Information Security Compliance Analyst
Job Details
- Location: Colombo
- Company: EvonSys
- Job Type: Full-time
- Salary Range: LKR 130,000 – 150,000
Key Duties
Compliance & Audit Management
- Drive ISO 27001:2022 implementation and support SOC 2 Type II readiness.
- Conduct audits across Microsoft Azure, AWS, and GCP environments.
- Manage software license compliance and contractual reviews.
- Assist with ISO 27701 integration to align with GDPR and privacy obligations.
- Track compliance gaps and oversee remediation actions.
Cybersecurity & Risk Management
- Lead incident response efforts from detection to recovery.
- Assess risks during change management processes.
- Embed security practices within the Software Development Life Cycle (SDLC).
- Maintain and test Disaster Recovery (DR) and Business Continuity Plans (BCP).
- Monitor evolving threats and introduce mitigation strategies.
Cloud & Technical Security
- Design and maintain secure configurations for Azure, AWS, and GCP.
- Align technical practices with ISO 27001, SOC 2, and GDPR requirements.
- Follow up on remediation efforts from vulnerability assessments and penetration tests.
Training & Stakeholder Engagement
- Deliver internal training on security awareness and compliance.
- Partner with IT, legal, and business teams to ensure secure operations.
- Act as an internal consultant for compliance frameworks and security governance.
Requirements
- ISO 27001:2022 Lead Implementer Certification.
- 2–3 years of relevant experience in compliance, audits, and cloud security.
- Working knowledge of incident management, change management, and DR/BCP.
- Familiarity with ISO 27701 and GDPR.
- Exposure to license compliance and software agreements.
Preferred:
- Certifications in Azure, AWS, or GCP Security.
- SOC 2 audit or implementation experience.
- Familiarity with SIEM, CSPM, and vulnerability tools.
- Awareness of standards such as PCI DSS, HIPAA, and NIST CSF.
Core Competencies:
- Strong analytical and problem-solving skills.
- Excellent communication and stakeholder engagement.
- Balanced approach to governance and technical security.
- Team-oriented with leadership potential.
Pay & Benefits
- Competitive salary within the stated range.
- Professional development and certification opportunities.
- Collaborative and innovative work environment.
- Exposure to global compliance and security frameworks.
About Us
EvonSys is a global technology company specializing in enterprise digital transformation and intelligent automation solutions. With a strong presence in Colombo and across international markets, EvonSys focuses on building secure, scalable, and innovative platforms for clients worldwide. Our commitment to compliance, governance, and security makes us a trusted partner for digital transformation.
Learn more about us: https://www.evonsys.com
👉 See full job details on the company site
More Jobs
Management Trainee Jobs in Colombo 2025, Business Development