Summary
Overview
Work History
Education
Skills
Websites
Certification
Standards Know-How
Languages
Work Availability
Timeline
Hi, I’m

JOSEPH THANICKAL

Pune
Success is not final; failure is not fatal: It is the courage to continue that counts.
Winston S. Churchill
JOSEPH THANICKAL

Summary

Experienced Auditor focused on improving business compliance, workflow and processes through detailed audits and optimization recommendations. Successful track record of fully evaluating information, structures and procedures and initiating corrective actions. Advanced skills in ServiceNow. Resourceful Accounting professional with 17.5+ years of experience in audit preparation and reporting. Seasoned auditing professional knowledgeable about risk aversion strategies, cost reduction options and financial processes. Decisive and persuasive communicator with proven problem-solving, leadership and planning abilities. Information Security Specialist with passion for aligning security architecture plans and processes with security standards and business goals. Extensive experience developing and testing security framework for cloud-based software. Versed in robust network defense strategies. Detail-oriented Auditor with track record of quickly completing complex audit projects. Experienced in public and private accounting, specializing in financial statement audits. Well-versed in managing entire audit process from planning and risk assessment to fieldwork.

Overview

18
years of professional experience
1
Certification

Work History

Nuvolo Technologies Ltd.

Lead Auditor
12.2021 - Current

Job overview

  • Conduct Internal Audits ISO 27001 and SOC 2 via ServiceNow GRC Tool
  • Identified control gaps in processes, procedures and systems through in-depth research and assessment and suggested methods for improvement.
  • Planned audits and audit activities to allocate necessary resources and determine consistency of plans with audit objectives.
  • Planned and executed follow-up audits at appropriate intervals.
  • Coordinated, managed and implemented auditing projects and prepared for evaluation.
  • Followed established auditing processes to meet internal and regulatory requirements.
  • Obtained and interpreted relevant and authoritative criteria for program or issues under audit.
  • Communicated with auditee staff to obtain necessary information for audits.
  • Administered auditing program to address risks and evaluate compliance with regulatory requirements.
  • Performed observations and evaluated supporting documents to supplement audit findings.
  • Interviewed auditees to gather data needed to conduct audits.
  • Adapted plans and schedules to meet changing priorities of work objectives, resources and workload demands.
  • Conducted security audits to identify vulnerabilities.
  • Reviewed violations of computer security procedures and developed mitigation plans.
  • Counseled senior-level management on current privacy and security trends and recommendations to mitigate risk.

Worldline Global Services

Information Security Consultant
11.2009 - 12.2021

Job overview

  • Coordinating with different entities (GBUs, Teams, etc.) in the organization in multiple domains like PCI DSS, ISAE 3402, SOC, Key and HSM Management, etc.
  • Managed anonymous online and phone-call tips, implementing uncovered information into investigation processes to solve cases.
  • Built relationships and fostered effective communication with legal personnel to conduct practical investigations.
  • Conducted security audits to identify vulnerabilities.
  • Developed plans to safeguard computer files against modification, destruction, or disclosure.
  • Used strong analytical and problem-solving skills to develop effective solutions for challenging situations.
  • Developed strong communication and organizational skills through working on group projects.
  • Organized and detail-oriented with a strong work ethic.
  • Proven ability to develop and implement creative solutions to complex problems.
  • Strengthened communication skills through regular interactions with others.
  • Cross-trained existing employees to maximize team agility and performance.
  • Maximized performance by monitoring daily activities and mentoring team members.
  • Developed and maintained relationships with customers and suppliers through account development.
  • Onboarded new employees with training and new hire documentation.
  • Communicated clearly with employees, suppliers and stakeholders to keep everyone on same page and working toward established business goals.
  • Managed and motivated employees to be productive and engaged in work.
  • Monitored and analyzed business performance to identify areas of improvement and make necessary adjustments.
  • Used critical thinking to break down problems, evaluate solutions and make decisions.
  • Participated in team projects, demonstrating an ability to work collaboratively and effectively.
  • Worked well in a team setting, providing support and guidance.
  • Developed and maintained courteous and effective working relationships.
  • Assisted with day-to-day operations, working efficiently and productively with all team members.
  • Defined clear targets and objectives and communicated to other team members.
  • Leveraged data and analytics to make informed decisions and drive business improvements.
  • Streamlined and monitored quality programs to alleviate overdue compliance activities.
  • Established team priorities, maintained schedules and monitored performance.

