Executive Information Security
Chennai, Tamil Nadu, India
Audit Management: Conducted yearly IRDA, Aadhar, and Credence audits, delivering checklists, organizing responses, and providing evidence for internal and third-party data security audits. Coordinated with auditors to address identified gaps.ITGC & ITAC Audits: Performed Incident, Change, and Operations Management (ITGC) audits, and IT Application Controls (ITAC). Mapped ALM tickets to Azure tickets, sharing detailed reports and evidence with auditors.ISO 27001 Gap Assessment: Coordinated with vendors for ISO 27001 gap assessments, gathered evidence, and worked with internal teams to address identified gaps.Data Protection: Identified and safeguarded sensitive organizational and customer data using StealthAudit.Access Control: Streamlined employee access revocation process by coordinating with HR, Active Directory, and application teams, improving access rights audits.Vendor Management: Renewed and maintained MSAs for third-party vendors, collaborating with legal and audit teams on agreement reviews.Cybersecurity Tools: Managed purchase and renewal of cybersecurity tools for the organization.Code Security: Enhanced code quality and security by implementing SonarQube validation across all deployments.Compliance Enforcement: Ensured compliance with decisions from the internal Information Security Committee (ISC).