Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Garima Sharma

Noida

Summary

Seasoned Cyber Security Professional with nearly two decades of experience in developing and managing enterprise-level security programs. Proven expertise in safeguarding IT assets, leading incident response, and establishing robust security policies and procedures. Skilled in conducting risk assessments, ensuring regulatory compliance, and integrating security practices into business operations. Adept at providing leadership, staying updated on the latest security threats, and managing diverse security teams.

Overview

19
19
years of professional experience
1
1
Certification

Work History

Joint Secretary

ISACA New Delhi Chapter
New Delhi
01.2024 - Current
  • Provide strategic oversight and support for the ISACA New Delhi Chapter, including managing chapter activities, events, and member engagement
  • Coordinate with chapter members and the board to facilitate meetings, training sessions, and networking opportunities
  • Handle administrative tasks including documentation, scheduling, and communication with ISACA headquarters and other chapters
  • Promote ISACA's mission and objectives within the local cybersecurity community and drive initiatives to enhance chapter visibility and impact.

Senior Manager, Cyber Security

Fiserv India Pvt Ltd
Noida
07.2016 - Current
  • IT Asset Protection: Managed the security of IT assets, including endpoints, laptops, and data centers, implementing robust protection measures to mitigate risks.
  • Incident Response: Directed the response to security incidents and breaches, including investigation, remediation, and the development of incident handling procedures.
  • Policy & Standards Development: Established and governed comprehensive information security policies, procedures, and standards to ensure effective risk management.
  • Risk Assessment & Compliance: Conducted thorough risk assessments and audits to ensure compliance with PCI-DSS and ISO 27001 standards.
  • Cross-functional Integration: Collaborated with IT and business units to integrate security practices into daily operations, enhancing the overall security posture.
  • Team Management: Managed and mentored a team of 20 associates, fostering professional development and ensuring alignment with security goals.
  • Security Automation: Implemented automation tools and scripts to streamline security processes, improving efficiency and effectiveness.
  • Data Privacy Oversight: Oversaw GDPR and CCPA compliance programs, conducted Privacy Impact Assessments (PIAs), and addressed privacy risks.

Tech Lead, Information Security

Exeo India Pvt Ltd
Noida
02.2013 - 07.2016
  • Developed and executed security strategies to protect infrastructure and applications
  • Conducted security assessments and penetration testing, supporting secure development practices
  • Provided leadership in incident response, including investigation and remediation of security issues.

Senior Engineer, Application Security

Unthink Technologies
Noida
07.2011 - 02.2013
  • Conducted application security assessments, penetration testing, and vulnerability assessments
  • Implemented secure coding practices and performed code reviews to enhance application security.

Senior Security Research Engineer

Nevis Networks
Pune
12.2010 - 07.2011
  • Researched malware samples, developed threat identification signatures, and analyzed malware behavior using sandboxing techniques.

Senior Security Engineer

iPolicy Networks
Noida
06.2008 - 12.2010
  • Conducted in-depth malware and vulnerability analysis, developed signatures, and set up sandbox environments.

Incident Handler

CERT-India
New Delhi
11.2005 - 06.2008
  • Coordinated national and international responses to cybersecurity incidents, including malware outbreaks, phishing attacks, and network scanning
  • Conducted research on malware and vulnerabilities to develop advisories and mitigation strategies
  • Provided timely alerts and guidance to government and critical infrastructure entities
  • Authored and co-authored public advisories and white papers on defacement statistics and other cybersecurity issues affecting Indian websites and organizations
  • Organized and delivered training sessions and workshops for government departments, banks, and other organizations to enhance their cybersecurity awareness and response capabilities
  • Participated in international drills and coordinated with global agencies on malware containment and cybersecurity drills.

Education

PGDASDD -

CDAC-Noida
01.2005

MCA -

IGNOU
01.2005

Skills

  • Risk Management & Mitigation
  • Compliance & Regulatory Adherence
  • Incident Response & Remediation
  • Security Policies & Procedures
  • Enterprise Security Program Development
  • Security Assessments & Audits
  • Leadership & Team Management
  • Data Privacy & Protection

Certification

  • Certified Information Security Manager (CISM) — ISACA
  • Certified Information Systems Auditor (CISA) — ISACA
  • ISO 42001

Timeline

Joint Secretary

ISACA New Delhi Chapter
01.2024 - Current

Senior Manager, Cyber Security

Fiserv India Pvt Ltd
07.2016 - Current

Tech Lead, Information Security

Exeo India Pvt Ltd
02.2013 - 07.2016

Senior Engineer, Application Security

Unthink Technologies
07.2011 - 02.2013

Senior Security Research Engineer

Nevis Networks
12.2010 - 07.2011

Senior Security Engineer

iPolicy Networks
06.2008 - 12.2010

Incident Handler

CERT-India
11.2005 - 06.2008

PGDASDD -

CDAC-Noida

MCA -

IGNOU
Garima Sharma