Experienced professional with 22+ years of leadership experience across Information Technology and Retail Industry in the areas of Information Security, Data privacy, governance, risk management and compliance (GRC). Industry experience with a range of global companies managing both local entities as well as global entities.
Overview
23
23
years of professional experience
14
14
Certifications
1
1
Language
Work History
Interim Director OCISO India(PMO & Data Analytics)
Providence
01.2022 - Current
Act as the Cybersecurity (CYBR) liaison for Providence businesses/entities, integrate security into business/entity scope, strategy, programs, and operations
Lead this sub-pillar for India and advocate Information Services (IS) and Cybersecurity (CYBR) goals and commitments
Provide thought leadership on new and industry-leading enterprise-class security solutions and services
Grow and develop the PMO function within India, support global and local projects
Managed recruiting, hiring the right talent and training caregivers for this function members.
Establish security performance criteria, measure and report performance, and develop and execute strategy for security service excellence.
Launched staff engagement, gender diversity and culture commitment programs in addition to robust Program management and reporting program.
Director Security GRC & IT Disaster Recovery
Providence
11.2021 - Current
Work closely with organizational leadership and CISO to functionally manage the Cyber Governance Risk and Compliance function for US and India.
Established and executed GRC implementation roadmap.
Defined governance roles and responsibilities to establish clear accountability for stewardship of principal information assets.
Established Cybersecurity Risk and Governance functions for Providence India
Lead the adoption of a global operating model in managing capabilities across multi locations
Lead the IT DR function for Providence global, supported establishing the IT DR framework, building IT DR capabilities across all IS functions
Responsible for ensuring continuous improvement of Information Security policy and integrated IT control frameworks, continuous identification and management of risks.
Vice President - Technology Supplier Management
Synchrony
02.2020 - 10.2021
Responsible for managing critical technology suppliers (GDCs) providing Infra support, Software and professional services.
Led the Professional Services division and managed a contractor base of 3500 resources across IT service companies operating in India, Us and Canada. I was responsible for driving SLAs, engagement requirements, operational, Cyber Security Risk management and financial tracking and management.
Key areas include development and implementation of comprehensive supplier monitoring plans, Information security controls implementation and monitoring, Business continuity & IT DR management. Vendor annual review and onsite audits.
Identified opportunities to improve business process flows, productivity, automation and cost reduction opportunities.
Responsible for focusing on multiple lines of IKEA business operating out of India (including IKEA Retail, IKEA Centre's, Expansion and Fulfilment)
Responsible for driving the overall risk assessment framework across functions
Responsible for conducting and completing the Country Key Risk assessment and presenting to country board of directors.
Responsible for driving and completing all assessments for 'New' and 'Changed' services/applications/products for respective business lines
Responsible for driving risk assessment for any high impact project
(Ex.: Organizational restructuring)
Responsible for driving risk management trainings and learning activities.
Country Information Security and Data Privacy Manager
IKEA Retail India Pvt Ltd
03.2017 - 08.2019
Responsible for anchoring Information security and Data privacy into the day to day retail operation for all units of IKEA India
As a part of the launch team, I was responsible for implementation of Information Security and Data Privacy requirements, anchoring InfoSec policy across all units and business formats
Collaborating with Security Engineering, Security Artitecture and IAM functions to ensure implementation for all country level requirements.
Creating and anchoring country specific requirements and building a healthy balance with global policies and local laws
Responsible for security implementation of eCommerce journey and XS format store security.
Focus on the changing security landscape and build solution with high security focus and implement Privacy by Design.
Senior Manager Quality & Compliance
Atos IT Services Private Limited
03.2008 - 02.2017
Responsible for driving governance and compliance initiatives and audits for the ITO divisions in India and Malaysia
Supported a host of clients across Retail, Healthcare, IT domains.
Member of the Atos Global Compliance Team reporting into the VP for SDRM (Strategic Decision and Risk Management) responsible for establishing IT Service Management Program in India, establishing processes and standards, driving compliance goals.
Managed large-scale projects and introduced new systems, tools, and processes to achieve challenging objectives.
Conducted performance evaluations, compensations and hiring to maintain appropriate staffing requirements.
Business Controls Professional
IBM GLOBAL SERVICES (P) Ltd.
01.2005 - 03.2008
Responsible for driving compliance through the End User Service Division of approx 1800 employees
Ensuring compliance score for system health, vulnerability management, patch management
Part of the core internal audit team to conduct the internal reviews and support the certification process for ISO27001 standard
Responsible for driving risk based reviews across processes like Patch management, system access control, Identity and access management and Vulnerability management.
Process Leader-Quality Coaching and Learning
GECIS IT Services
12.2000 - 01.2005
Provide process audit support for GE Plastic and Consumer Finance teams approx
Conducted process audit and evaluation of 120+ tech support engineers
Worked on six sigma initiative and quality improvement projects to improve SLA & KPIs
Record, track, and evaluate quality of inquiry handling
Solicit and respond appropriately to analyst and management feedback
Identify training needs by analysts and team and act as a resource for performance development initiatives.
Education
MBA - Post Graduation Diploma in Business Administration- Operations
Symbiosis Pune
GNIIT - Diploma in Information Technologies
NIIT Hyderabad
Bachelor's Degree - Art (English Honors)
Utkal University Orissa
Intermediate-Science - undefined
Utkal University Orissa
I.C.S.C - undefined
Stewart School Cuttack Orissa
Skills
Risk Management
undefined
Certification
CCSK (Certificate of Cloud Security Knowledge)
Personal Information
Passport Number: L6158849
Date of Birth: 05/11
Gender: Female
Nationality: Indian
Marital Status: Married
References
Available on request
Timeline
Interim Director OCISO India(PMO & Data Analytics)