Qureos

Find The RightJob.

Cyber & Information Security Specialist

Cyber & Information Security Specialist

We are looking for a Cyber & Information Security Specialist to protect our systems, data,
and processes. The ideal candidate will implement security controls, perform risk assessments,
and actively secure our environment while ensuring compliance with global standards such as
SOC 2, ISO 27001, GDPR, and HIPAA

Key Responsibilities

● Conduct risk assessments, vulnerability assessments, penetration testing, and security
monitoring
● Implement and maintain security controls across networks, servers, and cloud
environments
● Develop and enforce security policies, incident response plans, and data protection
procedures
● Lead implementation of compliance frameworks such as SOC 2, ISO 27001, GDPR,
HIPAA
● Ensure data protection, privacy, and governance best practices across the organization
● Understand DevOps and engineering workflows to ensure secure development and
deployment practices
● Solid understanding of network, application, and cloud security (AWS, Azure, or GCP)
● Set up and manage security tools (endpoint protection, access controls, logging,
monitoring)
● Prepare for audits and certifications, including documentation and evidence collection
● Collaborate with teams to enforce secure architecture and practices
● Train staff and IT team on security best practices and awareness
● Gradually build and mentor a small internal security function from IT staff
● Stay up-to-date on emerging cybersecurity threats and industry trends

Qualifications & Requirements
● 3–5 years of experience in cybersecurity, IT security, or information security
● Proven experience implementing SOC 2, ISO 27001, or other compliance frameworks
(not just auditing)
● Solid understanding of network security, cloud security (AWS/Azure/GCP), and endpoint
protection
● Experience with access control, SIEM, vulnerability management, and incident response
● Bachelor’s degree in Cybersecurity, IT, Computer Science, or a related field (Master’s
preferred)
● Preferred Certifications:CISSP, CISM, CEH, ISO 27001 Lead Implementer/Auditor

Soft Skills
● Self-starter with a practical problem-solving mindset
● Good English proficiency and strong communication skills
● Ability to balance security with business needs
● Strong analytical and problem-solving skills

Working Details
● Working Hours: 9 hours/day, Monday–Friday
● Location: Hyderabad (preferred) or Karachi
● Work Mode: On-site


© 2026 Qureos. All rights reserved.