Summary
Overview
Work History
Education
Skills
Certification
Languages
Timeline
Generic
Satyajeet Bahal

Satyajeet Bahal

Gurugram

Summary

Seasoned Information Security Officer with experience in implementing, overseeing, and maintaining comprehensive information security strategies. Strengths include strong leadership skills, a deep understanding of cyber security risk, and the ability to effectively communicate complex technical information to non-technical stakeholders.

Notably influenced past organizations by streamlining operational efficiencies and strengthening cybersecurity posture. Several years of experience designing and implementing security solutions in high-availability environments.

Overview

13
13
years of professional experience
1
1
Certification

Work History

Vice President - CISO

Shivalik Small Finance Bank
Gurugram
07.2024 - Current
  • Identified problems and implemented solutions to better streamline information security operations.
  • Reviewed security bulletins and vulnerability patch releases.
  • Analyzed security procedure violations and developed plans to prevent recurrence.
  • Mentored junior employees in departmental activities and procedures.
  • Made recommendations to improve security procedures and systems.
  • Created effective communication strategies between management team members and employees at all levels of the organization.
  • Conducting a phishing drill activity for regular users to enhance information security awareness measures.
  • Ensured that all changes made to production environments are properly tested before implementation.
  • Implemented multi-factor authentication solutions across multiple platforms and applications.
  • Assisted in developing strategies for responding to cyber threats such as malware attacks, phishing attempts, or distributed denial-of-service attacks.
  • Trained staff on information security topics such as password management, social engineering awareness, mobile device usage policy.
  • Provided executive leadership team with updates on the status of IT security programs.
  • Oversaw incident response teams in the event of a security breach or system failure.
  • Provided technical advice and guidance on secure coding practices for software development teams.
  • Managed security operations center activities including threat monitoring, analysis, investigation, and response.
  • Participated in industry forums and conferences related to information security best practices.
  • Reviewed access control logs to ensure only authorized personnel had access to sensitive data.
  • Conducted regular vulnerability assessments to identify weaknesses in existing infrastructure.
  • Maintained up-to-date knowledge of emerging threats and vulnerabilities within the IT industry.
  • Evaluated current technologies used by the organization for their ability to meet security requirements.
  • Created detailed reports outlining findings from audits and reviews conducted by external auditors.
  • Monitored compliance with data protection regulations and internal policies.
  • Coordinated with other departments on security initiatives such as risk management, disaster recovery planning, and business continuity planning.
  • Established procedures for responding promptly to any suspected information security incidents.
  • Developed and implemented security policies, standards and procedures to protect company information systems.
  • Collaborated with legal department on privacy issues related to customer data collection.

AVP - Security Operations

SBI CARDS
Gurugram
01.2023 - 07.2024

Ensure the day-to-day operations and maintenance of the organization's cybersecurity infrastructure and controls to protect systems, networks, and data.

Ensure coverage and effectiveness of security operations and deployed solutions.

Ensure optimum security, availability, performance, and capacity of security solutions under management.

Ensure and maintain up-to-date documentation, including SOPs, architecture diagrams, etc. To remove dependency on people.

Manage configuration changes and deployments according to established change management processes, ensuring minimal disruption, and adherence to best practices.

Ensure hardening, the latest stable version, and security patches of security devices and solutions.

● Track EOL/EOS and ensure that there is no technology obsolescence.

Ensure the resolution of incidents and outages, coordinating with internal teams and external vendors to restore service within agreed-upon SLAs.

Manage escalations and run the smooth operations of security solutions.

Ensure relevant processes are followed for change, incident, and daily operations.

Identify and analyze pain areas in existing security operations, and implement improvements.

Manage operational issues that require design and technical inputs.

Ensure compliance with regulatory requirements, security policies, and security frameworks such as ISO 27001, NIST, or CIS.

Publish the relevant dashboards and status updates.

Escalate deviations and violations in a timely manner.

Budgeting CAPEX and OPEX.

Remain current with the organization's security policies, the latest security advisories/threats, industry best practices, and developments in cybersecurity, and recommend and implement best practices and technologies to mitigate emerging threats.

Good understanding of cybersecurity tools like SIEM, PAM, UEBA, and deception.

