About the job Information Security Officer
WE ARE HIRING: Information Security Officer
Location: Sri Lanka
Employment Type: Full time
Company Industry: IT Solutions & Services
Role Overview
We are seeking an experienced and highly responsible Information Security Officer to oversee the organization's Information Security Management System, security governance framework, cyber risk management, regulatory compliance, and security awareness initiatives.
The selected candidate will be responsible for developing, implementing, and continuously improving information security policies, frameworks, controls, and strategies to protect organizational information assets and maintain a strong security posture.
Key Responsibilities
- Establish and maintain a strong information security governance
- framework to support accountability and effective decision-making.
- Develop, implement, and maintain information security policies, procedures, standards, and controls.
- Lead the organization's information security strategy and roadmap in line with business priorities.
- Ensure compliance with applicable laws, regulatory requirements, internal policies, and recognized security standards.
- Conduct information security risk assessments and manage identified cyber and information risks.
- Lead security assessments, audits, remediation plans, and follow-up activities.
- Oversee security incident management, including detection, escalation, investigation, response, and resolution.
- Monitor emerging threats, vulnerabilities, and risks that may impact the organization.
- Maintain security dashboards, metrics, and reports to monitor the organization's security posture.
- Drive information security awareness and training programs across the organization.
- Provide regular reports and escalation updates on security risks, incidents, and control effectiveness.
- Collaborate with internal teams to ensure consistent security practices across all business functions.
- Maintain independent oversight of security controls and ensure compliance requirements are effectively enforced.
Candidate Profile
- Bachelor's degree in Information Security, Computer Science, Information Technology, or a related field.
- Specialization in Information Security will be preferred.
- Minimum 6 years of experience in information security governance, cybersecurity, risk management, or a related domain.
- Professional certifications such as CISSP, CISM, or an equivalent certification will be highly desirable.
- Proven experience in information security, cyber risk management, audits, and regulatory compliance.
- Strong understanding of information security frameworks, standards, and applicable local regulations.
- Experience in developing and managing an Information Security
- Management System will be preferred.
- Ability to operate independently and enforce security policies, controls, and compliance requirements.
- Strong leadership, communication, reporting, and stakeholder management skills.
- Excellent analytical, risk assessment, incident management, and problem-solving abilities.
- Ability to maintain objective oversight independent of operational IT functions.
- Professional, ethical, and capable of handling sensitive and confidential information.
Ready to take your career to new heights?
We're InTalent Asia, your recruitment partner in Sri Lanka, and we've got an exciting opportunity for you! Our client is looking for a dynamic individual to fill the role of Information Security Officer.
Apply now and see how you can be the perfect fit for this exclusive position!
#InTalentAsia #CareerOpportunity #JobVacancy #InformationSecurityOfficer #CybersecurityJobs #InformationSecurity #ITJobs #ITServices #ElevateYourCareer