Information Security Consultant
• Developed information security requirements, and ensure security requirements are embedded in the system development life cycle and identified and addressed potential risks of not following these requirements. • Performed a business impact analysis, risk assessment, and risk treatment plan. • Prepared policies and procedures, helped organizations in the implementation of ISMS. • Delivered awareness training and changed the culture to be a security-aware culture in the organization.