Information Security Engineer

Tkxel
Lahore, پنجاب
Full time
3 دن قبل
About the Role:
We are seeking a motivated Information Security Specialist with a strong foundation in compliance frameworks and offensive security. The ideal candidate will have hands-on experience with ISO 27001, HIPAA, SOC 2, as well as practical skills in penetration testing and security risk assessments. This role requires both a compliance mindset and an attacker’s perspective to ensure a well-rounded approach to organizational security.

Key Responsibilities:
● Governance, Risk & Compliance
○ Maintain and improve the organization’s Information Security Management System (ISMS) in alignment with ISO 27001.
○ Support compliance efforts for HIPAA and SOC 2 frameworks.
○ Conduct risk assessments, document findings, and recommend remediation strategies.
○ Assist in preparing for internal and external audits.

● Offensive Security & Technical Security Testing
○ Perform internal and external penetration testing, including web, network, and cloud environments.
○ Conduct vulnerability assessments and report exploitable weaknesses.
○ Simulate real-world attack scenarios to test security controls and incident response readiness.

● Security Awareness & Incident Support
○ Work with cross-functional teams to improve security posture.
○ Contribute to security awareness training programs.
○ Assist in security incident investigations and root cause analysis.

Requirements

Required Qualifications

Education: Bachelor’s degree in Information Security, Computer Science, or related field (or equivalent experience).

Certifications:
○ Mandatory: ISO 27001 Lead Implementer (LI)
○ Offensive Security Certifications: CPPT, CWPTX or similar

Experience:
○ 2–3 years in information security roles covering both compliance and offensive security.
○ Hands-on involvement in ISO 27001 implementation/maintenance, HIPAA, and SOC 2 compliance projects.
○ Experience performing penetration tests and vulnerability assessments.

Desired Skills:
● Knowledge of security standards such as NIST, CIS Controls, and GDPR.
● Strong report writing and communication skills for both technical and non-technical audiences.
● Understanding of incident response processes.

Apply
Other Job Recommendations:

LLM Fine-Tuning Engineer

Vurke Inc. (Pvt) Ltd.
پاکستان
  • Collect, clean, and annotate domain data sets.
  • Design fine-tuning and...
  • Benchmark model performance, latency, and cost...
1 ہفتے قبل

Software Engineer - ReactJS

Bayut | dubizzle
Karachi Division, سندھ
  • Work closely with other teams from the early stages of...
  • Support a wide range of products focusing on automation,...
4 دن قبل

Principal Software Engineer - Java

Creative Chaos
Karachi Division, سندھ
  • Develop, test, debug, document, and maintain the back-end...
  • Participate in development team activities to ensure...
1 ہفتے قبل

Field Engineer

Inbox Business Technologies
Lahore, پنجاب
  • Provide on-site technical support to customers in a timely...
  • Install, troubleshoot, and maintain hardware and software...
1 ہفتے قبل

Expert Information Security - JazzCash

PMCL-JAZZ
Islamabad, وفاقی دارالحکومت اسلام آباد
The role reports to Manager Information Security and Governance. What does Expert Information Security do? • Conduct...
3 ہفتے قبل

MEP (Mechanical. Electrical, Plumbing) Technical Engineer

MID Construction Group
پاکستان
Rs 574 - Rs 656
  • IMPORTANT: We will auto-decline all applicants who will not...
  • How many years, if any, are your experience in the...
3 ہفتے قبل

Head Enterprise Security and Compliance

HBL
پاکستان
  • Ability to demonstrate leadership and influence the...
  • Track Bank’s compliance across multiple security frameworks...
3 ہفتے قبل

Senior DevOps Engineer

Unifonic
Lahore, پنجاب
  • Setting-up and enhancing CI (Continuous Integration) and CD...
  • Configuring the company's products to meet the functional...
3 ہفتے قبل

VDI Support Engineer (remote)

Wing Bros
پاکستان
You must be confident, courteous, and culturally aligned with Western workplace communication standards. Key Responsibilities:...
3 ہفتے قبل

Microsoft Sentinel Security Engineer

Octdaily
پاکستان
  • Configure and optimize Microsoft Sentinel as the primary...
  • Set up log ingestion from Microsoft 365 E5 services, Azure...
3 ہفتے قبل