of Pakistan (SBP) regulated Electronic Money Institution (EMI), seeks to appoint an experienced professional for the following role:

As Manager Information Security, you will be responsible for establishing and enforcing security protocols that safeguard companys information systems, digital assets, and customer data.

Key Areas of Responsibilities

  • Develop & Implement Information Security Strategy Design and execute a comprehensive information security roadmap aligned with companys digital infrastructure, business model, and regulatory obligations.
  • Cybersecurity Risk Management Identify, assess, and mitigate cybersecurity risks across infrastructure, applications, APIs, mobile platforms, and third-party integrations.
  • Regulatory Compliance & SBP Alignment Ensure full compliance with SBP guidelines and international security frameworks (e.g., ISO 27001, NIST), and act as the point of contact for regulator-driven security reviews.
  • Security Architecture & Operations Oversee the design, configuration, and monitoring of security systems including firewalls, endpoint protection, SIEM, encryption, and identity/access management tools.
  • Incident Response & Threat Management Develop and lead the incident response process, including detection, containment, investigation, recovery, and post-mortem reporting.
  • Security Audits & Penetration Testing Coordinate regular internal and third-party audits, vulnerability assessments, and penetration testing to ensure system hardening.
  • Employee Awareness & Policy Enforcement Establish security awareness programs, train internal staff, and enforce information security policies across all departments.
  • Collaboration with Internal Audit & IT Work closely with Internal Audit, Technology, and Compliance teams to ensure consistent enforcement of risk controls and secure infrastructure design.

Education

  • Minimum 16 years of education, preferably, Masters from a renowned and HEC recognized university or institution/equivalent foreign degree holder institution, in any/or combination of the disciplines
  • Professional certifications such as CISSP , CISM , CEH , or ISO 27001 Lead Implementer/Auditor are highly desirable

Experience

  • Information Security Expertise Minimum 5 years of relevant experience in information security or cybersecurity roles, preferably within fintech, digital banking, or regulated financial institutions
  • Regulatory & Standards Knowledge Strong understanding of SBP cybersecurity guidelines, ISO 27001, NIST, and relevant global information security frameworks
  • Incident Management & Threat Response Demonstrated experience in handling security incidents, vulnerability assessments, and threat intelligence operations
  • Security Operations & Architecture Hands-on experience with firewalls, IDS/IPS, antivirus, endpoint protection, IAM, encryption, and secure network architecture

Age

  • The candidate should be preferably not more than 40 years of age as of last date of submission of application.

If you have the required experience and educational qualification to take up the challenging role, you are requested to apply by October 24 , 2025 at

Only shortlisted candidates will be contacted.

This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Security awareness training Jobs in Karachi !

 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Security Awareness Training Jobs View All Jobs in Karachi