Summary
Overview
Work History
Education
Skills
Certification
Personal Information
Languages
Hobbies and Interests
Timeline
Generic
SACHIN DHAWAN

SACHIN DHAWAN

New Delhi

Summary

Detail-oriented IT Governance and Compliance specialist with a strong foundation in IT General Controls (ITGC) and IT Application Controls (ITAC). Seeking to leverage extensive experience in identity and access governance, risk assessment, and compliance management within a dynamic organization. Committed to enhancing security frameworks, ensuring regulatory compliance, and driving continuous improvements in access management processes.

Overview

6
6
years of professional experience
1
1
Certification

Work History

Identity & Access Governance

Metlife
09.2023 - Current
  • Conducted ITGC and ITAC assessments, identifying control gaps and recommending remediation measures in line with industry best practices.
  • Managed user access provisioning and privileged access management, ensuring compliance with internal GRC policies.
  • Led ISO 27001 audit engagements, collaborating with stakeholders to ensure compliance with information security management systems (ISMS) requirements
  • Developed and maintained IT risk and control matrices, enhancing the organization's risk assessment process and control testing methodology
  • Reviewed and tested key IT controls related to access management, change management, and IT operations, ensuring effective and efficient IT governance
  • Prepared audit reports, documenting findings, control deficiencies, and actionable recommendations for IT and management teams
  • Check Termination Checks and Entitlement Reviews
  • Monitored and analyzed access logs and security alerts to identify unauthorized access attempts and mitigate potential security threats
  • Supported internal audits by providing evidence of access control compliance and implementing corrective actions as needed.

Software Engineer II

Alert Enterprise
10.2022 - 08.2023
  • Roles & Responsibilities: User access provisioning/revoking, privileged access management and data authentication controls, reviewing and managing the entitlements, managing the asset owners, role-based and system-based access controls
  • Liaising with application support teams and other partners to ensure SOX compliance
  • End to End Issue Management which includes assessing potential findings, drafting clear and concise recommendations, following up on action plans with asset owners
  • Collaborating with Business Unit Information Security Officers, system owners, and other IAM colleagues to address audit and regulatory related issues
  • Working on ITGC and ITAC to addresses the security, integrity, and reliability of financial information
  • Leading the projects on transitions and migrations various teams, streamlining business’ IDs and accesses and eliminating any potential risks
  • To train new hires and other team members on work instructions, policies, and service level agreements
  • Supported internal and external audits by providing evidence of access control compliance and implementing corrective actions as needed.

IT Security Analyst

WALMART LABS
07.2021 - 09.2022
  • Roles & Responsibilities: Working as an Developer for Application Onboarding in Sailpoint
  • Troubleshooting for connectors (such as JDBC,LDAP, MAINFRAMES etc) Worked on Certifications, implementing and working experience in VDI and RSA

IT Security Engineer

FIS Global
Gurugram
11.2018 - 07.2021
  • Roles & Responsibilities: Working as an System Security Developer for ID’s Creation/ Deletion/Modification/ , Application Onboarding ,Password Resets for applications used by AMEX bank staffs to perform their BAU
  • Provisioning access as per critical business requirements and as per the Role assigned to the user along with Application Onboarding Knowledge of manual and automated provisioning of access using IAM applications like IIQ(Sailpoint) and systems like RACF, Pega, ITIM etc Managing 911 & HWC requests and provision the access within a minimum Turn-around-Time
  • Managing escalations and providing support to the affected users
  • Worked on Connectors Well-versed in coordinating with various support teams for solving any kind of technical issues faced at user-end.

Education

B.TECH -

HIMALAYAN UNIVERSITY

Class 10 -

Class 12 - Science

Skills

  • IT General Controls (ITGC)
  • IT Application Controls (ITAC)
  • Identity and Access Management (IAM)
  • GRC
  • Access Governance
  • Compliance & Audit Support
  • Risk Assessment & Mitigation
  • Security Frameworks & Standards
  • IAM Tools & Technologies
  • Access Monitoring & Incident Response
  • Audit Reporting
  • Stakeholder Collaboration
  • Technical Proficiency
  • Process Improvement
  • Soft Skills

Certification

  • ISO27001 LA
  • Yellow Belt

Personal Information

Date of Birth: 01/23/96

Languages

English, Hindi

Hobbies and Interests

Cricket, Gyming

Timeline

Identity & Access Governance

Metlife
09.2023 - Current

Software Engineer II

Alert Enterprise
10.2022 - 08.2023

IT Security Analyst

WALMART LABS
07.2021 - 09.2022

IT Security Engineer

FIS Global
11.2018 - 07.2021

B.TECH -

HIMALAYAN UNIVERSITY

Class 10 -

Class 12 - Science

SACHIN DHAWAN