Conducting a phishing drill activity for regular users to enhance information security awareness measures.

Senior Manager

NCDEX,
Mumbai
06.2022 - 01.2023

Hierarchy Level, Instrumental in managing various aspects of IT Security operations

  • Good understanding of Cybersecurity tools like SIEM, PAM, DLP, EDR, UBEA, Anti-APT, Deception, Data encryption technologies etc
  • Policy Implementation and Management of DLP (Data Leak Prevention / Protection)
  • Managing Information Security Management System, key involvement in implementing IS Policies & IT Procedures
  • Experience in handling the IT audits, System Audit, Cyber Security framework and IT compliance
  • Co-ordination with software vendors, internal operation team, IT-Security, Networking, IT-Datacentre, Software- Development’s etc
  • On operational and strategic security requirements related to Technology
  • Interface between business and technology, arrive at technical solution, and document the same
  • Evaluation, implementation co-ordination of MDR (Manage Detect and Response / Next Generation SOC)
  • Conducting Phishing Drill activity for regular users to enhance Information Security awareness measures
  • Conducting VA/PT activity and reporting to different teams for closure of vulnerabilities found
  • Planning, conducting and reporting of PoC (Proof of Concepts) to CISO
  • Project Planning, Tracking and Control for effective Implementation of new and existing cyber security practices laid down by SEBI
  • Communicating to trading members associated with NCDEX on different cyber security guidelines laid down by SEBI.
  • Collaborated with cross-functional team members to build and execute development plans.
  • Led project scope development to deliver final products that meet business needs.

Manager

NSDL eGovernance
Mumbai
08.2019 - 06.2022
  • Governance and Infrastructure Limited, Industry Information Technology
  • Functional Area Operations
  • Hierarchy Level Middle Management
  • Internal Job Title, Evaluation, implementation of EDR (Endpoint Detection and Response / Next Generation Antivirus)
  • Management of DLP (Data Leak Prevention / Protection)
  • Implementation and Management of Identity Governance and Access Management
  • Evaluation, implementation co-ordination of MDR ( Manage Detect and Response / Next Generation SOC)
  • Evaluation SOAR (Security Orchestration and Automatic remediation)
  • Evaluation of NAC
  • Evaluation and execution of human firewall
  • Planning, conducting and reporting of PoC (Proof Of Concepts) to CISO
  • Project Planning, Tracking and Control for effective Implementation of new and existing ongoing infrastructure project
  • Evaluation and implementation of Phishing Simulation
  • Evaluation and Implementation of Independent Security Ratings to verify the risk posture.
  • Assigned tasks to associates to fit skill levels and maximize team performance.
  • Recruited and hired qualified candidates to fill open positions.
  • Monitored staff performance and addressed issues.
  • Minimized staff turnover through appropriate selection, orientation and training.
  • Led team meetings and one-on-one coaching sessions to continuously improve performance.
  • Enhanced team member performance through use of strategic and tactical approaches, motivational coaching and training.

Senior Consultant

Sequretek IT Solution
11.2015 - 08.2019
  • Mumbai
  • Industry Information Technology
  • Functional Area Operations
  • Hierarchy Level Middle Management, Project Planning, Tracking and Control for effective Implementation of new and existing ongoing infrastructure projects
  • Planning, conducting and reporting of PoC (Proof of Concepts) of technologies
  • Ability to undertake upcoming internal projects as Team leader,
  • Project Planning, Tracking and Control for effective Implementation
  • Responsible for overall project delivery for client satisfaction, quality control, and financial performance
  • Responsible for All kind of new rollouts and prepare the project plan and execute
  • Responsible for Product Integrations, Customizations, and Enhancements
  • Assessment & execution of IT Infrastructure & DC migration related projects
  • Co-ordination with customer, third party vendor for timely and successful completion of project
  • Manages the end-to-end operational service delivery in order to deliver contracted service commitments
  • Responsible for all Portfolio/ Project level reporting to the Senior stakeholders on all ongoing and planned projects
  • Escalates major Account Delivery issues to the higher Management with recommendations to address
  • Make sure all aspects of projects are followed with system updates and project closure
  • Identifying and implementing Mitigation plan for the risks identified for entire IT portfolio
  • Responsible for Process improvement activities across PMO function
  • Responsible for enhancing Delivery/ Operational Processes / templates at project level
  • Responsible for All Vendor Management and all kind of Escalations
  • Responsible to Provide foundational support and training for the consistent and best practice usage to End Users
  • Provide after-hours support when needed for changes and or incidents
  • Interacting with business and function heads, as well as being a part of the core IT infrastructure services
  • Have a fair understating of project lifecycle.

