Job Description
Vacancy in Information Security
Founded in 2006, the Sri Lanka Computer Emergency Readiness Team | Coordinating Centre (Sri Lanka CERT) is nation's National CERT which has the mandate to protect cyber space of Sri Lanka, and implementing the approved Information and Cyber Security Policy for Government Organizations.
Sri Lanka CERT wishes to recruit a qualified and experienced Senior Information Security Engineer to assist the implementation of national level programs on information and cyber security.
Senior Information Security Engineer – Network Security
Job Responsibilities
- Lead monitoring and analysis of network traffic for security threats.
- Conduct advanced network vulnerability assessments and penetration testing.
- Develop and refine network security policies, standards, and procedures.
- Manage and respond to complex network security incidents.
- Perform root cause analysis of network security incidents.
- Prepare detailed reports and documentation on network security activities.
- Mentor and support junior security engineers within the team.
- Provide advanced security awareness training related to network security.
- Stay updated on the latest network security threats and best practices.
- Conduct trainings and awareness sessions of cyber security and participate for communication activities.
- Conduct procurements to procure IT products and systems related to cyber-security.
- Implement national cyber-security projects or activities assigned by CEO or Head of the Division in line with the cyber-security strategy and action plans.
Educational and Professional Qualifications
- A Bachelor’s Degree (SLQF 5 or 6) in Information Security, Cyber-Security, Computer Science, Information Technology or any other field relevant to the post, obtained from a local or foreign university, recognized by the University Grant Commission (UGC) in Sri Lanka.
- Should hold a verifiable Cyber-security Certification, preferably CSSLP, CEH, OSCP or any other verifiable relevant certification relevant to the post, recognized by Sri Lanka CERT. Such certifications must be maintained in active status.
Experience
The Senior Information Security Engineer should have the following:
- Five (05) years or above industry experience in the field of information and Cyber security or relevant out of which 02 years should be in network security supervisory role within a reputed private sector cyber-security service provider, public corporation, statutory board, fully government owned company, or a reputed commercial establishment, after obtaining the first Degree.
Other Skills/Abilities
- Knowledge on the latest theories, standards, and practices on cyber security.
- Deep understanding of network security principles, practices, and frameworks.
- Proven experience in leading network security assessments and incident response.
- Excellent analytical, problem-solving, and communication skills.
- Fluent in writing and speaking in English language.
- Skills in presentations, teamwork abilities.
Salary will be based on current industry standards and includes travel allowances.
If you are confident that you are the ideal candidate for this position, e-mail your resume with a recent photo and two non-related referees to [email protected] on or before 10th June 2026, stating "Sr. IS Engineer – Network Security". Only shortlisted candidates will be notified.
Note: This job description is not intended to be all-inclusive. Employees may perform other related duties as negotiated to meet the ongoing needs of Sri Lanka CERT.
Chief Executive Officer
Sri Lanka Computer Emergency Readiness Team | Coordination Centre
Room 4-112, BMICH, Bauddhaloka Mawatha, Colombo 00700
Tel: 011 2691692/ 011 2679888
[email protected]