Connect with us

Business

Webinar on ‘Security of Information Assets: What the Board Needs to Know’

Published

on

The Sri Lanka Institute of Directors (SLID) together with EY organized a webinar, moderated by Manil Jayasinghe-Partner, EY on “Security of Information Assets: What the Board Needs to Know” recently to update the knowledge and understanding of Board members on the increasing cyber security risks and threats to information assets of an organization brought about by the rapid wave of digitalization and resulting changes in the way organizations work in response to the on-going pandemic.

The webinar also discussed strategies and best practices on how best to mitigate these risks in securing information assets while ensuring business continuity, loss minimization and quick, safe recovery in the event of a breach. The keynote address was delivered by Dileepa Lathsara-CEO, TechCert and the panel comprised of eminent tech and business leaders Madu Ratnayake-Executive Vice President, CIO/GM Virtusa and D. Soosaipillai-INED of Listed Companies.

“It is important to define what information assets are so that security can be provided to those assets. Contrary to the misconception that information assets are only the application systems or the systems where staff work on and the data that resides on those systems, information assets include supporting infrastructure such as switches, patch panels, routers, servers and all other equipment, and application systems including confidential corporate information in those systems. It is also important to identify where corporate information is stored and who has access to it” said Dileepa Lathsara-CEO, TechCert.

“Boards should get involved in handling cyber security risk by firstly setting a security tone for the organization so that everyone takes security seriously and also ensure that the required resources are made available. Boards can focus on the actual requirements of information security by adopting and adhering to security frameworks, standards, acts and directives such as NIST and ISO27000 series, PCI-DSS rather than having the IT security team re-invent the wheel” he added.

He further stated that cyber security should be incorporated into the digital transformation chain and should not be a mere afterthought to be plugged in at the end. Cyber accountability is also important in that it is the organization’s ability to demonstrate that they have good cyber hygiene to ensure, in case of an eventual attack, the ability to track back to a unique event/person or group responsible with admissible evidence which also aids in quick rectification and recovery. Dileepa also emphasized that it is important to make informed and optimal investments in cyber security mitigation which can be calculated preferably as Annualized Loss Expectancy (ALE) as against ROI since security is about loss prevention and not about earnings where ALE is calculated as the cost of a security incident x chance that the incident will occur in a year.

Panelist Madu Ratnayake said that it is essential and fundamental to have the right people in the security team led by a CISO (Chief Information Security Officer) and that cyber security is a journey and not a destination as security is evolving. The Boards should comprise of members who have expertise on security given that most companies are going digital and the risk becomes crucial.

Panelist D. Soosaipillai said that the first thing is to find a security standard to be adopted in the organization without which there will be limitless spending on security without knowing what the benefits are. The organization should have a security vertical such as a CISO or IT Security, which is where the Boards will look at to establish ownership for IT security. He also suggested that Board does regular, if not half yearly Vulnerability Assessment and Penetration Testing (VAPT) by external 3rd parties into the systems/security matrix of the organization.



Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Business

Central Bank of Sri Lanka launches Sustainable Finance Roadmap 2.0

Published

on

The Central Bank of Sri Lanka (CBSL) launched the Sustainable Finance Roadmap 2.0 on 05 May 2025 at the Atrium of CBSL, marking a key milestone in its continued efforts to foster a climate-resilient and socially inclusive financial system.

Recognising the growing implications of climate-related risks on price stability and financial system stability, CBSL introduced the first Sustainable Finance Roadmap in 2019, which provided foundational guidance to financial institutions on managing environmental, social, and governance (ESG) risks while encouraging financing for green and inclusive economic activities.

In light of evolving global developments, increasing access to climate-focused financing, and broader recognition of the social dimension of sustainability, CBSL developed the Sustainable Finance Roadmap 2.0 for the period 2025–2029, with technical and financial support from the International Finance Corporation (IFC) in partnership with the European Union, under the Accelerating Climate-Smart and Inclusive Infrastructure in South Asia (EU-ACSIIS) programme.

The Roadmap 2.0 was crafted in close collaboration with key stakeholders, including Securities and Exchange Commission of Sri Lanka (SEC), the Insurance Regulatory Commission of Sri Lanka (IRCSL), the Colombo Stock Exchange (CSE), the Sri Lanka Banks’ Association (SLBA), The Finance Houses Association of Sri Lanka (FHA), financial institutions and government bodies.

Focusing on Sri Lanka’s financial sector, the Roadmap 2.0 outlines a comprehensive set of prioritised actions for banking, non-banking, capital market, and insurance sectors. These actions are geared toward financing sustainable development, strengthening the management of environmental and social risks, enhancing reporting and disclosures, and improving governance and coordination across institutions.

The launch event was attended by distinguished guests including Gevorg Sargsyan, Country Manager for World Bank and IFC in Sri Lanka; officials of IFC and EU; Ministerial secretaries and senior officials of government institutions; national and international experts on sustainability; representatives of financial institutions and partner agencies.

Communications Department 05.05.2025 2 Delivering the keynote address, Dr. P. Nandalal Weerasinghe, Governor of the Central Bank of Sri Lanka, emphasised that the launch of Sustainable Finance Roadmap 2.0 marks a vital step in strengthening the resilience and inclusiveness of Sri Lanka’s financial sector amid growing climate and social challenges. He highlighted the need for urgent, coordinated action to integrate climate risk into financial decision-making and called for strong stakeholder collaboration to ensure effective implementation of the Roadmap 2.0.

