Head of Information Security - John Keells Holdings PLC

Colombo, LK

John Keells Holdings PLC

John Keells Group is Sri Lanka's premier Diversified Company, listed in the Colombo Stock Exchange, and a 150-year pillar of the Sri Lankan economy. John Keells Group is widely recognized as Sri Lanka's Most Respected Corporate Entity

View all jobs at John Keells Holdings PLC

John Keells Holdings PLC (JKH), Sri Lanka’s largest conglomerate, is seeking a highly qualified, experienced professional to Head the Information Security Operations as per established Zero trust policy framework, guidelines, and procedures. This is a key leadership role as part of the Group IT function and will report in to the Group CIO and CISO.

Job Responsibilities

 

Key Responsibilities:

  • Operationalize the approved Zero Trust Security policy framework, ensuring continuous verification, least privilege access, and micro-segmentation.
  • Continuously enhance the procedures and SOPs as well make recommendations to enhance policies and governance models in line with ISO 27001, NIST, GDPR, and PDPA.
  • Effectively govern and operationalize the approved SOC/SOAR strategy of the group to ensure effective management of threat intelligence, forensic investigations, and incident response.
  • Ensure periodic audits to ensure compliance and to identify improvement areas in line with Group IT and Cyber-resilience strategy.
  • Develop cybersecurity awareness and training programs, including phishing simulations and stakeholder engagement.
  • Provide effective leadership to the team both internal and external to effectively execute the above.

Person Specifications

  • Bachelor’s or Master’s degree in IT or Computer Science.
  • Specific Qualifications in Security related areas will be an added advantage.
  • 10+ years of experience in IT strategy/operational management with at least 5+ years in security operations.
  • Familiarity with security stacks of Cisco, Microsoft, Palo Alto, CyberArk, Cloudflare,  AWS, and GCP will be an added advantage.
  • Strong leadership and stakeholder management skills are of the essence.
  • Certifications such as CISSP, CISM, and CCSP are highly desirable.
     

If you have what it takes to be a part of a dynamic team in driving the next frontier of Security operations then we invite you to apply. Please send in your applications by 10th of April 2025.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0
Category: Leadership Jobs

Tags: Audits AWS CCSP CISM CISO CISSP Cloudflare Compliance Computer Science Cyberark GCP GDPR Governance Incident response ISO 27001 NIST SOAR SOC Strategy Threat intelligence Zero Trust

Region: Asia/Pacific
Country: Sri Lanka

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.