Swash Convergence Ltd
Mumbai
10.2015 - 10.2015
  • Industry Information Technology
  • Functional Area Operations
  • Hierarchy Level Middle Management
  • Internal Job Title Operation & Delivery executive
  • Description
  • Ensured proper distribution and handling of data
  • Instructed and trained employees at site to adapt the changes in business process
  • Completed implementation of ERP system within time and minimal cost
  • Assisted in incorporating SAP applications into business models
  • Handled designing of applications, management of development group, pilot testing and deployment.

Klonsys LLP
Bhubaneswar
11.2014 - 07.2015
  • Industry Information Technology
  • Functional Area Operations
  • Hierarchy Level Middle Management
  • Internal Job Title CSM
  • Description
  • Handling B2B & B2C Domain
  • Organizing Centralized Marketing,
  • Handling Centre Business Operation
  • Generating Business Revenue Collection
  • Expansion of Franchise Channel Development
  • Business Tie- up with Education & institution
  • Train, coordinate and manage all the resource coordinators in the given zone
  • New Development in the field of Staffing, Outsourcing and Recruitment
  • Review audits and training sessions for existing centre
  • Overall day-to-day management of the centre
  • Student Enrolment for 100% capacity utilization of the centre
  • Relationship management with client Centre (on a monthly basis)
  • Preparing commercial proposals and offer documents
  • Conducting various presentations, workshop & seminars.

Neo Source Technology
Bangalore
01.2012 - 01.2014
  • Industry Information Technology
  • Functional Area Operations
  • Hierarchy Level Junior Management
  • Internal Job Title Software Engineer IT
  • Description
  • Conducting scripts enhancements and maintenance of database etc
  • Raise CR and give necessary information to development team to fix the bug
  • Responsible for solving user queries from various media like Interchange chat channel, Mails and on telephone
  • Responsible for providing the support in L2/L3 level depending on the priority of the issues to meet client’s SLA
  • Give the status report of tickets to Manager of our department
  • Providing support to client on 24
  • 7 bases
  • Monitor & resolve all the P1/P2/P3/P4 tickets in our queue
  • Status reporting on a weekly basis
  • Responsible to execute and monitor the daily, weekly and monthly jobs
  • As a Production Support Consultant monitoring the application through Control M and troubleshooting so that SLA should not bridge at any moment.

Education

GRADUATE (ENGR) -

Trident Academy of Technology
10.2009

High School Diploma -

Siva Junior College
06.2005

10th -

DAV Public School
Bhubaneswar
05.2002

Skills

  • Operations planning
  • Influencing and negotiating
  • Contract development and management
  • Systems and automation applications
  • Budget oversight
  • Cross-functional team leadership

Certification

C|CISO - Certified Chief Information Security Officer

CISM – Certified Information Security Manager

CEH – Certified Ethical Hacker

IIBF Certified

TrendMicro Deep Security Certified Professional.

Languages

English
First Language
Odiya
Proficient (C2)
C2
Hindi
Proficient (C2)
C2

Timeline

Vice President - CISO

Shivalik Small Finance Bank
07.2024 - Current

AVP - Security Operations

SBI CARDS
01.2023 - 07.2024

Senior Manager

NCDEX,
06.2022 - 01.2023

Manager

NSDL eGovernance
08.2019 - 06.2022

Senior Consultant

Sequretek IT Solution
11.2015 - 08.2019

Swash Convergence Ltd
10.2015 - 10.2015

Klonsys LLP
11.2014 - 07.2015

Neo Source Technology
01.2012 - 01.2014

GRADUATE (ENGR) -

Trident Academy of Technology

High School Diploma -

Siva Junior College

10th -

DAV Public School
Satyajeet Bahal