Risk Management and Compliance (Certified ISO 27001 Lead auditor and CEH V10)• 8+ years of experience in Information Technology with exposure to Information Security, Software Development, Production Support and Project Management Operations.• Risk based analysis and Security control review of Services, Security Tools, Legal Processes & Policies• Checking Information Security compliance with ISO2k/SSAE16/PCI DSS/COSO frameworkVendor/Supplier risk assessments:-• Conduct ISO 27001:2013 Gap Assessments and implement and maintain information security solutions to support ISO 27001• Prepare and execute ISO/IEC 27001:20013 internal audits for conducting internal audits and interviews to collect information and artifacts/evidences needed to complete an audit risk assessment.• Create comprehensive internal audit reports in accordance with ISO/IEC 27001 requirements and internal processes on areas of risk, conclusions and recommendations for appropriate actions to mitigate the risks• Following up with vendors/suppliers on audit recommendations to mitigate relevant risks• Logging, tracking and closure of findingsInternal application security assessments:-•Contacting technology team/developers for assigned internal applications and gather relevant background material about the application and setting up interviews with developers and system owners for information gathering.•Conducting remote/telephonic interviews with tech team owners to get all required information for application security assessment and to identify any gaps.•Reviewing system related material including technical specifications, technical architecture diagrams, requirements and test plans to ensure that applications are compliant to internal information security related standards of the organization.•Creating comprehensive application security assessment reports identifying the security gaps and improvements/remediation opportunities to technology team
-
Senior It Security AnalystAccenture Aug 2012 - PresentISO INTERNAL AUDITOR AND RISK ANALYST- RISK MANAGEMENT AND SECURITY COMPLIANCE and INTERNAL APPLICATION SECURITY ASSESSMENTConducting application security assessments and penetration tests. The assessments involve manual testing and analysis, as well as the use of automated web application vulnerability scanning/testing tools.Writing a formal security assessment executive report for each application, using standard reporting format.Participating in conference-calls/meetings with… Show more ISO INTERNAL AUDITOR AND RISK ANALYST- RISK MANAGEMENT AND SECURITY COMPLIANCE and INTERNAL APPLICATION SECURITY ASSESSMENTConducting application security assessments and penetration tests. The assessments involve manual testing and analysis, as well as the use of automated web application vulnerability scanning/testing tools.Writing a formal security assessment executive report for each application, using standard reporting format.Participating in conference-calls/meetings with clients to review our assessment results and consult with the clients on remediation options.Retesting security vulnerabilities that have been fixed and republishing our report to indicate the results of our retesting.Participating in conference calls with Lead assessor and potential client’s teams to scope out newly requested security projects and estimate the amount of time required to complete the project. Show less -
Qa Test AnalystQaim Ltd Sep 2009 - Sep 2010QAim’s CEM4Mobile software Application is targeted for optimizing customer experience management of mobile content services. I was member of QAim/cem4mobile developer team , my role was test engineer /system admin
-
Siebel ConsultantHewlett-Packard 2006 - 2009• Siebel Environment setup – Installation of Oracle client, Java, Installation of base Siebel patch and Quick fixes (patches), configuration of Gateway, Enterprise Siebel server and DB extracts • Troubleshooting and fixing issues faced by Development/ Testing team, working and assigning request coming through ticketing tools like OVSD and HPSC and MQC defects. • Modifying automation scripts for Migration.
Frequently Asked Questions about M C.
What company does M C. work for?
M C. works for Accenture
What is M C.'s role at the current company?
M C.'s current role is Software.
Who are M C.'s colleagues?
M C.'s colleagues are Mary Antony, Agnigundala Asha, Pranab Das, Gayatri Kommuri, Dinesh Golla, Dinesh Kamath, Christopher Cordes.
Not the M C. you were looking for?
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial