An enthusiastic learner with a relentless pursuit of taking actions required to achieve organization's vision, perennially intrigued by new challenges as it gives opportunity to pose creative solutions to complex issues.
Overview
6
6
years of professional experience
Work History
Vice President,
Bank of New York
Pune
09.2024 - Current
Evaluate the design of controls to identify control gaps, review, and remediate these gaps, and track actions to resolution.
Perform control testing for areas pertaining to Investment and Wealth management, and determine effectiveness in order to effectively manage risk across all areas.
Identify Engineering stakeholders and coordinate the timely and accurate delivery of required information and supporting evidence, and execution of remediations.
Support and execute the Engineering control management strategy in alignment with the firm's policies and risk appetite, and regulatory requirements.
Review reports from the functional area to assess progress and support continuous improvement towards organizational goals.
Oversee corrective action plans to remedy structural, organizational, and technological issues.
Foster collaboration and development of new practices by business leaders.
Identify areas where additional controls could be implemented in order to strengthen security measures.
Senior Associate,
Bank of New York
Pune
01.2023 - 08.2024
Directly reporting to the Senior Director, in this role, I was responsible for providing a 2nd line of defence perspective on the current state of technology and cyber security risk to the Executive Committee.
Performed risk and control-based inter-affiliate assessments, mainly based on Information Security, to manage in-business risks, and also provided insights to make tactical improvements for ongoing enhancements to the process.
Delivering oversight and challenge of Technology High Level Assessments, Key Risk Indicators, Corporate Risk Appetite, Control Issues, and Key Technology Risk Reduction Initiatives.
Ensured that technology, cyber/information security, resiliency, data, and technology third-party risks are clearly understood by the first line of defense, transparently reported, and managed within the defined risk appetite and risk management framework.
Advised senior executives on approaches for resolving complex issues impacting operations.
Developed and implemented strategic plans to achieve company objectives.
Driven an initiative pan India to empower and connect a diverse network of young professionals across the organization, fostering collaboration amongst them to become Future Leaders.
Consultant - Senior,
EY
Noida
12.2021 - 12.2022
Formulate and implement a risk management framework, identify and mitigate risk, provide advisory and insight on risk management.
Lead assessments, monitored, and reported on technology risks inherent to business activities, including cyber and technology risk concepts.
Risk and control assessments, and identifying impediments in the achievement of risk objectives of the organization.
Risk-based submission for clients in various industries, such as financial, payment card industry, and telecom industry.
Provided solutions to major global clients to some of the most pressing business challenges and process inefficiencies in third-party risk domain.
Information security risk professional with industry experience in conducting audits and assessments based on various regulatory and compliance requirements (ISO 27001, PCI DSS, GDPR, etc.) In the operational risk domain.
Establishing a third-party/operational risk advisory practice and designing next-generation risk advisory solutions in the operational risk and third-party risk domain.
Senior Systems Engineer
Infosys Ltd.
Gurugram
06.2018 - 12.2021
Worked for India's well-known tax project website by working in cross-functional teams to meet the deadlines and designing the framework for upgrading security devices.
E-health checkup and report generation for all devices, expertise in Incident, Problem, and Change Management.
Vendor coordination for performing information security-based risk assessments and commissioning of new project sites.
Escalation handling and troubleshooting security issues in the system with vendor coordination.
Education
B.tech - ECE
Jaypee University of Information Technology
Skills
Client Interaction/Services
Risk and Compliance
Third Party Risk Management
CyberSecurity
Managing Risk Assessment Lifecycle
Collaboration
Vendor Coordination
Team Management
Incident and Change Management
Practical knowledge of various tools(ServiceNow, UIM, SDM, JIRA)