Rajeev Sareen

Rajeev Sareen Email and Phone Number

Manager at EY | Cybersecurity & Business Continuity Professional @ EY
london, greater london, united kingdom
Rajeev Sareen's Location
Gurgaon, Haryana, India, India
About Rajeev Sareen

ISO 27001 and 22301 Auditor/Implementer, with the experience of auditing 500+ sites and 100+ data centers to identify the overall security maturity score of an organization along with its regulatory and statutory compliance. Audit skills include, but not limited to performing Internal, External, Third-Party Vendor and Data Center audits for Physical as well as Digital Security Controls. Expertise in designing and managing custom Compliance Framework which incorporates ISO 27001/02, ISO 22301, NIST 800-53, NIST 800-171, NIST 800-30, PCI DSS, NICE Framework, IRDAI guidelines, SEBI circulars and more.

Rajeev Sareen's Current Company Details
EY
Manager at EY | Cybersecurity & Business Continuity Professional
london, greater london, united kingdom
Website:
ey.com
Employees:
296502
Rajeev Sareen Work Experience Details
  • Ey
    Manager
    Ey Oct 2023 - Present
    - Lead, mentor, and manage a team of security professionals, providing guidance and support for their development- Establish and oversee governance framework for information security and compliance activities- Continuously assess and improve the organization’s security posture and compliance standing- Prepare and present regular security reports to senior management, including metrics, incident summaries, and compliance status- Prepare for and coordinate internal and external audits related to business continuity, ITGC, SOC, information security and regulatory compliance- Formulate and maintain the organization’s information security strategy in alignment with business goals and objectives- Drive end-to end client engagements for ISO 27001 transition from 2013 to 2022 standard version- Develop, implement, and update information security and business continuity policies, procedures, and guidelines- Operationalize organization wide GRC tools for internal/external audits, unified controls repository, documentation management, risk management, evidence collection, POAMs, disaster/incident communications, etc.- Lead multiple security risk management, operational resilience and regulatory compliance client engagements
  • Ey
    Senior Consultant
    Ey Feb 2021 - Oct 2023
    Gurugram, Haryana, India
    - Implementation of ISO 27001:2013 and ISO 22301:2012 standard for multiple clients from Technology, Media and Telecom industry- Creation of policies, processes and procedures in accordance with ISO 27001, RBI requirements and PCI-DSS for a leading Banking service provider- Performed Crown Jewel assessment to identify critical assets for multiple clients- Creating ISMS IT Global Framework to enable central IT Audits and provide centralised framework with evidence repository- Remote ISMS assessments of global network infrastructure service provider of a major telecommunication organization (Vendor Risk Assessment)- Perform context based risk assessment and devise associated risk treatment plan for various sites globally- Creation and maintenance of Key Performance Indicators for continuous monitoring and measurement in alignment with organization’s ISMS objectives- Managing client communication, project timelines, regular updates and lead ISMS implementation discussions with global stakeholders
  • Ernst & Young
    Information Security Consultant
    Ernst & Young Jan 2020 - Jan 2021
    Gurugram, Haryana, India
    - Implementation of ISO 27001:2013 standard at various sites of a major telecommunication vendor globally- Identify and address gaps in current ISMS documentation(Policies, Processes and Procedures) and articulate documents which are not in place to meet ISMS requirements- Face internal and external audits and ensure closure of any non-conformance with apt corrective action implementation- Deliver knowledge sharing sessions to client and internal team regularly- Managing client communication, project timelines, regular updates and lead ISMS implementation discussions with global stakeholders
  • Lucideus
    Information Security Consultant
    Lucideus Jun 2019 - Jan 2020
    New Delhi Area, India
    - Leading multiple compliance and governance projects for domestic and international clients across various industries- Assisting in assessment across People, Process and Technology verticals for multiple Domestic and International Clients- Articulation and review of Policy, Process and Procedures documents according to the organizations infrastructure- Organization-wide implementation of ISO 27001(ISMS) and 22301(BCMS) for multiple clients - Execute, manage, and perform end to end IT Security Maturity Assessment along with the team- Prepared various detailed audit reports on audit findings along with risk description and corresponding remediation procedure- Managing customer communication, project timelines, regular updates and an internal team of 2 junior security analyst- Involved in product innovation and testing of the custom Compliance Framework Module
  • Lucideus
    Compliance Analyst
    Lucideus Jun 2018 - May 2019
    - Involved in multiple compliance and governance projects for domestic clients across various industries- Assisting in assessment across People, Process and Technology verticals for many National and International Clients- Articulation of Policy and Process documents according to the organizations- Performed online reputation management (ORM) for one of the major DTH service providers in India- Conducted various Third-Party Vendor Audits by meeting stakeholders, understanding the process, identifying and evaluating the risks- Organization-wide implementation of ISO 27001(ISMS) and 22301(BCMS) for multiple clients- Execute, manage, and perform end to end IT Security Maturity Assessment along with the team- Conducted ATM Audits to validate physical and digital security controls for one of the PrivateBanks of India- Prepared various detailed audit reports on audit findings along with risk description and corresponding remediation procedure- Managing customer communication, project timelines, regular updates and an internal team of 2 junior security analyst- Designing and managing custom Compliance Framework which incorporates ISO 27001/02, ISO 22301, NIST 800-53R4, NIST 800-171R1, NIST 800-30R1, PCI DSS v3.2.1, NICE Framework, IRDAI guidelines, SEBI circulars and more- Risk Quantification to measure the level of severity of the risk (based on the NIST SP 800-30r1)- Appointed as Internal Auditor at Lucideus Tech. to ensure compliance with ISO 27001:2013 (ISMS) and ISO 9001:2015 (QMS)- Involved in product innovation and testing of the custom Compliance Framework Module
  • L&T Electrical & Automation
    Project Trainee
    L&T Electrical & Automation May 2017 - Jul 2017
    Mumbai, Maharashtra, India
    • Conducted Information Security Administrator training sessions illustrating their roles & responsibilities, focused on Risk Assessment Methodology• Conducted Information Security User Awareness sessions• Conducted Internal Audit for ISMS at 7 different locations across Nation• Drafted baseline documents & policies for Servers, Applications, Network & Backup• Drafted checklist for servers, network & applications for mock audit & risk identification• Performed gap analysis between IS Manual & practical implementation• Performed Risk Assessment to determine/assess the risks and suggest related controls• Performed Browser Forensics & System Forensics (using sys internal tools)• Proposed Dynamic Authentication in place of Hard-Coded mechanism to improve security• Performed Nessus report analysis to apply controls and mitigate the existing vulnerabilities
  • Cyber Blog Of India Club
    President
    Cyber Blog Of India Club Apr 2015 - Apr 2016
    Dehradun
  • Acm
    Joint Pr Head
    Acm Apr 2015 - Apr 2016
    Dehradun
  • Bata India Limited
    Assistant Manager
    Bata India Limited Apr 2013 - Mar 2014
    People Skills Management, Resource Management, Managing POS Software Operations, Conducting Internal Audits, Reporting Fortnight Statements and other Reports.

