Summary
Overview
Work History
Education
Skills
CERTIFICATION
Tools & Technologies
Languages
Accomplishments
Timeline
Generic
Bhuvanendran  Boominathan

Bhuvanendran Boominathan

Chennai

Summary

More than 14 + years' experience as an Information Technology (IT) professional with strong expertise in IT management, IT security management, and IT enterprise architecture. Demonstrated expertise in establishing and implementing large information security programs. Designed and implemented automated tool-based vulnerability management framework that continuously monitors and detects Cybersecurity threats and vulnerabilities.

Overview

14
14
years of professional experience

Work History

Manager Cyber Security

HCL Technologies
06.2021 - Current
  • Worked well in a team setting, providing support and guidance.
  • Skilled at working independently and collaboratively in a team environment.
  • Acted as a team leader in group projects, delegating tasks and providing feedback.
  • Planned for resource engagement and supported escalations.
  • Created Policies and Runbook for different VM tools and technologies also automated Power BI dashboard for Vulnerability advisory tracking and remediation goverenance.
  • Provided technical solution at the time of transition and transformation.
  • Defined risk mitigation strategies and reported significant changes to senior management.
  • Promoted accountability of Division Chiefs in managing information security risks.
  • Ensured vulnerability and threat assessments were performed to evaluate the effectiveness of existing security controls.
  • Developed and implemented processes to enable detection, identification, and analysis of IT security threats and vulnerabilities.
  • Developed and implemented Information Security Training and Awareness Program.
  • Established and maintained effective Information Resource Management program, including the development of strategic IT plan.

Assistant Manger – IT Security

Virtusa Consulting Service
04.2020 - 06.2021
  • Member of Security Incident Management team tasked with the investigation into possible security issues
  • Participated in the planning and design of company security architecture.
  • Automatized the regular patching for every week for windows and Linux through HPSA by closely working with the team
  • Implemented DevSecops by integrating Qualys and Jenkins to automate the vulnerability management for web applications
  • Reviewing the policy and procedure documents to get it approved
  • Conducting phishing awareness within the organization randomly an automated the process with BOT to generate a report of success rate per one campaigns
  • Experience in integrating service now and Qualys for automating vulnerability management
  • Prioritizing the vulnerability by integrating Qualys and Kenna for calculating the vulnerability risk score.

Sr Executive – IT Security

Wabco India
05.2018 - 04.2020
  • Established management control and communications processes to ensure IT Security Program is implemented consistent with current policies.
  • Ensured development and approval of IT security plans and procedures, continuity of operations plans and procedures, and information security baselines and controls.
  • Working closely with team to achieve the remediation target for both PCI and Non PCI Asset.
  • Preparing daily report with remediation count with projections and sharing with onsite team.
  • Analyzing new vulnerabilities and creating SOP’s for remediation to technical teams.
  • Performing Adhoc scan for each remediation to check the vulnerability status.
  • Performed vulnerability assessments, penetration tests, and security audits, produced reports of findings, and worked cooperatively with engineers to implement remedial measures.
  • Participated in the creation of IT security policies, procedures, guidelines, baselines, and standards.
  • Recommended security solutions and processes to improve overall company security.
  • Central Point of Contact for the configuration, integration, and deployment of all new or improved security solutions and processes in accordance with standard best practices and the company's security policies.
  • Monitored all existing security solutions for efficient and appropriate operations.

Project Manager

Newt Global India (p) Ltd
04.2016 - 05.2018
  • Managed vulnerability remediation projects for the client " VERIZON"
  • Planned, designed, and scheduled phases for large projects.
  • Met project deadlines without sacrificing build quality or workplace safety.
  • Achieved project deadlines by coordinating with contractors to manage performance.
  • Handling the manager role for managed devices group. Responsible for policies and procedures as well as day – to – day management activities.
  • Provide second and third level support for managed customer networks
  • Provided Weekly and Monthly progress update to Management wiht cleat statistics of platform Wise .


