Qureos

FIND_THE_RIGHTJOB.

Information Security Manager

JOB_REQUIREMENTS

Hires in

Not specified

Employment Type

Not specified

Company Location

Not specified

Salary

Not specified

We’re looking for an experienced Information Security Manager to lead our organization’s security operations, compliance efforts, and governance strategy while fostering a culture of cyber resilience across all departments. You’ll be responsible for designing and implementing robust security frameworks, ensuring regulatory compliance, managing risks, and driving proactive threat detection and response strategies.

Key Responsibilities:
1. Lead and manage enterprise-wide information security initiatives.
2. Oversee SOC operations and implement SIEM solutions (experience with Wazuh is highly preferred).
3. Drive vulnerability management and coordinate with DevOps teams to embed security in CI/CD pipelines (DevSecOps).
4. Develop, maintain, and enforce information security policies, standards, and procedures aligned with frameworks such as ISO 27001, NIST, and other industry best practices.
5. Own the organization’s GRC (Governance, Risk, and Compliance) function and ensure adherence to relevant laws, regulations, and frameworks.
6. Act as a key liaison during security audits and assessments.
7. Promote awareness and training to build a strong internal security culture.
8. Strong understanding of SDLC.

Requirements:
1. Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field (Master’s degree is a plus).
2. Minimum 8 years of experience in Information Security, with at least 4 years in a leadership or managerial role.
3. Strong understanding of security frameworks like ISO 27001, NIST, and risk management methodologies.
4. Hands-on experience with SOC tools, SIEM platforms, vulnerability scanning, and DevSecOps practices.
5. Proven track record in security compliance, governance, and risk management.
6. Experience working with or managing Wazuh or similar SIEM platforms is highly desirable.
7. Industry certifications such as CISSP, CISM, or CISA are a strong plus.

Location: Karachi (on-site)
Shift: 9 AM to 6 PM

Job Type: Full-time

Work Location: In person

© 2025 Qureos. All rights reserved.