Assistant Manager – Technology/Information Security Risk

February 11, 2026
LKR 150000 - LKR 200000
Application ends: February 18, 2026
Apply Now

Job Description

Assistant Manager – Technology/Information Security Risk

(Operational Risk Department)

Key Responsibilities:

  • Develop, build, and maintain measurable technology risk indicators with approved risk tolerance levels mentioned in the CBSL Risk Resilience framework
  • Conduct comprehensive risk assessments to identify technology-related risks and vulnerabilities across the organization’s systems and processes
  • Ensure the Risk management measures in the ‘Product approval process’ for a new technology-driven product or service are introduced, or when a change is made to such product or service
  • Collaborate with cross-functional teams to develop and maintain effective controls, ensuring compliance with regulatory requirements and industry best practices
  • Implement and monitor the quarterly Risk and Control Self-Assessment (RCSA) process and monitor the risk management function
  • Provide guidance and support to business units on technology risk management matters
  • Assist in the preparation of risk reports for management and regulatory purposes

Entry Requirements

Candidate Criteria:

  • Bachelor’s degree or Master’s in Computer Science, Information Technology, or a related field. Specialising in Information Security will be an added advantage
  • A certification of CISSP/ CRISC / CISM / GISP is preferred
  • Minimum 08 years of experience in a Bank/ Financial Institution, out of which a minimum of 02 years of experience in an Information Security environment
  • Strong analytical and problem-solving skills
  • Excellent communication and interpersonal skills to collaborate with cross-functional teams
  • Ability to work independently and manage multiple tasks simultaneously