Information Security Analyst
Current● Conducted virtual and physical walkthrough audits to assess compliance with ISO27001 securityrequirements and identify operational risks.● Carried out risk assessments and ensured support functions' adherence to ISO27001 security requirements,promoting information security literacy across the organization.● Prepared comprehensive audit reports detailing findings, recommendations, and corrective actions,contributing to management reviews and internal audits.● Spearheaded the migration to ISO 27001:2022 version organization-wide, ensuring a seamless transitionand achieving a 98% completion rate within the designated timeline.● Managed access for new team members to critical sites, Archer tool, and confidential documents inSharePoint, based on assigned roles and responsibilities, ensuring compliance with security protocols.● Identified automation opportunities, implemented reporting processes, and streamlined efficiency tosupport business growth agendas.● Documented security policies, procedures, risk and controls matrix, and defined KPIs, risk treatmentplans, and security roadmaps.● Conducted vendor risk assessments and provided a holistic view of the client’s risk exposure due tooutsourcing.