Information Security Manager
San Jose, Ca, Us
Spearheaded the establishment and global implementation of comprehensive information security initiatives, ensuring robust protection and compliance across the organization.• Launched and successfully executed foundational information security initiatives from the ground up, establishing a secure global organization. • Have successfully established and effectively lead a 24x7 Security Operations Centre (SOC) to safeguard our operations across the organization with a strong emphasis on proactive threat detection and rapid incident response. • Have established and implemented comprehensive policies in safeguarding organizational assets and data integrity. By meticulously creating and enforcing policies for Physical & Environmental Security, Change Management, Incident Management, Patch Management, Vulnerability Management, and Backup & Restoration Procedures, organization have strengthened their defences against potential threats and ensure operational sustainability. • By proactively strategized and implemented robust BCP and DR measures align with ISO 22301 BCMS, have effectively mitigated risks, minimized potential disruptions, and maintained uninterrupted business operations during unforeseen events.• Overseeing of Customer contractual requirement align with business demands. Additionally, was perform Third Party Risk Management (vendor due-diligence) • Have conducted ISMS internal audit quarterly specifically tailored for overseeing IT and Information Security controls to proactively identify and address any vulnerabilities or compliance gaps, ensuring that our systems and data remain protected against potential threats. Achievements:• Launched the company's first-ever comprehensive Information Security program, significantly reducing potential security incidents.• Achieved compliance with GDPR, Data Privacy, ISO 27001, ISO 22301 BCMS, Cyber Essentials, HiTrust, and SOC standards, reinforcing stakeholder trust and credibility