GRC and vulnerability management professional with extensive experience in implementing comprehensive governance, risk, and compliance strategies, as well as tracking status and reporting. Seeking a dynamic role to leverage my expertise in strengthening organizational resilience, mitigating risks, ensuring regulatory compliance, and enhancing security posture for sustainable business growth.
• Working as part of the Infosys Cybersecurity Governance, Risk, & Compliance team in collaboration with the security teams of Mercedes-Benz and Daimler Trucks.
• Extensive knowledge and experience in security assessment, vulnerability management, risk-based threat analysis, and security mitigation techniques, with proficiency in tools such as Qualys Scanner, Qualys Agent, and ServiceNow.
• Registered and maintained asset inventory within scanning tools and conducted scheduled vulnerability scans to support proactive threat detection and risk mitigation.
• Successfully collaborated with both Mercedes Benz and Infosys ServiceNow teams to streamline asset processes onto the ServiceNow platform. Managed comprehensive vulnerability remediation tracking, reporting and client submissions. Proactively addressed and overcome challenge within the ServiceNow interface.
• Collaborated with the Daimler Trucks Vulnerability Management team to analyze and resolve issues from Microsoft Defender scan reports. Partnered with the Operations team to track remediation progress, support resolution efforts, and maintain proactive client communication to address low remediation rates and strengthen overall cybersecurity posture.
• Collaborated with management teams to review vulnerability-related issues, control updates, and risk areas, proactively identifying red flags and driving remediation focus. Fostered strong relationships with clients and cross-functional teams to ensure alignment and effective resolution of security concerns.
• Programming language: Java
• Subjective Knowledge: Computer Networking, Operating Systems, Database, TCP/IP, Linux, Cloud Computing.
• Tools: Qualys, ServiceNow, Azure, Microsoft Office 365 Apps.
• Frameworks: Familiar with GDPR, PCIDSS, NIST, ISO 27001.
• Additional Skills: Problem solving & analytics, ability to work well in team, excellent communication skills.
Purdue University Applied Cybersecurity Essentials, Aug 2022
Qualys Certified Specialist – Vulnerability Management, July 2023
AZ-900: Microsoft Certified - Azure Fundamentals, Aug 2023
AZ-500: Microsoft Certified - Azure Security Engineer Associate, Feb 2024
SC-200: Microsoft Certified: Security Operations Analyst Associate, Nov 2024
• Gracias: I received heartfelt appreciation on "Gracias" from my manager, acknowledging my consistent dedication to excellence and my invaluable contribution toward achieving outstanding outcomes
Insta Award: Received the Infosys Insta Award twice from the delivery manager for my contribution to the project