TechProcess Solutions Pvt. Ltd.

Information Security Analyst
12.2006 - 11.2009

Job overview

  • Monitored computer virus reports to determine when to update virus protection systems.
  • Monitored use of data files and regulated access to protect secure information.
  • Administered and monitored firewalls, intrusion detection systems and anti-virus software to detect risks.
  • Conducted security audits to identify vulnerabilities.
  • Worked with other teams to enforce security of applications and systems.
  • Reviewed violations of computer security procedures and developed mitigation plans.
  • Investigated and resolved incidents of unauthorized access to sensitive information.
  • Drafted security reports and metrics to track security performance and strategize improvements.
  • Educated and trained users on information security policies and procedures.
  • Performed risk analyses to identify appropriate security countermeasures.
  • Recommend improvements in security systems and procedures.
  • Applied effective time management techniques to meet tight deadlines.

Wysetek Technologies Pvt. Ltd.

Resident Windows /Desktop Technician
08.2006 - 12.2006

M/s Libra Systems

Field Windows /Desktop Technician
02.2006 - 08.2006

Education

University of Mumbai
Mumbai, India

Bachelor of Science from Information Technology
02.2021

University Overview

  • Final Grade: 78 %
  • Huddle Governance in Python, Project Management - Project

Terna Polytechnic

Diploma in Industrial Electronics

IU University
Online

Master's in Science (Cyber Security)
02.2027

Skills

  • Information Security
  • InfoSec Audit
  • Program Management
  • Team Management
  • Vulnerability Remediation Management
  • Penetration Testing results coordination
  • Anti-Virus Management
  • ISMS Policy management
  • Annual Roadmap
  • Annual Self-Assessment
  • Audit Management
  • Management Reporting
  • Client Communication
  • Risk Assessment
  • ISO 27001 - ISO 22301
  • SOX IT - ISAE 3402 - SSAE 16
  • Python Scripting
  • MS Excel: Data Analysis and Reporting
  • MS Power Point Reporting
  • ServiceNow GRC
  • PCI DSS
  • Key Management
  • MS Word Documentation
  • MS PowerPoint Presentation skills
  • Audit Planning
  • Internal Controls
  • Report Writing
  • Audit Coordination
  • Report Creation
  • Compliance Standards
  • Sampling Techniques
  • Process Improvement
  • Trend Analysis
  • Auditing Processes
  • Risk Management
  • Compliance Reviews
  • Compliance Monitoring
  • Internal Audits
  • Compliance Management
  • Critical Thinking Skills
  • IT Security
  • Project Coordination
  • Interpersonal Communication
  • Attention to Detail
  • Time Management Abilities
  • Relationship Building
  • Excellent Communication
  • Time Management
  • Team Building
  • Analytical Thinking
  • Problem-Solving Aptitude
  • Goal Setting
  • User Support
  • Professionalism
  • Multitasking Abilities
  • Organizational Skills
  • Problem-Solving
  • Decision-Making
  • Analytical Skills
  • Multitasking
  • Self Motivation
  • Continuous Improvement
  • Project Leadership
  • Reliability
  • Adaptability
  • Active Listening
  • Interpersonal Skills

Certification

  • PCI DSS
  • ISO 27001:2013 LA
  • ISO 27001:2013 LI from Atos web-e-learning
  • ISO 22301:2012 LA
  • ITIL v3.0
  • COBIT 5.0
  • CCENT (Cisco ICND1)

Standards Know-How

  • ITCF
  • IT SOX/ ISAE 3402

Languages

English
Advanced (C1)
Hindi
Intermediate (B1)
Availability
See my work availability
Not Available
Available
monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Lead Auditor

Nuvolo Technologies Ltd.
12.2021 - Current

Information Security Consultant

Worldline Global Services
11.2009 - 12.2021

Information Security Analyst

TechProcess Solutions Pvt. Ltd.
12.2006 - 11.2009

Resident Windows /Desktop Technician

Wysetek Technologies Pvt. Ltd.
08.2006 - 12.2006

Field Windows /Desktop Technician

M/s Libra Systems
02.2006 - 08.2006

University of Mumbai

Bachelor of Science from Information Technology

Terna Polytechnic

Diploma in Industrial Electronics

IU University

Master's in Science (Cyber Security)
JOSEPH THANICKAL