Consultant - GRC
Islamabad, Islamabad Capital Territory, Pakistan
Inbox Business Technologies
Inbox Business Technologies is looking for a skilled and motivated Consultant in GRC department to support the implementation and management of GRC and Information Security Management System (ISMS) frameworks for our clients. The ideal candidate will contribute to ensuring compliance with standards such as ISO 27001, COBIT, and other relevant frameworks while helping clients improve their IT governance and security practices.
Key Responsibilities:
- Assist in the development and implementation of policies, procedures, and controls in alignment with ISO 27001, COBIT, and related standards.
- Conduct risk assessments, audits, and gap analyses to evaluate client compliance with GRC and ISMS requirements.
- Prepare detailed documentation, including compliance reports, risk registers, audit findings, and recommendations for improvement.
- Maintain and update ISMS documentation, such as policies, procedures, and control records.
- Participate in internal audits and assessments to ensure adherence to information security and compliance standards.
- Collaborate with clients to identify areas of improvement in IT governance and security practices.
- Provide guidance on best practices for information security and ensure compliance with regulatory requirements.
- Conduct research on industry trends, emerging risks, and regulatory changes to enhance project outcomes.
- Deliver training sessions and awareness programs on GRC and ISMS topics for clients and stakeholders.
Requirements
- Bachelor’s degree in information security, IT, Computer Science, or a related field.
- 2+ years of experience in GRC, ISMS, or IT governance roles.
- In-depth knowledge of ISO 27001, COBIT, and GRC/ISMS frameworks.
- Strong analytical and problem-solving skills with the ability to evaluate complex processes and identify improvement opportunities.
- Proficiency in preparing detailed reports and maintaining accurate documentation.
- Excellent communication and interpersonal skills to work effectively with clients and cross-functional teams.
- Familiarity with industry best practices, regulations, and information security trends.
- Certifications such as ISO 27001 Lead Auditor, COBIT, or similar are highly desirable.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits COBIT Compliance Computer Science Governance ISMS ISO 27001 Risk assessment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.