The Master Group of Industries is hiring an Assistant Manager – Information Security in Islamabad for its Cloud department. The role focuses on strengthening information security governance, risk management, and compliance across the organization.
The selected candidate will manage the Information Security Management System (ISMS), support compliance with ISO 27001, ISO 27017, and PCI DSS, conduct security and vendor risk assessments, coordinate security audits, monitor security controls, and support security awareness and continuous improvement initiatives.
Explore More Jobs In Islamabad
Key Responsibilities
- Develop, review, and maintain information security policies, standards, and procedures.
- Support the implementation and continuous improvement of the ISMS.
- Ensure compliance with ISO 27001, ISO 27017, PCI DSS, and applicable regulatory requirements.
- Coordinate internal and external security audits.
- Track and support the remediation of audit findings.
- Conduct information security risk assessments and maintain the risk register.
- Review security controls for new projects, systems, and cloud deployments.
- Track risk treatment plans and identified risk mitigation.
- Monitor compliance with security baselines and vulnerability remediation SLAs.
- Monitor access review processes.
- Review security incidents to identify control gaps and recommend corrective actions.
- Coordinate with SOC and infrastructure teams to improve operational security controls.
- Plan and deliver security awareness and phishing simulation programs.
- Prepare reports on security risks, compliance status, audits, and governance metrics.
- Recommend improvements to security processes and governance practices.
Requirements
- BS / MS in Information Technology.
- 4–5 years of relevant experience.
- Experience in information security operations and governance.
- Experience with risk assessment and risk management.
- Knowledge of ISMS and ISO 27001.
- Experience with security audits and compliance.
- Experience in policy development.
- Knowledge of third-party risk management.
- Experience with security awareness initiatives.
- Strong analytical, communication, and stakeholder management skills.
- Analytical thinking and attention to detail.
- Integrity and ethical judgment.
- Strong problem-solving abilities.
Why Apply
- Work in information security governance and compliance.
- Gain experience with internationally recognized security standards.
- Work on information security risk management and audits.
- Contribute to cloud security and operational security governance.
- Work with SOC and infrastructure teams.
- Contribute to security awareness and continuous improvement initiatives.
Skills
- Information Security
- Security Governance
- Risk Assessment
- Risk Management
- ISMS
- ISO 27001
- ISO 27017
- PCI DSS
- Security Audits
- Compliance
- Policy Development
- Third-Party Risk Management
- Security Awareness
- Cloud Security
- Vulnerability Management
- Access Reviews
- Stakeholder Management
- Analytical Thinking
- Problem Solving
Similar Jobs
Network Security Jobs 2026 | Network Security & Penetration Testing
Common Criteria Pakistan Lab
Manager Cyber Security & Data Privacy
Falconry Solutions
Manager Infrastructure Security
Soneri Bank Limited