Deputy Director (Governance, Risk Assessment, and Compliance) (Contractual)

NADRA

Government

Last Date to Apply

May 24, 2026

Posted Date

May 11, 2026

The National Database and Registration Authority (NADRA) is inviting applications from qualified and experienced IT and cybersecurity professionals for an Information Security and Governance, Risk & Compliance (GRC) position in Islamabad.

This opportunity is designed for experienced professionals who have a strong background in information security governance, risk management, regulatory compliance, security auditing, cybersecurity frameworks, and AI governance. The role also involves working with emerging technologies such as Generative AI, Artificial Intelligence and Machine Learning systems.

Vacancy Matrix & Core Overview

Hiring Organization
NADRA
Posted Date
11th May 2026
Application Deadline
24th May 2026

Eligibility Criteria

Required Education

Applicants should hold a 4-year Bachelor's degree in one of the following fields: Computer Science Information Technology Cyber Security Information Security Data Science Artificial Intelligence An equivalent qualification in a relevant field

Experience Profile

The position requires experienced IT and cybersecurity professionals with 6 to 10 years of post-graduation professional experience. Candidates should have: A minimum of 3 years of experience in Governance, Risk Management and Compliance (GRC) roles. Strong practical understanding of information security governance and compliance. Experience with information security frameworks, risk assessments and security audits. Knowledge of current and emerging cybersecurity threats. Practical familiarity with Generative AI tools and technologies for supporting GRC activities. Experience in developing information security policies, SOPs and governance documentation.

Key Competencies Required

  • Candidates should have advanced knowledge of information security governance, risk management, compliance and cybersecurity practices.
  • Important skills and competencies include:
  • Governance, Risk and Compliance (GRC)
  • Information Security Governance
  • Cybersecurity Risk Management
  • Security Compliance
  • Information Security Auditing
  • Risk Assessment and Risk Register Management
  • ISO 27001
  • ISO 27701
  • ISO 22301
  • ISO 31000
  • NIST CSF
  • NIST RMF
  • NIST AI RMF
  • NIST SP 800-37
  • CIS Controls
  • PCI DSS
  • PKI / Web Trust Controls
  • AI Governance
  • AI/ML Security
  • Generative AI Governance
  • Responsible AI
  • AI Model Risk Management
  • AI Explainability
  • Bias Detection
  • Privacy Preservation
  • LLM Security
  • Prompt Injection Risks
  • LLM Data Leakage
  • Shadow AI
  • AI Supply Chain Risk
  • Information Security Policies
  • SOP Development
  • Security Auditing and Reporting
  • Cybersecurity Threat and Vulnerability Management

What We Offer

  • The role offers experienced cybersecurity and information security professionals an opportunity to work across several important areas of modern security governance.
  • The professional exposure associated with this position includes:
  • Enterprise-level information security governance
  • Governance, Risk and Compliance (GRC)
  • International security and privacy standards
  • Information security auditing
  • Cybersecurity risk assessment
  • Business continuity and resilience standards
  • AI Governance and Responsible AI
  • Generative AI security risks
  • LLM and AI supply chain security
  • Security compliance and control frameworks
  • Senior management and technical stakeholder engagement

Why You Should Apply

  • Information security is increasingly moving beyond traditional cybersecurity controls toward broader risk, compliance, privacy and AI governance requirements. This role provides an opportunity for experienced professionals to work across both established security frameworks and emerging AI governance practices.
  • Candidates with experience in GRC, ISO 27001, NIST, cybersecurity auditing, risk assessment and AI governance can apply their existing knowledge while working with newer challenges such as LLM data leakage, Shadow AI, prompt injection and AI supply chain risks.
  • This position may be particularly suitable for professionals looking to develop their careers in Information Security Governance, Cybersecurity GRC, AI Risk Management, Security Compliance and Responsible AI.

Additional Details

Available Vacancy

Job Information

Details

Organization

National Database and Registration Authority (NADRA)

Job Category

Information Technology / Cybersecurity

Position Area

Information Security / GRC / AI Governance

Job Location

Islamabad, Pakistan

Employment Type

Contract Basis

Probation Period

6 Months

Required Experience

6–10 Years Post-Graduation

GRC Experience

At least 3 Years

Application Deadline

May 17, 2026

Application Method

Online

Job Details and Responsibilities

The selected professional will be responsible for supporting and leading information security governance, risk management and compliance activities. The role also has a strong focus on AI Governance and emerging AI security risks.

Key responsibilities include:

  • Lead compliance activities across ISO 27001, ISO 27701, ISO 22301, ISO 31000, NIST, NIST SP 800-37, NIST CSF, NIST RMF, NIST AI RMF, PCI DSS and PKI/Web Trust Controls.

  • Establish and support AI Governance Frameworks for AI, Machine Learning and Generative AI systems.

  • Develop controls for Responsible AI, Explainability, Model Risk Management, Bias Detection and Privacy Preservation.

  • Identify and manage AI-related risks, including prompt injection, LLM data leakage, Shadow AI and AI supply chain risks.

  • Apply information security frameworks such as ISO 27001, NIST and CIS Controls within the context of current and emerging cybersecurity threats.

  • Scope and conduct Information Security Audits and support the preparation of audit findings and reports.

  • Monitor developments in cybersecurity, information security and emerging technologies to support security assessments and compliance programs.

  • Perform information security and technology risk assessments using appropriate risk identification, analysis and mitigation methodologies.

  • Identify vulnerabilities, attack vectors and potential security threats affecting organizational systems and processes.

  • Develop and maintain information security policies, SOPs, instructions and related governance documentation.

  • Conduct audits according to applicable ISO requirements and prepare comprehensive audit reports.

  • Communicate information security, governance, risk and compliance requirements to senior management, technical teams and other stakeholders.

  • Use knowledge of Generative AI tools and technologies to support GRC activities and improve security governance processes.

Advertisement

Deputy Director (Governance, Risk Assessment, and Compliance) (Contractual) - Advertisement
Click to enlarge

How to Apply for This Job

All interested candidates must apply through the official NADRA careers portal:

Essential Instructions

  • HEC Attestation: Applicants must ensure their degrees are attested by the Higher Education Commission (HEC).

  • NOC Requirement: Candidates already serving in Government or Semi-Government departments must provide a No Objection Certificate (NOC) at the time of the interview.

  • Gadget Restriction: Mobile phones, smartwatches, and other electronic gadgets are strictly prohibited during the test/interview.

  • Certificates: Selected candidates must provide Medical Fitness and Character Certificates.

Location: Islamabad

Live Updates

Join Our WhatsApp Channel

Get instant alerts for new government & private jobs, straight to your phone.

Join Now

Since this job is expired, you might be interested in these Latest Jobs:

Fresh openings updated daily from trusted sources.

Explore More Jobs