I am information security professional, with strong background in security governance, risk and compliance, as well as project and program management. My personal focus area is strong and meaningful security awareness program design and implementation as well as people education and engagement in security awareness area.My industry experience is diverse, and involves aerospace, telecommunication, banking, insurance, technology, oil & gas and consumer goods sectors.I have experience in team leading positions, and in project management activities, including budget and resources planning, project leading, team leading, and communication of project deliverables to senior management.My professional experience includes: development and implementation of information security management system, internal IT audit, full scope IT Audit in line with local regulations and ISO/IEC 27001 standard, data center security testing, physical and logical access assessments, assessments and GAP analysis based on internal or international frameworks, ISAE 3402 reviews of the service project organization for the purpose of issuing SOC reports, quality assurance for software implementation.I am member of the Information Systems Audit and Control Association (ISACA) and I hold two certificates: Certified Information Systems Auditor (CISA) and Certified in Risk and Information Systems Control (CRISC).
Listed skills include It Audit, Information Security, It Risk Management, External Audit, and 28 others.