Passionate cyber risk and compliance leader, with 20+ years’ experience in cyber security, audit, and compliance. Helped organizations drive digital transformation across technology and industry. Experienced in Financial Services, Public Sector, High-Tech and Healthcare industries in cyber risk and maturity assessments, IT governance, cyber strategy, and roadmap development, driving regulatory (cyber and privacy) and compliance, architecture design, implementation of target security capabilities, and enabling operational transition. Last ten years led second and third line of defense to understand and mitigate cloud risk and meet compliance requirements. Developed programs and frameworks, and enabled fortune 500 companies adopt cloud by helping them enhance their process to assess risk by improving their understanding of risk posture in cloud and the shared responsibility model and hence avoiding false sense of security. Global experience working with clients and teams in North America, Europe, and Asia. Designed and deployed processes for an integrated approach for first, second and third line of defense instead of working in silos. Worked and teamed with all 3 major CSP (Cloud Service Providers) – AWS, Azure and GCP. Involved with various thought leadership forums with organizations such as IIA, AICPA and ISACA, including the ISACA cloud computing training and presented best practices around cyber security, auditing and compliance in different forums and seminars such as AWS re:invent and Wall Street Journal. Presented at AWS re:invent for the past few years and supported the development of AWS Audit Manager, a new AWS service to help simplify auditing of AWS cloud environments.
Listed skills include It Audit, Information Security, Iso 27001, Cisa, and 37 others.