
Information security expert with extensive experience in transforming and maintaining Cyber/Information Security management systems, Data Protection and Privacy management systems, etc. Demonstrated success in managing end-to-end IT security projects and ensuring Security and Privacy compliance as per global statutory, regulatory, and Legal Requirements. I specialize in model-based Risk management and compliance, transformation, and maintenance (ISO 27001:2022, ISO 27701, 2019, NIST-CSF, ISO 31000, SOC2, etc.)
i.Context Setting, ii. Risk Assessment , iii. GAp Assessment , iv. Documentation v. Implementation vi.Internal Audit Certification, and Closure )
Maintenance ( Control Testing)
Organization Layer( Hub)
Client/Project Layer ( Spokes)
1. 2nd Party Audits with more than 25+ Clients
2. Control Testing and Maintenance of current organization
CISM ( Persuing), ISO 27001 :2022, ISO 27701:2019