About the job Division Manager
WE ARE HIRING: Division Manager
Location: Colombo, Sri Lanka
Employment Type: Full Time
Industry: Information Technology / Cybersecurity / Information Security
Role Overview
We are seeking an experienced and strategic Division Manager to lead enterprise-wide cybersecurity operations, security governance, incident management, compliance initiatives, threat management programs, and security awareness functions. The successful candidate will be responsible for strengthening the organization's security posture by driving security operations excellence, incident response effectiveness, governance and compliance frameworks, risk reduction strategies, and security awareness initiatives across the organization. This role requires a strong cybersecurity leader with extensive experience in security operations, threat management, risk governance, incident response, and stakeholder engagement. As a key member of the Information Security leadership team, the Division Manager will collaborate with business units, technology teams, auditors, compliance teams, and senior leadership to ensure the organization maintains a robust and resilient security environment.
Key Responsibilities
Security Incident Management & Response
- Lead end-to-end management of cybersecurity incidents from identification through containment, eradication, recovery, and post-incident review.
- Act as the primary escalation point for major information security incidents.
- Coordinate security response activities across multiple technology and business teams.
- Ensure incidents are investigated and resolved within agreed service levels and governance requirements.
- Conduct root cause analysis and ensure lessons learned are documented and implemented.
- Drive continuous enhancements to incident management processes and response capabilities.
- Develop executive-level incident reports and communicate cyber risks effectively to stakeholders.
Security Operations & Threat Management
- Oversee security monitoring operations and ensure effective threat detection and response capabilities.
- Review and evaluate security alerts and incidents to determine severity, legitimacy, and business impact.
- Support threat detection, threat intelligence utilization, and attack surface reduction initiatives.
- Drive vulnerability management activities, remediation coordination, and risk mitigation programs.
- Collaborate with infrastructure, cloud, security operations, and application teams to strengthen defensive controls.
- Support the implementation of modern security technologies and operational improvements.
- Reduce operational risks through proactive cybersecurity initiatives and continuous monitoring.
Governance, Risk & Compliance
- Work closely with Governance, Risk & Compliance (GRC) and Quality Assurance teams to maintain regulatory and compliance standards.
- Drive Non-Conformity Corrective Action (NCCA) initiatives and ensure timely closure of audit findings.
- Ensure information security controls align with organizational, regulatory, and contractual obligations.
- Support internal, external, and customer audits while maintaining audit readiness.
- Monitor compliance with data protection regulations, privacy requirements, and security standards including GDPR.
- Develop and maintain security governance frameworks, procedures, and reporting mechanisms.
- Identify security risks and work with stakeholders to implement mitigation strategies.
Security Awareness & Organizational Culture
- Lead enterprise-wide information security awareness initiatives and training programs.
- Develop and execute cybersecurity awareness campaigns across all employee groups.
- Promote a strong cybersecurity culture through education, communication, and engagement initiatives.
- Increase employee awareness of cyber threats, best practices, and security responsibilities.
- Drive behavioural change initiatives that support organizational security objectives.
Leadership & Stakeholder Engagement
- Provide strategic leadership across Information Security operations and governance functions.
- Collaborate with infrastructure, cloud, software development, and business teams to support security objectives.
- Prepare executive reports, dashboards, and strategic security updates for senior management.
- Lead, mentor, and develop information security team members to strengthen organizational capability.
- Build strong relationships with internal and external stakeholders to drive security improvements.
- Provide guidance and consultation on information security matters across the organization.
Candidate Profile
- Bachelor's Degree in Cyber Security, Information Security, Computer Science, or a related discipline.
- 10–12 years of experience in Cybersecurity, Information Security, Security Operations, Risk Management, or related domains.
- Strong experience leading Security Operations, Incident Response, and Information Security Governance functions.
- Proven expertise in security incident management and cyber risk mitigation.
- Strong understanding of threat management, vulnerability management, and cybersecurity operations.
- Experience supporting GDPR compliance and information security governance frameworks.
- Strong knowledge of information security standards, frameworks, and industry best practices.
- Experience working with security monitoring tools, threat intelligence platforms, and security operations processes.
- Excellent leadership, communication, and stakeholder management capabilities.
- Strong analytical and problem-solving skills with the ability to address complex cybersecurity challenges.
- Ability to communicate technical security risks effectively to executive and business stakeholders.
- Experience working across infrastructure, cloud, software engineering, and business functions.
- Strong report writing and documentation capabilities.
Preferred Certifications
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CEH (Certified Ethical Hacker)
- Other advanced cybersecurity, governance, or risk management certifications will be an advantage.
Ready to take your career to new heights?
We're InTalent Asia, your go-to recruitment partner in Sri Lanka, and we've got an exciting opportunity for you!
Our client is looking for a skilled individual to fill the role of Division Manager.
Apply now and see how you can be the perfect fit for this exclusive position!
#InTalentAsia #CareerOpportunity #JobVacancy #CyberSecurity #InformationSecurity #SecurityOperations #CyberDefense #RiskManagement #Governance #CISSP #CISM #ElevateYourCareer