Summary
Overview
Work History
Education
Skills
Certification
Personal Information
Timeline
Generic
MUKUND INAMDAR

MUKUND INAMDAR

Cyber Security Professional (CISSP,CISA,CISM,PMP)
Mumbai

Summary

Senior executive leader with 26 years of experience in various security domains having track record of driving strategic initiatives and delivering impactful results in Information Security, Audit, Compliance, and Risk Management. Skilled in developing security frameworks, policies, ensuring compliance with standards, conducting risk assessments, and selecting mitigation strategies. Adept at fostering team collaboration and navigating complex organizational challenges. Skilled in strategic planning, financial management, and operations oversight. Valued for reliability, adaptability, and results-oriented approach.

Overview

28
28
years of professional experience
7
7
Certifications
3
3
Languages

Work History

Head Cyber and Infrastructure Security (Senior Vice President-II)

Axis Bank
Mumbai
02.2020 - Current
  • Manage 24 *7 Next Generation Security Operations Center, monitoring Hybrid Cloud and On-premise environments with the team size of 50 plus resources.
  • Develop, maintain, and lead an incident response management program that includes incident detection, analysis, containment, eradication, recovery and chain of evidence/ forensic artifacts required for additional investigations.
  • To lead security experts in engineering security solutions and periodically assess efficacy of the technology controls.
  • Direct the functions, processes, and operations of the cyber security and ensure policies, procedures, and objectives align Organization's goals.
  • Monitor key performance indicators, determine and recommend techniques to improve efficiency / process improvements.
  • Communicate the organization's cyber security status and specific concerns to senior leadership.
  • To lead security analytics function consisting of big data specialists, security experts and programmers.
  • To lead Infrastructure Security team to develop and oversee infrastructure Security controls.
  • Responsible for designing and managing offensive security strategy for the Bank.
  • Responsible for managing Red, purple and blue teaming activities across the Bank.
  • Responsible for designing policies and controls for infrastructure Security.
  • Responsible for evaluating and recommending new security solutions in Cyber Security domain.
  • Responsible for designing Network security policies and controls.
  • Responsible for Cyber Security Incident Management and Response.
  • Responsible for Cloud Infrastructure Security and assessments (Azure, Amazon and Google Cloud).
  • Responsible for Office 365 Security policies and controls.

Vice President (Data Security and Infrastructure Security)

HDFC Bank
08.2016 - 02.2020
  • Lead and manage information security resources, including the security team, vendors, and contractors.
  • Oversee development, implementation, and updates to the security policies, procedures, guidelines, and best practices in areas like Data Security, Infrastructure Security.
  • Oversee Information Security to ensure compliance with organization's policies, controls and contractual agreements; monitor provider roadmaps for directional alignment with the security program.
  • Facilitate security technology implementations & infrastructure requirements.
  • Provide advice and assistance to internal team and external entities (subcontractors, contractors, vendors, customers) concerning the security of information and critical data processing capabilities.
  • Review and reporting of key risk indicator (framework); Scorecards, Dashboards to ensure appropriateness of Metrics / KPIs and facilitate business reviews.
  • Interact with business units and provide guidance on security related matters and serve as a point of escalation.
  • Perform planning work, analysis of processes, controls, and risk while multitasking project management and daily communications with teams responsible for the development, and on-going improvement of technology based information security controls.
  • Build rapport, credibility, and cohesion across all business unit teams and IT teams in the course of leading the projects.
  • Responsible for designing policies and controls for data lifecycle security.
  • Responsible for evaluating and recommending new security solutions in infrastructure Security domain.
  • Responsible for designing Infrastructure security policies and controls.
  • Responsible for designing Network security policies and controls.
  • Responsible for managing data protection program and Secure data rights management program across the bank.
  • Responsible for designing data centre security policy and controls.
  • Responsible for designing baseline security for various operating systems and Infrastructure/ application components.
  • Led cross-functional teams for the successful completion of major projects, resulting in increased efficiency and client satisfaction.

