1. As the Functional Lead (currently leading Mobility, Chemicals and Products and Shell Energies within Downstream) for security across Business Units, I ensure key projects are delivered securely and on time.
2. Conducted regular risk assessments and control testing to ensure compliance with internal policies, industry regulations, and best practices
3. Advised senior management on strategic decisions by providing in-depth analysis of potential risks and recommended control measures
4. Led cross-functional teams to enhance the organization's risk management culture and promote a proactive approach to identifying and addressing risks
5. Within the IRM team, I have acted as the Senior Risk and Controls Advisor for both the Upstream (including Projects and Technology, Sub Surface and Wells, C&P, and Safety and Environment) and Downstream (comprising Mobility, Chemicals & Products, and Shell Energy) sectors.
6. I performed an in-depth analysis of Shell's data exposure during the MoveIT file transfer incident, ensuring all information assets were adequately assessed from a security perspective.
7. I was instrumental in developing the organization's authentication policy.
8. I ensure that risks to information assets are identified and communicated to relevant stakeholders, with appropriate controls implemented to mitigate these risks.
9. I assume considerable personal responsibility and autonomy in addressing complex problems and tasks, thoroughly investigating, defining, and resolving complex issues.
10. My role entails teamwork and interaction with business leaders, driving essential initiatives from inception to completion to achieve the intended results.
11. I assist in conducting risk-based security assessments for IT projects, including those involving networks, communication, hosting, storage, cloud services, and end-user computing, to ensure compliance with the necessary security architecture and design principles.
12. I oversee IT project evaluations, guiding them towards stage gate approvals to guarantee the provision of secure, dependable, and compliant IT solutions.
13. I work with IT infrastructure project managers, portfolio owners, service managers, and other stakeholders to identify and coordinate.