Qureos

Find The RightJob.

Cybersecurity Compliance Engineer

Company

Global Rescue is the world’s leading membership organization providing integrated medical, security, intelligence and crisis response services to consumers, enterprises and governments. Founded in 2004 Global Rescue’s unique operational model provides best-in-class services that identify, monitor, and respond to threats and emergencies. For more information, please see www.globalrescue.com.


Role Summary

The Cybersecurity Compliance Engineer is responsible for safeguarding the organization’s systems, data, and infrastructure by combining hands-on technical security operations with governance, compliance, and audit activities. This role ensures adherence to cybersecurity best practices, supports ISO 27001 implementation, enhances endpoint and cloud-security posture, and strengthens overall incident-response readiness.


Responsibilities


Technical Responsibilities

Deploy, configure, and manage Endpoint Detection & Response (EDR) solutions to monitor, detect, and respond to security incidents.

Analyze EDR alerts and system logs to investigate potential threats, anomalies, and malicious activity.

Monitor and respond to common cyber threats including phishing, malware, ransomware, and unauthorized access attempts.

Oversee identity and access management (IAM), ensuring appropriate permissions and detecting misuse of privileges.

Conduct vulnerability assessments; prioritize risks and coordinate with IT Infrastructure for timely patching and remediation.

Stay current on emerging threats, attack vectors, and security technologies; recommend proactive improvements.

Investigate security alerts and lead incident response following recognized incident-handling methodologies and best practices.


Governance & Compliance Responsibilities


Contribute to the development of company-wide cybersecurity best practices and standards
Support the implementation and maintenance of the Information Security Management System (ISMS) aligned with ISO 27001 or NIST Cybersecurity Framework.
Develop, review, and update cybersecurity policies, SOPs, guidelines, and technical controls to maintain compliance with security standards.
Plan, conduct, and document internal audits of security controls, processes, and procedures.
Track and manage audit findings, ensuring timely remediation and continuous improvement.
Prepare clear incident reports for both technical and non-technical audiences.
Support disaster recovery planning and develop contingency procedures for security-related events.
Collaborate with internal stakeholders on cybersecurity risks, compliance requirements, and future security roadmap recommendations.

Qualifications:


Bachelor’s degree in information technology, Computer Science, Cybersecurity or related field.
Minimum 4 years of experience in a cybersecurity-focused role.
Hands-on experience with leading EDR platforms such as Microsoft Defender for Business, CrowdStrike, or VMware Carbon Black.
Experience working with ISO 27001 implementation, documentation, and compliance processes.
Preferably experienced with Microsoft Intune, Microsoft Defender, and Office 365 security features.
Working knowledge of AWS or Microsoft Azure security controls is considered an added advantage.

Location: Islamabad, Pakistan

Compensation: Salary based on experience + bonus + benefits

Similar jobs

No similar jobs found

© 2026 Qureos. All rights reserved.