Assistant Vice President

Axis Bank Ltd
05.2014 - 08.2016
  • Responsible for managing outsourced Managed Security services team for day to day Information Security Operations. (ARCOS, DLP, FireEye, Seclore, Uniken)
  • Responsible for evaluating various security Solutions and guiding their implementation.
  • Responsible for Managing SOC (MSSP model) for day to day operations, Security incident Response, mitigation.
  • Responsible for designing and maintaining set of Information Security Policies and standards.
  • Acting as a key member of Project Management/ Change Management Committee for evaluating new Projects from Information Security risks perspective.
  • Responsible for carrying out Operational Information Security Risk Management by conducting risk assessments for applications and IT infrastructure.
  • Acting as single point of contact for information Security related matters to Various Business units like Internet Banking, Retail liabilities, Electronic Payment channels, Business Banking.
  • Responsible for Information Security Governance and Audit Compliance.
  • Responsible for conducting control gap assessment.
  • Was awarded with Certificate 'Solution Champion' for exemplary contribution to PMC/CMC framework for FY 2014-15.

Information Security Consultant

HP India Sales Pvt. Ltd.
03.2011 - 04.2014
  • Demonstrating skills in Account Security Planning through implementation of appropriate security controls to ensure BOI and HP security policy compliance and other regulatory compliance requirements e.g. RBI.
  • Responsible for Operational Information Security Risk Management by conducting risk assessments for major operational changes & periodic self-assessments to ensure proactive risk identifications, tracking and mitigations.
  • Providing security consulting to bank for various information security requirements; involved in policy preparation and providing strategic directions in terms of information Security Product roadmap.
  • Facilitating Information Security Audit & Compliance Management by audit preparation, remediation and tracking of various information security audits like ISO-27001, PCI-DSS, BS-25999 from HP side.
  • Efficiently managing a team of 6 people and handling 24
  • 7 Security Operations Centre using SIEM (RSA Envision), centralized log management solution for (450 devices), heterogeneous environment which consist of Windows, HP-UX, network devices like routers, firewalls, IDS/IPS, Database (Oracle and SQL) & Webservers (IIS, Apache).
  • Rendering VAPT services for IT Infrastructure by performing periodic vulnerability scanning using tool like Nessus, RAPID 7 for Network devices, Windows /UNIX servers, Web applications and Databases.
  • Carrying out vulnerability assessment for applications; performing periodic security vulnerability assessment for web based application using HP Web Inspect.
  • Actively Participated in evaluating IT-GRC Products; prepared business case and successfully completed POC for RSA-Archer.
  • Evaluated Secure Web Access solution of Internet and intranet based applications.
  • Evaluating solutions for Database activity Monitoring, File Integrity Monitoring & Privileged Access Management.

Solution Architect (Pre-sales) for Information Security Solution

Tata Consultancy Services
05.2010 - 03.2011
  • Carried out capability maturity assessments.
  • Developed program development roadmap; planned & led the optimization of IRM/InfoSec program governance activities.
  • Involved in designing multifactor authentication solutions for various Banking customers.
  • Designed SIEM, PKI, identity and access management solutions.
  • Generated RFP responses for security requirements.
  • Effectively handled security solution requirements for major public sector banks in India like SBI, CBI and BOM.
  • Facilitated IT-GRC consulting (SYMANTEC) and RSA (Archer).

Information Security Officer

HP India Sales Pvt. Ltd.
01.2008 - 04.2010
  • Accountable for ISO 27001 & MAP Audit preparation and provided facilitation and remediation support.
  • Liaised in terms of security incident & crisis.
  • Ensured operational risk management.
  • Fostered business continuity & disaster recovery planning.
  • Met customer's security and compliance requirements.
  • Took security improvement initiatives.
  • Involved in patch Management for Windows and UNIX servers.
  • Coordinated with Bank of India CISO on various security projects.
  • Supported Bank of India Data Centre in preparing for ISO-27K recertification which resulted in Bank of India achieving and maintaining ISO-27K certification without a single NC.
  • Supported Bank of India in preparing for PCI-DSS certification; BOI is the first Public sector bank to be PCI-DSS certified in India.
  • Conceptualized, designed and implemented SOC operation setup for Bank of India; the project involved setting up SIEM for Bank of India in DC and DR using RSA Envision.
  • Involved in Product evaluation, selection process; evaluated various SIEM solutions like Arcsight, SSIM from Symantec and Net forensic.
  • Setting up Symantec ESM (Enterprise security Manager) for Windows, HP-Ux and Linux servers.
  • Setting up Content Filtering and Messaging Gateway from Trend Micro and formulating access policies.
  • Performed periodic vulnerability assessment and penetration testing for infrastructure using Nesus and application security (Using HP Webinspect).

