Currently Working as Lead for GRC, Oversee and directs all aspects of organization's cybersecurity program, ensuring protection against evolving cyber threats and compliance with industry standards. Below are major responsibility
Lead Governance, Risk and Compliance
Develop, implement, and continuously refine a robust cybersecurity strategy aligned with organizational goals and industry standards
Conduct comprehensive risk assessments to identify potential vulnerabilities, prioritize risks, and develop strategies for risk mitigation and management.
Establish and enforce security policies, standards, and procedures to ensure compliance with regulatory requirements and industry best practices
Develop and conduct cybersecurity training programs to educate employees on security best practices, creating a security-aware organizational culture.
Establish and maintain a robust security governance framework, ensuring compliance with applicable laws, regulations, and industry standards.
Manage cybersecurity budgets, allocate resources effectively, and optimize expenditures to achieve security goals within budgetary constraints.
Conduct regular security audits and compliance assessments, addressing gaps and ensuring adherence to established security policies and controls.
Lead, mentor, and develop a high-performing cybersecurity team, fostering a culture of continuous improvement and professional growth.
Develop and manage business continuity and disaster recovery plans, ensuring operational resilience in the event of a security incident or disaster.
ICT Security Analyst
Critical Incident Manager/ Security Incident Manager
Worked as IT Service Management Process Manager (Incident& Problem)
Risk Management