- Location
- Colombo
- Type
- Full-time
- Department
- Finance
- Seniority
- Lead
- Experience
- 4+ years
- Education
- Bachelor
- Closing date
- Today
- Source
- CareersPage
Description
About the Client
Our client is a globally recognized leader in Testing, Inspection, and Certification (TIC) services, helping organizations worldwide achieve high standards of quality, compliance, information security, and business resilience.
Job Overview
We are seeking an experienced Lead Auditor – ISMS/BCMS Certification to conduct information security and business continuity audits, assess compliance with international standards, and support clients throughout the certification process.
Key Responsibilities
- Conduct ISMS and BCMS audits in accordance with applicable certification and accreditation requirements.
- Plan, coordinate, and execute audit assignments independently.
- Prepare audit plans, reports, findings, and certification documentation.
- Evaluate management systems for compliance with applicable ISO standards and certification requirements.
- Ensure technical accuracy and timely completion of all audit deliverables.
- Participate in client meetings, including opening and closing meetings.
- Provide technical guidance and support to clients throughout the audit and certification process.
- Maintain strong relationships with clients and key stakeholders.
- Support business development and sales activities when required.
- Contribute to client satisfaction and overall business growth objectives.
Requirements
- Bachelor's Degree in Information Technology, Information Security, Computer Science, Engineering, or a related discipline.
- Recognized ISMS Lead Auditor qualification.
- Recognized BCMS Lead Auditor qualification or equivalent.
- Minimum 4 years of practical full-time experience in Information Technology, including at least 2 years in Information Security-related roles.
- Minimum 4 years of experience in Business Continuity, Business Resilience, Crisis Management, Emergency Management, Risk Management, or Disaster Recovery.
- Strong understanding of ISO management system standards and auditing principles.
- Strong technical knowledge of the Information Security sector.
- Excellent communication, analytical, and decision-making skills.
- Strong client-facing and stakeholder management capabilities.
- Good market awareness and understanding of industry practices.
- Ability to work independently and manage multiple audit assignments.
- Professional, presentable, and confident in influencing stakeholders effectively.
Experience
- 4–15+ years of relevant professional experience.
- Proven experience in information security, business continuity, risk management, or related areas.
- Experience in auditing and certification environments will be an advantage.
Interested candidates may send their CV to [email protected]