Information Security Consultant
Current• Provided expert advice on regulatory compliance requirements, ensuring clients adhered to standards such as GDPR, ISO 27001-ISMS, ISO 9001-QMS, and ISO 22301-BCMS.• Collaborated with cross-functional teams, including IT, legal, and operations, to integrate security measures into business operations and IT infrastructure.• Worked closely with stakeholders to ensure security considerations were embedded in project planning and execution.• Enhanced efficiency and visibility within security operations by implementing and managing robust cybersecurity controls.• Ensured full asset and application onboarding to the Managed Security Operations Centre (MSOC) service and managed MSOC tickets effectively.• Administered and managed vulnerability management solutions, customizing reports and dashboards for both managerial and technical audiences.• Followed up on vulnerabilities until remediation, ensuring all issues were resolved in a timely manner.• Configured scheduled scans for vulnerability and compliance assessments.• Implemented and managed endpoint security, EDR and XDR with SIEM.• Monitored antivirus (AV), EDR, and vulnerability management solutions, ensuring comprehensive coverage of all corporate systems.• Performed project and third-party cybersecurity risk assessments based on the organization's risk assessment methodology and framework.• Ensured security monitoring included all necessary logs and visibility in monitoring tools.• Responded to multi-factor authentication (MFA) and email security-related queries, resolving issues within the Service Level Agreement (SLA).• Administered and monitored cybersecurity systems and controls, maintaining and reporting their health status.• Deployed and maintained security control appliances and systems, including firewalls, Web Application Firewalls (WAF), MDM, and endpoint security.• Conducted asset discovery and assessed assets for security vulnerabilities