Head of Information Security - TPL Insurance
Position Title: Head of Information Security - TPL Insurance
Grade: VP
Location: Karachi
Last date to apply: 18th September, 2026
What is Head of Information Security ?
The purpose of the role is to collaborate on designing network and infrastructure security and monitor for effective security control in place. This includes managing the IT process for effectiveness and efficiency on addressing security risks. The incumbent would be accountable for risk management and mitigation related to information security, physical security, business continuity planning, crisis management, integrity and compliance.
What does “Head of Information Security do ?
- Evaluates risks and develops security standards, procedures, and controls to manage risks.
- Improves security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
- Implements processes such as GRC (Governance Risk & Compliance) to automate and continuously monitor Information Security controls, exceptions, risk, testing. Develops reporting metrics, dashboards and evidence artifacts.
- Lead the end-to-end implementation and certification process for ISO 27001.
- Conduct regular risk assessments and treat identified information security risk, manage internal and external ISO 27001 audits, addressing findings and non-conformities.
- Develop, maintain security testing plans automate penetration and other security testing on networks, systems and applications.
- Assist with third-party IT vulnerability assessments and Penetration testing and also remediate the vulnerabilities with the communication to concern departments and their owners.
- Act as a source of direction, training, and guidance for less experienced staff.
- Documents and reports control failures and gaps to stakeholders.
- Provides remediation guidance and prepares management reports to track remediation activities.
- Consult with application developers, systems administrators, and management to demonstrate security testing results, explain the threat presented by the results, and consult on remediation.
- Deliver the annual penetration testing schedule and conducting awareness campaigns to ensure proper budgeting by business lines for annual tests.
- Performs other related duties as assignedRequirement.
Requirements
What are we looking for and what does it require to be Head of Information Security ?
- Bachelors in computer science, information security, or related field.
- At least 10 years of Experience in information security, technology governance, VAPT or IT Security.
- Certifications or acquired training in CISM, CGEIT, ISO 27001 LI/LA, CEH, OSCP, CoBIT, NIST cyber security framework.
- Knowledgeable about information security management, IS governance, compliance principles, practices, laws, rules and regulations, architecture, design, operations, controls, solutions, and service orchestration.
- Strong problem-solving and analytical skills, with the ability to work independently and effectively meet deadlines.
- Collaborative team player with the ability to investigate and resolve security incidents effectively.
Benefits
Why Join TPL Insurance ?
TPL Insurance is an AA-rated insurer and one of Pakistan’s leading InsurTech companies, combining digital innovation with a strong retail, dealership, B2B and B2B2C network to make insurance simpler and more accessible. With a diverse portfolio spanning Motor, Health, Property, Travel, Marine and other general insurance solutions, TPL Insurance continues to challenge traditional insurance through customer-centric products, technology and strategic partnerships. Our inclusion in Jazz World gives our teams the opportunity to build innovative insurance solutions that reach millions of customers at scale. At TPL Insurance, we foster an agile, collaborative and growth-oriented culture where people are encouraged to take ownership, bring new ideas to the table and create meaningful impact.
As published by workable
First name, Last name, Email, Headline, Photo, Permanent Address, Address, Phone, CNIC Number, Date of Birth, Gender, If you selected "others" please specify:, Highest Academic Degree, Total Professional Experience, Resume, Summary, Experience, Education, Reference No 2 (previous manager), mobile phone number, email address), Reference No 1 (previous manager), mobile phone number, email address), Notice Period, Open to Relocation, Other Benefits & Allowances, Before Tax Monthly Gross Salary (where gross salary is basic salary + house rent + utility allowance), Cover letter, • Do you have any close relatives (parents, spouse, children, siblings) working at Jazz?, Have you previously been employed by Jazz?, If answer to above question is Yes, then kindly list the full Name, Designation and Your relationship with that individual., Jazz is committed to diversity and equal opportunity in the workplace. As part of this commitment, we invite applicants to voluntarily self-identify if they have a disability. Providing this information is voluntary and will not affect your application or employment opportunities. Do you identify as a person with a disability as defined by applicable laws?, If chose “yes”, please specify the type of disability:, As part of our application process, you are kindly requested to provide the following: 1. A scanned copy of your CNIC 2. Confirmation of the nature of your impairment, If you would like to request reasonable accommodations during the application or interview process, please specify: (example: you require an interpreter during interview process etc), Applicant Type