Information Security Executive
Sri Lanka Insurance Corporation Life Ltd
- Salary
- Not disclosed
- Job type
- Full-time
- Work type
- On-site
- Experience
- Executive
Colombo 2·Posted Sep 22, 2026
Executive - Information Security
Company: Sri Lanka Insurance Corporation Life Ltd
Responsibilities:
- Lead Security Operations: Monitor and manage XDR, SOC alerts, endpoint threats, security incidents and 24x7 security monitoring including triage, investigation and remediation.
- Manage Cybersecurity Controls: Oversee VAPT policies, security configurations, hardening, control effectiveness and remediation.
- Lead Incident Response & Threat Management: Coordinate end-to-end incident response, from detection and containment through recovery, root-cause analysis and post-mortem, while monitoring emerging threats.
- Governance, Risk & Compliance: Assess and continuously improve the ISO/IEC 27001 ISMS through risk assessments, control effectiveness and remediation.
- Security Strategy & Awareness: Evaluate and implement security technologies through PoCs, drive cybersecurity awareness and phishing simulations, deliver management dashboards/KPIs and provide technical leadership for security projects and continuous improvement.
Qualifications / Pre-requisites / Requirements for the position:
- Bachelor's Degree in Information Security from a recognized university or Bachelor's Degree in Information Technology, Computer science from a university institute approved by the UGC.
- Candidates with one or more of the following certifications will have an advantage:
- ISC2 Certified Information Security Engineer Associate
- Microsoft SC-200
- Microsoft SC-300
- CompTIA Security+
- ISO 27001 Internal Auditor
- CEH (optional)
- Age below 30 years.
Experience:
- Minimum 1-2 years' experience in relevant field.