Assistant Director/Deputy Director as Information Security Governance Officer-Islamabad

Quick Apply

Security Exchange Commission of Pakistan                Qualification:

  • Masters or 04 years Bachelor’s degree (equivalent to 16 years of education) in Cybersecurity, Computer Science, Information Technology, Software Engineering, Computer Engineering or other related disciplines from HEC recognized reputable university / institute                  
  • Certifications and trainings like ISO 27001 Lead Auditor /Lead Implementor / CISM/CISA/CGEIT and similar will be an advantage

Experience:

  • Minimum Three (03) years of post-qualification experience for Assistant Director Age: 35
  • Minimum Six (06) years of post-qualification experience for Deputy Director Age: 40
  • Hands on experience of developing Infosec policy documents. • Deep Knowledge of Infosec / IT standards like ISO27001, NIST, COBIT, ITIL, CIS controls etc 
  • Good knowledge of applicable and relevant laws and regulations like SECP Act, National Cybersecurity Policy (NCSP) 2021, Pakistan Cloud First Policy, Prevention of Cyber Crime Act (PECA), FATF, GDPR, CTDISR etc. • Good knowledge of Cybersecurity/IT concepts and solutions like Firewalls, DLP, AV/EDR/XDR, IPS/IDS, MDM, IAM, APIs, networking and others.

Jobs Description:

  • Develop Infosec internal frameworks, standards policies, procedures, guidelines and other associated documents in line with Infosec Strategy and identified controls; for implementation and compliance; in order to ensure the confidentiality, integrity and availability of information. • Develop Infosec regulations and guidelines for the regulated entities.
  • As the secretary of the Information Security Steering and Governance Committees; prepare the agenda, execute/administer the meetings and ensure that decisions and action points are recorded and followed up. • Work as a team to ensure that SECP’s ISMS is fully conformed to the approved standard (ISO 27001 and/or others), audited and certified.
  • Develop and execute organization wide Information security awareness program. • Conduct Infosec/ISMS self-assessments, gap analysis and liaison with internal and external auditors, consultants and vendors.
  • Develop and execute Infosec dashboards and reporting system based on Infosec metrics, KPIs and KRIs.
  • Be able to write technical specifications and requirements in the form of RFP/RFQ and do vendor and service provider management through effective SLAs and OLAs.

More Information

Apply for this job

We are here to assist you by providing the best tools and platform you need to land the IDEAL job you deserve. We have a great team of certified HR Professionals, Career Development Experts.. Read More