Summary
Overview
Work History
Education
Skills
Certification
Languages
Timeline
Personal Information
Generic
ASHUTOSH S SANGLE

ASHUTOSH S SANGLE

Mumbai

Summary

IS Risk & Compliance IT Security Operations Management Incident Response & threat Intel Cybersecurity Strategy and management IT Infrastructure Management Data Centre Management IS Governance & compliance ITIL Framework IT/IS Procurement Service Desk Management Vendor Management/ Audits Data Privacy & Security

Overview

22
22
years of professional experience
1
1
Certificate

Work History

Deepak Nitrite Limited
06.2023 - Current
  • Spearheading enterprise-wide cybersecurity strategy and governance framework
  • Orchestrating comprehensive security risk assessments and implementing mitigation strategies
  • Establishing security metrics and KPIs for measuring security posture effectiveness
  • Driving security awareness programs and managing relationships with key stakeholders
  • Leading implementation of security frameworks aligned with ISO 27001 and NIST standards

WNS Global Services
11.2021 - 11.2022
  • Provided leadership to Security Operations Center Analysts
  • Lead Security monitoring and incident response of cyber security events in a highly available Security Operation Center (SOC) that supports internal and external customers
  • Ensuring Monitoring of Security Information and Event Management (SIEM) alerts to identify security issues for remediation and investigate events and incidents
  • Provide proactive 'threat hunting' support to analysts to detect incidents
  • Tune rules and thresholds to improve fidelity of alerts
  • Prepare reports of analysis and results to provide briefings to management and clients
  • Provide Incident Response support when analysis confirms actionable incident
  • Investigate, document, and report on information security issues and emerging trends.
  • Operated autonomously to further investigate and escalate events/incidents in accordance with policies, procedures and defined processes.
  • Lead SOC analysts during incident response actions, advise and coordinate with leadership during active incidents
  • Provide teaching / mentoring to SOC I, II & III Analysts
  • Identified, evaluated, developed and reported SOC related metrics via dashboard and/or reports
  • Manage shift schedules and lead SOC personnel
  • Develop, lead and present relevant Cybersecurity tabletop exercises to SOC staff and relevant stakeholder groups for the purposes of identifying process improvement opportunities.

Lead IS & Cybersecurity

IndusInd Bank
01.2017 - 11.2021
  • Budget the infosec FY expenses
  • Overlook and Drive IS and cybersecurity audits
  • Keep IT and Security teams up to date with the latest security and technology developments
  • Research/evaluate emerging cyber security threats and ways to manage them
  • Plan for disaster recovery in the event of any security breaches
  • Watch for attacks, intrusions and unusual, unauthorized or illegal activity
  • Test and rate security products
  • Developed methodologies to perform risk assessment, business impact analysis, and security assurance to improve systems and operational security
  • Worked with business units to identify their perceived threats to the integrity, availability, and confidentiality of their information assets.
  • Design new IS security systems or upgrade existing ones
  • Provided guidance on developing, implementing and effectively managing security processes
  • Use advanced analytic tools to figure emerging threat patterns and vulnerabilities
  • Engage in 'ethical hacking', such as, simulating security breaches
  • Find potential weaknesses and carry out measures, such as firewalls and encryption.
  • Investigate security alerts and provide incident response
  • Investigated, gathered and documented inappropriate use and internal security incidents
  • Check identity and access management, including monitoring for abuse of permissions by authorized system users.
  • Work with stakeholders in relation to cyber security issues and offer future recommendations
  • Generate reports for both technical and non-technical staff and stakeholders
  • Maintain an information security risk register and help with internal and external audits relating to information security

IT Project Manager

Prime Focus Technologies
01.2014 - 11.2014

Project Manager (National)

CMS Info Systems
03.2012 - 10.2013

IT & IT Security Operations Manager

Wipro InfoTech
06.2008 - 03.2012

Assistant Manager Technology

e-Nxt Financials Ltd. (Tata Enterprise)
06.2007 - 01.2008

Dialer Engineer/ Technology Shift In-charge

Epicenter Technology Pvt. Limited
02.2007 - 05.2007

System Administrator

Altuis Customer Services Pvt. Limited
01.2007 - 02.2007

Executive- Technology

Global Telesystems Limited (GTL)
08.2003 - 01.2007

Education

Diploma - Computer Technology

Maharashtra State Board of Technical Education
01.2002

Bachelor of Computer Applications -

Himalayan Garhwal University
Dehradun
04-2024

Skills

  • Cyber and Information Security Strategy
  • IS Incident management
  • VA and PT risk management
  • Incident investigation
  • Digital forensics
  • Red and Blue-team exercises
  • Security threat intelligence
  • Information Security compliance
  • Key Risk indicators management
  • Regulatory reporting
  • Management reporting
  • IS awareness training
  • Phishing exercises
  • Monitoring technologies
  • Performance metrics alignment
  • Security technologies management
  • SIEM deployment
  • VAPT
  • IDS
  • IPS
  • IT Incident Management
  • Business recovery planning
  • Information Systems Management
  • IS risk management
  • Data Security
  • Information Security Incident Response Policy
  • MSS management
  • Project governance
  • Stakeholder relationship management
  • Technology transformation
  • Incident Management processes
  • Problem Management processes
  • Configuration Management
  • Business Continuity planning
  • Disaster Recovery planning
  • Infrastructure systems design
  • Local Area Network (LAN)
  • Wide Area Network (WAN)
  • Wireless implementations
  • Citrix
  • Lync
  • SharePoint

Certification

  • CRISC - Certified in Risk and Information Systems Control
  • ITIL - IT Infrastructure Library
  • CSX (Trained) - Cyber Security Nexus
  • PMP (Trained) - Project Management Professional


Languages

English
Hindi
Marathi

Timeline

Deepak Nitrite Limited
06.2023 - Current

WNS Global Services
11.2021 - 11.2022

Lead IS & Cybersecurity

IndusInd Bank
01.2017 - 11.2021

IT Project Manager

Prime Focus Technologies
01.2014 - 11.2014

Project Manager (National)

CMS Info Systems
03.2012 - 10.2013

IT & IT Security Operations Manager

Wipro InfoTech
06.2008 - 03.2012

Assistant Manager Technology

e-Nxt Financials Ltd. (Tata Enterprise)
06.2007 - 01.2008

Dialer Engineer/ Technology Shift In-charge

Epicenter Technology Pvt. Limited
02.2007 - 05.2007

System Administrator

Altuis Customer Services Pvt. Limited
01.2007 - 02.2007

Executive- Technology

Global Telesystems Limited (GTL)
08.2003 - 01.2007

Diploma - Computer Technology

Maharashtra State Board of Technical Education

Bachelor of Computer Applications -

Himalayan Garhwal University

Personal Information

Date of Birth: 1979-01-23
ASHUTOSH S SANGLE