Careers

Compliance & Security Operations Officer

Kamelpay

Kamelpay

Operations, Compliance / Regulatory
Karachi, Karachi City, Sindh, Pakistan · Karachi, Karachi City, Sindh, Pakistan · Pakistan
Posted on Oct 18, 2025

Company Description

KamelPay, founded in 2020, is the UAE’s fastest-growing WPS agent specialising in salary processing. We provide businesses with secure, all-in-one salary processing solutions as a leading fintech solutions provider. Driven by a commitment to financial freedom, we enable companies and individuals to have instant access to essential financial services. Through innovation and dedication, we aim to benefit our clients by simplifying financial processes.

Job Purpose

The Compliance & Security Operations Officer ensures Kamel Pay maintains ongoing compliance with PCI-DSS, ISO 27001, and regulatory standards.

This role owns audit documentation, vulnerability tracking, access review evidence, and incident reporting, acting as the operational link between technology, risk, and compliance teams.

Key Responsibilities

  • Maintain the PCI-DSS evidence binder (vulnerability, incident, and access logs).
  • Track and validate closure of all security findings and patch management SLAs.
  • Conduct quarterly access reviews, ensuring least privilege and key rotation policies.
  • Coordinate DR/BCP tests, collect results, and file as audit evidence.
  • Prepare monthly compliance dashboards summarizing vulnerabilities, incidents, and SLA trends.
  • Work with AppSec and Network Sec engineers to verify technical controls.
  • Support external and internal audits; provide data, screenshots, and logs as required.
  • Maintain and enforce Kamel Pay’s Information Security Policies repository.

Required Skills & Experience

  • 4+ years of experience in IT compliance, information security, or risk.
  • Deep understanding of PCI-DSS, ISO 27001, or NIST CSF frameworks.
  • Skilled in maintaining vulnerability registers, change logs, and evidence records.
  • Proficient in Excel/Power BI dashboards for SLA and compliance tracking.
  • Strong coordination skills between technical and compliance teams.

Key Performance Indicators (KPIs)

  • 100% completion of quarterly access reviews and evidence submissions.
  • 0 overdue audit findings.
  • 100% PCI evidence binder readiness before audits.
  • Vulnerability closure tracking accuracy ≥ 95%.

Share resume at Aqsa.javed@kamelpay.com