Project Delivery Manager/ PCS Consultant

HP India Sales Pvt. Ltd.
09.2004 - 12.2007
  • Effectively handled IT Infrastructure Projects.
  • Managed a team of 6 people to handle day to day IT Infrastructure delivery operations for Western Region.
  • Functioned as PCS consultant and planned, designed & implemented Network Client connectivity (Business Partner) solutions as per HP security Policies.
  • Performed security risk assessments for business partner access.

Senior Network & Security Engineer

Netmagic Solutions Pvt. Ltd.
08.2003 - 08.2004
  • Managed 24x7 Network Operations Centre for US based VPN service provider 'Virtela Communications' with customer base of around 1500 Sites.
  • Resolved technical escalations for 5-member team.
  • Involved in troubleshooting WAN issues.
  • Troubleshot complex network problems related to Routing/ Switching.

Project Delivery Manager

Compaq Computers Pvt. Ltd.
12.2001 - 08.2003
  • Managed a team of 8 People for 24x7 WAN/ LAN, network and security management Project for DHL India Pvt. Ltd. and network consisted 120 leased lines, 60 ISDN lines and 40 locations all over India.
  • Carried out configuration of HP openview and Cisco works to generate customized reports.
  • Involved in configuring access policies on Firewall as per the requirements.

Network Engineer

Wipro InfoTech Pvt. Ltd.
12.2000 - 12.2001

Facilities Management Engineer

Omnitech Business Machines Pvt. Ltd.
05.2000 - 12.2000

Customer Support Engineer

Liberty Automation Systems
09.1997 - 05.2000

Education

Masters - Information Technology

Sikkim Manipal University

Diploma - Electronics & Telecom Engineering

Bharti Vidyapeeth

Skills

  • Cybersecurity alignment with business objectives

  • Enterprise risk assessment

  • Executive reporting

  • Policy formulation and implementation

  • Budgeting & Vendor Management

  • Incident Response & Threat Intelligence

  • Security Architecture & Engineering

  • Cloud Security – Securing AWS, Azure, and GCP environments

  • Security Governance & Compliance (NIST, ISO 27001, COBIT, and regulatory standards (eg, RBI, PCI-DSS)

  • Security Program Development – Building mature, scalable programs (GRC, SOC, IAM)

  • Business Continuity & Disaster Recovery – Designing and testing plans for resilience

  • Cross-Functional Collaboration – Partnering with Legal, IT, HR, and Ops teams

Certification

PMP Certification (Project Management Professional)

Personal Information

Date of Birth: 03/25/75

Timeline

Head Cyber and Infrastructure Security (Senior Vice President-II)

Axis Bank
02.2020 - Current

Vice President (Data Security and Infrastructure Security)

HDFC Bank
08.2016 - 02.2020

Assistant Vice President

Axis Bank Ltd
05.2014 - 08.2016

Information Security Consultant

HP India Sales Pvt. Ltd.
03.2011 - 04.2014

Solution Architect (Pre-sales) for Information Security Solution

Tata Consultancy Services
05.2010 - 03.2011

Information Security Officer

HP India Sales Pvt. Ltd.
01.2008 - 04.2010

Project Delivery Manager/ PCS Consultant

HP India Sales Pvt. Ltd.
09.2004 - 12.2007

Senior Network & Security Engineer

Netmagic Solutions Pvt. Ltd.
08.2003 - 08.2004

Project Delivery Manager

Compaq Computers Pvt. Ltd.
12.2001 - 08.2003

Network Engineer

Wipro InfoTech Pvt. Ltd.
12.2000 - 12.2001

Facilities Management Engineer

Omnitech Business Machines Pvt. Ltd.
05.2000 - 12.2000

Customer Support Engineer

Liberty Automation Systems
09.1997 - 05.2000

Diploma - Electronics & Telecom Engineering

Bharti Vidyapeeth

Masters - Information Technology

Sikkim Manipal University
MUKUND INAMDARCyber Security Professional (CISSP,CISA,CISM,PMP)