fb_pixel
back
Back
Location:
Pakistan
Department: Information Technology
Job Description

Location:

Lahore,

Job Summary:

The Information Security Analyst will be responsible for providing key development, design, integration, and enhancement of information security governance and frameworks necessary to manage the risks and cyber security for the company. This position will ensure security controls are defined, optimized, and remain consistent throughout the organization and meet regulatory requirements and industry best practices such as PCI and IT SOX.


Responsibilities:

Key Accountabilities:

  • Develop and implement information security frameworks and controls such as ISO27001:2013, SAN Top 20, and OWASP Top 10
  • Manage a risk-based process for vendor risk management, including the assessment and treatment for risks that may result from internal customers, consultants, and service providers
  • Heavy responsibility on PCI and IT SOX compliance efforts
  • Establish baseline hardening standards for IT systems across organization
  • Ensure all systems are monitored by SEIM, XDR
  • Enhance and expand patch management program, review the patches, evaluate the risk, and apply the patches using a risk-based approach
  • Periodically update policies and procedures to ensure they accurately reflect business requirements an align to industry leading security practices
  • Participate in the development of Cyber Security awareness content
  • Conduct periodic vulnerability scanning process and penetration tests
  • Maintain a flexible work schedule to meet position demands for after-hours support

Education, Skills and Experience:

  • Bachelor’s degree in computer science or related field
  • 3+ years of experience in information security
  • CISSP, CISA, or CISM preferred
  • Experience with developing security framework such as ISO, PCI, and IT SOX audit requirements and security attack vectors
  • Experience with data classification, access control, and security models
  • Experience with implementing and managing DLP, XDR, FIM, Application Whitelisting, and ERM tools
  • Experience with various authentication protocols and encryption algorithms

Behavioral competencies:

  • Strong analytical and problem-solving skills
  • Ability to work effectively will people at various levels throughout the organization
  • Must be able to work well under pressure, grasp new ideas quickly, think outside the box, and be able to follow up in a dynamic environment
  • Strong multi-tasking skills in a fast-paced environment
  • Thorough understanding of the TCP/IP suite
  • Strong team player
  • Work well independently with minimum supervision
  • Excellent verbal and written communication and interpersonal skills
companyLogo
The Children's Place
Information Security Analyst