3-5 years of experience in IT Risk Management/IT Audit or Information Security in the Banking & Finance industry. Please refer to the job advert for further information.

Assistant Manager / Senior Executive - IT Risk Management

Job Profile:
  • Conduct risk assessments on IT systems, applications, vendors and IT infrastructure.
  • Review and update the IT Risk Management framework & Policy.
  • Maintain and update the IT Risk Register and adopt risk mitigation plans.
  • Track IT Key Risk Indicators (KRIs) and escalate breaches for management actions.
  • Carry out periodic evaluations of compliance with IT Risk Management Framework/Policy.
  • Monitor cyber threats and improve the company's Cyber security readiness.
  • Carry out IT risk incident investigations and root cause analysis.
  • Coordinate IT component of the Business Continuity Planning and Disaster Recovery Planning.
  • Collaborate with IT, Compliance, Internal Audit and Operations teams to embed IT risk practices.

Qualifications, Competencies & Experience:
  • Degree in IT/Information Security/Risk Management and/or professional Qualification in CISA/CRISC/ISO27001 Lead Implementer preferred.
  • Analytical and Critical thinking skills.
  • Knowledge of IT systems, security tools and risk assessment techniques.
  • Familiarity with data privacy/protection and Cyber laws of Sri Lanka.
  • Excellent communication, report writing & presentation skills in English.
  • 3-5 years of experience in IT Risk Management/IT Audit or Information Security in the Banking & Finance industry.

PLEASE CLICK THE APPLY BUTTON TO SEND YOUR CV VIA XPRESSJOBS
Job Image
Unemployment in Sri Lanka is estimated to be over 400,000, Share this job and help another!