3-5 years of experience in IT Risk Management/IT Audit or Information Security in the Banking & Finance industry. Please refer to the job advert for further information.
Assistant Manager / Senior Executive - IT Risk Management
Job Profile:
- Conduct risk assessments on IT systems, applications, vendors and IT infrastructure.
- Review and update the IT Risk Management framework & Policy.
- Maintain and update the IT Risk Register and adopt risk mitigation plans.
- Track IT Key Risk Indicators (KRIs) and escalate breaches for management actions.
- Carry out periodic evaluations of compliance with IT Risk Management Framework/Policy.
- Monitor cyber threats and improve the company's Cyber security readiness.
- Carry out IT risk incident investigations and root cause analysis.
- Coordinate IT component of the Business Continuity Planning and Disaster Recovery Planning.
- Collaborate with IT, Compliance, Internal Audit and Operations teams to embed IT risk practices.
Qualifications, Competencies & Experience:
- Degree in IT/Information Security/Risk Management and/or professional Qualification in CISA/CRISC/ISO27001 Lead Implementer preferred.
- Analytical and Critical thinking skills.
- Knowledge of IT systems, security tools and risk assessment techniques.
- Familiarity with data privacy/protection and Cyber laws of Sri Lanka.
- Excellent communication, report writing & presentation skills in English.
- 3-5 years of experience in IT Risk Management/IT Audit or Information Security in the Banking & Finance industry.
PLEASE CLICK THE APPLY BUTTON TO SEND YOUR CV VIA XPRESSJOBS