Rajeev Sareen Skills

Public Speaking Microsoft Office Management Security Audits Team Management Leadership Information Security Presentation Skills Teamwork Iso 27001 Lead Auditor Project Management Consulting Public Relations Business Development C++ Sql Php Research Microsoft Word Customer Service Microsoft Excel Nist 800 53 Statutory Compliances Nist Digital Security Data Analysis Business Continuity Disaster Recovery Vendor Management Payment Card Industry Data Security Standard Risk Assessment Cybersecurity Continuous Improvement Internal Controls External Audit Internal Audit Microsoft Powerpoint Third Party Vendor Management Iso 22301 It Compliance Security Awareness Vulnerability Management Information Security Management System Security Policy It Audit Risk Management Business Analysis Iso 27001 Network Security Retail Sales C Html Social Media

Rajeev Sareen Education Details

Frequently Asked Questions about Rajeev Sareen

What company does Rajeev Sareen work for?

Rajeev Sareen works for Ey

What is Rajeev Sareen's role at the current company?

Rajeev Sareen's current role is Manager at EY | Cybersecurity & Business Continuity Professional.

What schools did Rajeev Sareen attend?

Rajeev Sareen attended University Of Petroleum And Energy Studies.

What are some of Rajeev Sareen's interests?

Rajeev Sareen has interest in Children, Civil Rights And Social Action, Environment, Education, Science And Technology, Disaster And Humanitarian Relief, Animal Welfare, Health.

What skills is Rajeev Sareen known for?

Rajeev Sareen has skills like Public Speaking, Microsoft Office, Management, Security Audits, Team Management, Leadership, Information Security, Presentation Skills, Teamwork, Iso 27001 Lead Auditor, Project Management, Consulting.

Who are Rajeev Sareen's colleagues?

Rajeev Sareen's colleagues are Federico Bossi, Avantika Mishra, Alejandra Ramirez, Pritisha Kalita, Jefferson Schmitt, Julia Apostolopoulou, Sai Kalyan Kunapareddy.

Not the Rajeev Sareen you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.