Speaking at the event, Gevorg Sargsyan, Country Manager for World Bank and IFC in Sri Lanka, noted that as Sri Lanka strives for resilient and inclusive growth, sustainable finance will be crucial in creating jobs and driving economic expansion, while also positioning the country to be investment ready. He further highlighted that building a truly sustainable financial ecosystem in Sri Lanka is a collective endeavor – one that IFC has been a part of from inception, and remains committed in working together with the Central Bank of Sri Lanka and industry stakeholders to bring the shared vision of the Sustainable Finance Roadmap 2.0 to fruition.

The keynote was followed by a session providing an overview of the Sustainable Finance Roadmap 2.0, led by Ms. W. A. Dilrukshini, Assistant Governor of CBSL, and Ms. Wei Yuan, ESG Officer of IFC. A panel discussion on “Rolling Out the Sustainable Finance Roadmap 2.0” featured Dr. Thusitha Sugathapala, National Technical Expert on Sustainability; Ms. S. Ketawala, Additional Director of the Bank Supervision Department of CBSL; Thimal Perera, Chief Executive Officer of DFCC Bank; and Ms. Nilupa Perera, Chief Regulatory Officer -Designate of CSE.

The Sustainable Finance Roadmap 2.0 can be accessed using the following link:

https://www.cbsl.gov.lk/sites/default/files/cbslweb_documents/sustainable_finance_roadmap_2.0.pdf

Continue Reading

Business

Browns Investments expands plantation sector with another Lkr 4.8 billion acquisition

Published

on

Browns Investments PLC (BIL), the investment arm of the LOLC Group, has announced a significant expansion of its plantation portfolio with the acquisition of FLMC Plantations (Pvt) Ltd (FLMC). The acquisition was completed on May 5, 2025, through a Share Sale and Purchase Agreement with Damro Manufacturing (Pvt) Ltd and Piyestra Furniture (Pvt) Ltd, for a total consideration of LKR 4.8 billion.

FLMC Plantations serves as the holding company and managing agent for Pussellawa Plantations Ltd (PPL) and Melfort Green Teas (Pvt) Ltd. PPL operates over 11,500 hectares of land across 24 estates, managing 5,400 hectares of tea, 5,900 hectares of rubber, and 200 hectares of minor crops. The estates collectively produce 4.3 million kilograms of made tea and 2.3 million kilograms of rubber annually. Strategically located in Sri Lanka’s renowned tea-growing regions, including Pussellawa, Udupussellawa, Nuwara Eliya, Kandy, Ruhuna, and Sabaragamuwa, these estates will further enhance BIL’s presence in the country’s agricultural landscape.

Commenting on the acquisition, the Group Managing Director/ CEO of LOLC Holdings PLC, Kapila Jayawardena stated, “Over the past two decades, LOLC Group has been guided by a bold vision of expansion and diversification, positioning ourselves as a global powerhouse across multiple sectors. Our acquisition of FLMC Plantations through Browns Investments PLC is another key milestone in strengthening our leadership in agriculture and plantations. With the addition of Pussellawa Plantations and Melfort Green Teas, we are not only expanding our footprint in Sri Lanka’s premier tea-growing regions but also enhancing our ability to supply premium-quality tea to global markets.’’

Continue Reading

Business

VFS Global acquires majority stake in CiX Citizen Experience to create a centre of excellence

Published

on

(From left) Sergio Rodrigues, Chief Executive Officer, CiX Citizen Services and Zubin Karkaria, Founder & Chief Executive Officer, VFS Global in Sao Paulo, Brazil.

Supercharged Growth: VFS Global’s partnership will accelerate CiX’s expansion across Brazil, Latin America, and beyond.

Global Powerhouse: With VFS Global’s capital, technology, talent and scale, CiX Citizen Experience will bring new products and technology to the global marketplace.

Quality of Life Commitment: Both companies are dedicated to innovative solutions, including the use of AI, that improve citizens’ quality of life

Local Impact with Wider Reach: Collaboration to modernise services for citizens of Brazil by creating a centre of excellence that stands as a global example.

VFS Global, the global leader in trusted technology services, empowering secure global mobility for governments and citizens, has completed the acquisition of a majority stake in CiX Citizen Experience, a leading provider of digital and physical citizen services based in Brazil. This strategic acquisition marks a pivotal step in VFS Global’s expansion journey—particularly across Latin America (LATAM)—as it continues to broaden its capabilities and deepen its impact in the public service delivery space.

With nearly two decades of pioneering innovation in citizen services, CiX has established a strong presence in Brazil. This success will be further scaled across LATAM and other global markets, leveraging VFS Global’s international reach and operational excellence.

This acquisition is centred on driving transformation through advanced digital technologies, including AI and data-driven platforms. By uniting CiX’s cutting-edge digital capabilities with VFS Global’s extensive global infrastructure and expertise in managing complex service ecosystems, we are positioned to deliver next-generation, integrated solutions to public and private sector clients around the world.

For both companies’ client governments and partners, this will lead to enhanced, tailored solutions that improve citizen engagement, access, and satisfaction.

Continue Reading

Trending