Team Lead - System

Caresoft Global India Private Limited
06.2013 - 10.2015
  • Preparing daily report with remediation count with projections and sharing with onsite team
  • Analyzing new vulnerabilities and creating SOP’s for remediation to technical teams
  • Performing Adhoc scan for each remediation to check the vulnerability status
  • Performed vulnerability assessments, penetration tests, and security audits, produced reports of findings, and worked cooperatively with engineers to implement remedial measures
  • Participated in the creation of IT security policies, procedures, guidelines, baselines, and Standards. Recommended security solutions and processes to improve overall company security
  • Central Point of Contact for the configuration, integration, and deployment of all new or improved security solutions and processes in accordance with standard best practices and the company's security policies

Support Engineer

InfinIT Infoserv Private Limited
09.2011 - 11.2012
  • Managed Firewall and Antivirus Servers
  • Managed and implemented IT requirements, standards, and business processes.

Network Engineer

Comtel Network Technology
10.2009 - 09.2011
  • Implementing passive network and configuring routers and firewall to our customer.

Education

Bachelor of Science - Computer Science And Engineering

Anna University
Chennai
04.2009

Skills

  • Project management
  • Security information and event management (SIEM)
  • Risk assessment & compliance
  • Vulnerability Assessment and Management
  • Vulnerability Prioritization Analysis
  • SNOW Vulnerability Response Management
  • Endpoint Security Management
  • Firewall Security Management
  • Phishing Awareness
  • Planning and Coordination
  • Multitasking Abilities
  • Flexible and Adaptable
  • Teamwork and Collaboration
  • Problem-Solving
  • Teambuilding
  • Decision-Making

CERTIFICATION

CCISO ( Certified Chief Information Security Officer )

CISM ( Certified Information Security Manager)

CASE. NET ( Certified Application Security Engineer ) 

CEH ( Certified Ethical Hacker ) 

MCP ( Microsoft Certified Professinal) 

Tools & Technologies

Vulnerability Management             

  • Qualys Guard
  • Tenabel.Sz
  • Tenable.IO
  • Rapid 7
  • Defender for VM
  • Prisma Cloud
  • Mandiant
  • Kenna Security
  • Risksense
  • Avalor Security

Endpoint Security 

  • Mcafee
  • Trend Micro

Firewall Security 

  • Sonicwall
    Fortigate

Phishing Awareness 

  • KnowB4

Languages

English
Bilingual or Proficient (C2)
Tamil
Bilingual or Proficient (C2)

Accomplishments

Leadership

  • Developed and implemented Risk based vulnerability management strategy.

Strategy and Planning

  • Established policies and procedures for vulnerability administrators to perform vulnerability assessment and application patching.

Team Collaboration

  • Collaborated with large departments to establish enterprise security framework to accomplish common IT security objectives and leverage common tools to reduce costs.
  • Coordinated the activities of Information Security Officers to define and establish unified program-wide approach to address IT security issues and mitigate IT security risks.

Project Management

  • Managed the implementation of DevSecops by integrating Qualys and JIRA .
  • Managed multiple project based on US and UK to provide a security services like Endpoint security , Firewall Security and Vulnerability Management to our customer .

Timeline

Manager Cyber Security

HCL Technologies
06.2021 - Current

Assistant Manger – IT Security

Virtusa Consulting Service
04.2020 - 06.2021

Sr Executive – IT Security

Wabco India
05.2018 - 04.2020

Project Manager

Newt Global India (p) Ltd
04.2016 - 05.2018

Team Lead - System

Caresoft Global India Private Limited
06.2013 - 10.2015

Support Engineer

InfinIT Infoserv Private Limited
09.2011 - 11.2012

Network Engineer

Comtel Network Technology
10.2009 - 09.2011

Bachelor of Science - Computer Science And Engineering

Anna University
Bhuvanendran Boominathan