NETSOL Technologies is a global leader in enterprise software and services specializing in asset financing and leasing for the automotive, equipment, banking, and lending industries. The company delivers secure, scalable, and innovative technology solutions across cloud and enterprise platforms. We are currently seeking a GRC Specialist to support our Information Security Management System (ISMS). This role will primarily focus on conducting information security audits, performing risk assessments, managing governance and compliance activities, and overseeing policy management aligned with international standards and data protection regulations.
Key Responsibilities:
- Conduct information security audits in accordance with ISO standards and relevant regulatory requirements.
- Develop and maintain comprehensive information security testing and assessment plans.
- Define and track security metrics and key performance indicators (KPIs) to evaluate the organization’s security posture and support risk-based decision-making.
- Perform detailed information security risk assessments, identify appropriate controls, and monitor their effectiveness.
- Support the creation and delivery of security awareness and training programs to enhance organizational security culture.
- Create, review, and maintain information security policies, procedures, and related documentation.
- Provide guidance to stakeholders on GDPR and other data protection compliance requirements.
- Collaborate closely with IT, engineering, and business teams to ensure security controls are aligned with organizational objectives.
Required Qualifications:
- Bachelor’s degree in Computer Science, Information Systems, or a related discipline.
- Minimum of 3 years’ experience in Information Security, Governance, Risk & Compliance (GRC), Risk Management, or Compliance roles.
- Strong understanding of the Information Security Risk Management lifecycle.
- Practical knowledge of ISO standards including ISO 27001, ISO 27005, ISO 27701, ISO 20000, ISO 22301, and SOC 2.
- Experience in developing security documentation, policies, and defining security processes.
- Solid understanding of IT systems and enterprise technologies.
- Excellent written and verbal communication skills.
- Strong interpersonal skills with the ability to manage and influence stakeholders effectively.
Preferred Qualifications and Benefits:
- Professional certifications such as CISA, CISM, CISSP, or their equivalents are highly desirable.
- Experience supporting audits, certifications, and compliance programs is a plus.
- Exposure to privacy management and data protection frameworks will be advantageous.
Joining NETSOL means working with a globally recognized enterprise technology company that fosters a strong governance, risk, and compliance culture. You will gain exposure to international standards and enterprise audits while benefiting from career growth opportunities through continuous learning and challenging projects. The company offers competitive compensation and benefits to support your professional development.
This position is based onsite in Lahore and is offered as a full-time, permanent role.