Haresh M Ravi

Haresh M Ravi Email and Phone Number

Associate Manager - Risk and Compliance @ Sutherland
Chennai, TN, IN
Haresh M Ravi's Location
Chennai, Tamil Nadu, India, India
About Haresh M Ravi

Senior Information Security Engineer with 9+ years of experience around Compliance and privacy(GRC), Managed Security Services in the eCommerce and Health industry. - Internal ISMS Audit for development projects. - Coordinated on SOC 2 Type II attestation- Knowledgeable in PCI DSS, ISO 27001, SOC 2, ITIL, HIPAA- Managing security appliances - CASB, Web gateway, Email gateway, MFA, MDM including implementation. - Experience with SIEM - Incident management.Implementing best security practices, creating awareness among end users.- Experience with Security Vulnerability Assessment

Haresh M Ravi's Current Company Details
Sutherland

Sutherland

View
Associate Manager - Risk and Compliance
Chennai, TN, IN
Haresh M Ravi Work Experience Details
  • Sutherland
    Associate Manager - Risk And Compliance
    Sutherland
    Chennai, Tn, In
  • Sutherland
    Associate Manager - Risk And Compliance
    Sutherland Jul 2024 - Present
    Chennai
  • Fss
    Senior Team Lead - Risk And Compliance
    Fss Jun 2023 - Jul 2024
    Chennai, Tamil Nadu, India
    ▪ Lead PCI DSS certification audit and compliance for the organisation post certification expiry.▪ Experience in leading multiple customer and regulatory audits to its closure.▪ Lead ISO 27001 internal audit team for products and services.▪ Based on regulatory body security requirements perform gap analysis for organisation.▪ Coordinate with legal team on onboarding legal agreements on ISMS perspective.▪ Initiate vendor onboarding by performing due diligence and risk assessments.▪ Perform annual review of organization policy and procedures.▪ Member of Change Control Board; review of changes performed across organization.▪ Review of Information Security advisory to organisation on recent threats and newsletters.▪ Reports and dashboards on customer engagements on risk and governance and internal ISMS metrics
  • Computer Age Management Services Limited
    Risk & Compliance
    Computer Age Management Services Limited Nov 2022 - Jun 2023
    Chennai, Tamil Nadu, India
    ▪ Performed business process risk assessment for CAMSPay and identified potential risks in ISMS perspective.▪ Perform ISMS review on agreements, MSA and SOW of clients(pipeline) related to payment and Insurance.▪ Initiated vendor risk assessment for existing vendors and due diligence.▪ Based on regulatory body security requirements performed gap analysis for business units.▪ Regular Access Control Audits in source code repositories, platform environments.▪ Coordinate with stakeholders on audit findings and remediation.▪ Coordinated with regulatory boards to comply with ISMS requirements.▪ Induction and Awareness Sessions on Information Security to educate the employees.
  • Born Group
    Senior Information Security Engineer - Compliance & Privacy
    Born Group Jun 2021 - Oct 2022
    Chennai, Tamil Nadu, India
    ▪ Perform ISMS internal audits for IT Projects(Development and Maintenance).▪ ISMS internal audits for all internal divisions of the organization.▪ Coordinated obtaining SOC 2 Type II attestation for the organization.▪ Regular Access Control Audits in source code repositories, platform environments.▪ Periodic reviews on MSA, Legal Contracts like NDA, SoW for new onboarded clients.▪ Record Of Processing Activities(ROPA): Coordinated with architects to understand the PII involved in the applications and prepared the ROPA adhering GDPR guidelines.▪ Regular internal tools audit (Slack, Wiki, GSuite)▪ Induction and Awareness Sessions on Information Security to educate the employees.
  • Born Group
    Information Security Engineer
    Born Group Aug 2018 - Jun 2021
    Chennai, Tamil Nadu, India
    ▪ Perform ISMS internal audits for IT Projects(Development and Maintenance).▪ Regular Access Control Audits in source code repositories, platform environments.▪ Regular internal tools audit (Slack, Wiki, GSuite)▪ Induction and Awareness Sessions on Information Security to educate the employees.▪ Managing entire security monitoring for eCommerce agency.▪ Identify, investigate and report IT security risks/incidents.▪ Have implemented Content Filtering System and Application Control in Firewall across agency.▪ Perform internal security appliance audits and provide risk registers.▪ Respond to everyday security exploits/vulnerabilities and initiate report to mitigation.▪ Provide reports on weekly and monthly basis.
  • Gavs Technologies
    Information Security Analyst
    Gavs Technologies Dec 2016 - Jul 2018
    Chennai Area, India
    ▪ Managing entire security infrastructure for Health Care Organization▪ Handling endpoint security for 3000+ endpoints, including migrating from legacy antivirus to cloud environment. ▪ Have implemented and deployed Web & email appliances.▪ Monitoring web traffic using Sophos web gateway. Implement policies, analyse web traffic manually and taking necessary actions.▪ Monitoring email traffic using Sophos email gateway. Fine-tune anti-spam policy and SPX policy, analysing spam mails manually and taking preventive measures.▪ Managing mobile device security using Sophos MDM.▪ Perform phishing awareness campaigns to improve security awareness of end users using Sophos phish threat.▪ Internal Android Applications Vulnerability Assessment – Reverse engineering and manual code analysis.
  • Gavs Technologies
    Information Security Analyst
    Gavs Technologies Jul 2015 - Sep 2016
    Chennai, Tamil Nadu, India
    ▪ Identify, investigate and report IT security risks/incidents.▪ Monitor logs using IBM QRadar, investigate offences and initiate incident response.▪ Identify malicious websites and recommend to block in web gateway.▪ Perform spam email analysis. ▪ Provide reports on weekly and monthly basis. ▪ Work in par with ITIL, HIPPA and Industry best practices.

Haresh M Ravi Skills

Information Security Android Application Vulnerability Assessment Incident Handling Python Vulnerability Assessment Java Security Incident And Event Management Qradar Network Security Security Incident Response Mobile Device Management Ethical Hacking Networking Penetration Testing Epolicy Orchestrator Forescout Nac Lean Six Sigma Team Building Linux C Mysql Public Speaking Team Motivation Teamwork Adobe Photoshop Adobe Illustrator

Haresh M Ravi Education Details

  • College Of Engineering, Guindy
    Computer Programming, Specific Applications
  • Vel'S College Of Science
    Vel'S College Of Science
    Computer Applications
  • Sri Ram Dayal Khemkha Vivekanada Vidyalaya
    Sri Ram Dayal Khemkha Vivekanada Vidyalaya
    Computer Applications

Frequently Asked Questions about Haresh M Ravi

What company does Haresh M Ravi work for?

Haresh M Ravi works for Sutherland

What is Haresh M Ravi's role at the current company?

Haresh M Ravi's current role is Associate Manager - Risk and Compliance.

What schools did Haresh M Ravi attend?

Haresh M Ravi attended College Of Engineering, Guindy, Vel's College Of Science, Sri Ram Dayal Khemkha Vivekanada Vidyalaya.

What skills is Haresh M Ravi known for?

Haresh M Ravi has skills like Information Security, Android Application Vulnerability Assessment, Incident Handling, Python, Vulnerability Assessment, Java, Security Incident And Event Management, Qradar, Network Security, Security Incident Response, Mobile Device Management, Ethical Hacking.

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.