Summary
Overview
Work History
Education
Skills
Certification
Interests
Timeline
Generic

Shivani Koul

Senior Consultant
Gurugram

Summary

Objective: To work in an organization where I can use my skills to achieve the organization’s objectives and get conductive environment to learn and grow

Overview

9
9
years of professional experience
7
7
years of post-secondary education
5
5
Certifications

Work History

Senior Consultant

Ernst & Young India LLP
6 2022 - Current
  • Led Information Security Management System (ISMS) implementation projects for two of India's largest pharmaceutical companies, ensuring compliance with ISO 27001:2022 standard, HIPAA, NIST framework, and industry best practices.
  • Conducted Cyber Program Maturity Assessment for a subsidiary of a prominent CPaaS provider in India, defining policies, procedures, and year-wise cybersecurity initiatives, significantly enhancing overall cybersecurity posture.
  • Authored a Thought Leadership Whitepaper on "Elevating CPaaS Industry with AI" for a client, contributing to industry discourse and innovation.
  • Managed projects to improve cybersecurity posture for one of India's largest healthcare organizations.
  • Conducted risk assessments for over 60 enterprise and cloud applications and Vendor Risk Assessments for a SIM vendor at a leading telecom operator in Saudi Arabia.
  • Designed the operating model for the cybersecurity team of a client, including hiring key roles within their CISO team.
  • Conducted Vendor Risk Assessment and Cyber Program Maturity Assessment for a manufacturing client in India, enhancing their cybersecurity resilience.
  • Developed case studies and approach notes for leading clients in IT, Telecom, Pharmaceutical, and Manufacturing sectors in India and UAE.
  • Delivered Training and Awareness sessions on Information Security for clients and their vendors, fostering a culture of security awareness and compliance.

Consultant

Grant Thornton Bharat LLP (Grant Thornton India LLP)
03.2019 - 05.2022
  • Circular based Regulatory Systems Audit and Cybersecurity Assessment for India's largest Stock Exchange and for their international trading entity
  • Circular based Regulatory Application Audit for India’s largest Stock Exchange and one of India’s listed Independent Exchange
  • Performed ITGC audit for various multinational organizations
  • ISMS internal audit for one of the leading banks and leading insurance company in India
  • Performed ISMS implementation for one of the largest E-commerce companies in India
  • Development of policies and procedures as a part of ISO 27001:2013 framework, and conducting ISMS based risk assessment and risk treatments
  • Data Localisation Gap Assessment for an International bank
  • IT Service Management based assessment for one of India’s largest Stock Exchange

Analyst

HCL Technologies Ltd
11.2015 - 05.2016
  • Understanding of the scope of work of resolvers and track or follow up till closure to enable adherence of quality standards
  • Execute the incident management process tasks in order to resolve the tickets within SL
  • Follow the Escalation Matrix to ensure timely closure of tickets
  • Support Incident management reporting (KPIs and SLAs)
  • Performing trend analysis on top Incidents/SR.

Analyst Trainee

JK Technosoft Ltd, HCL Technologies Ltd
03.2015 - 11.2015
  • Understanding the Incident management resolution process
  • Follow the Escalation Matrix to ensure timely closure of tickets
  • Tracking KPIs of Incident management team
  • Performing trend analysis on top Incidents/SR
  • Complete ownership of Incident Management process

Education

MBA - Systems And Finance

Symbiosis International (Deemed University)
Pune
08.2017 - 04.2019

B.Tech - IT

Uttarakhand Technical University
Uttarakhand
08.2010 - 05.2014

XII -

Central Board of Secondary Education
Jammu
04.2009 - 03.2010

X SSC -

Central Board of Secondary Education
Jammu
04.2006 - 05.2007

Skills

ISO27001 Implementation

NIST SP 800-30, ITIL v3, SOC 2

ISO31000

Cyber Program Maturity Assessment

Regulatory compliances (SEBI, RBI, NCA, SAMA, CITC)

IT General Controls

Vendor Risk Management

Thought leadership whitepapers

Certification

Cybersecurity Bronze (EY)

Interests

Travelling and exploring various cultures

Cooking different cuisines

Singing

Timeline

ISO 27701:2019 and GDPR LI

07-2024

ISO 22301:2019 LI

06-2024

ISO 27001:2022 LA

01-2024

Cybersecurity Bronze (EY)

06-2023

ISO 27001:2013 LI

06-2019

Consultant

Grant Thornton Bharat LLP (Grant Thornton India LLP)
03.2019 - 05.2022

MBA - Systems And Finance

Symbiosis International (Deemed University)
08.2017 - 04.2019

Analyst

HCL Technologies Ltd
11.2015 - 05.2016

Analyst Trainee

JK Technosoft Ltd, HCL Technologies Ltd
03.2015 - 11.2015

B.Tech - IT

Uttarakhand Technical University
08.2010 - 05.2014

XII -

Central Board of Secondary Education
04.2009 - 03.2010

X SSC -

Central Board of Secondary Education
04.2006 - 05.2007

Senior Consultant

Ernst & Young India LLP
6 2022 - Current
Shivani KoulSenior Consultant