Summary
Overview
Work History
Education
Skills
Websites
Interpersonal skills
Certification
Timeline
Generic
Shruti Ashrit

Shruti Ashrit

Bangalore

Summary

Certified ISO 27001:2022 Lead Auditor and CISO with overall 5+ years in Information Security and furthermore, as a Manual Test Engineer in the automotive domain with a deep understanding of SDLC & STLC. My skills include designing, implementing, and managing ISMS frameworks, conducting risk assessments, leading audits, and mentoring teams. Proficient in governance, compliance, functional testing, and embedded system validation with strong project delivery experience.

Overview

1
1
Certification

Work History

Chief Information Security Officer (CISO)

06.2025
  • Appointed as CISO in June 2025 to lead Information Security strategy aligned with ISO/IEC 27001:2022.
  • Ensure effective ISMS implementation, continual improvement, and compliance.
  • Lead security team, coordinate responses to incidents, and act as liaison with auditors and regulators.
  • Organize training programs to strengthen staff’s security awareness.

Information Security Professional

Shloki
  • Designed and implemented security controls and risk mitigation strategies.
  • Conducted internal audits to ensure compliance with ISO 27001:2022.
  • Monitored network security and identified vulnerabilities in real-time systems.
  • Performed risk assessments and developed ISMS policies.
  • Proficient in PCI DSS v4.0 standard requirements.
  • Collaborated with cross-functional teams to successfully implement secure system architectures based on best practices.
  • Developed incident response plans to address potential security breaches effectively.
  • Evaluated emerging security technologies, recommending solutions that aligned with the organization''s objectives and risk appetite.

Test Engineer – Automotive Domain

QSG Technologies
  • 3+ years of experience testing Windows-based applications for embedded automotive systems.
  • Executed test cases, created detailed test plans, and identified/managed defects.
  • Debugged code and collaborated with development teams to resolve issues.
  • Managed teams for software testing and release activities.
  • Proficient in agile methodology and using JIRA for tracking and managing software defects, handled end-to-end testing delivery from requirements phase to closure till sign off with the stakeholders.
  • Identified and documented defects, facilitating effective communication with development teams for resolution.
  • Analyzed test results and provided actionable insights to optimize product quality and performance.

Education

Bachelor of Engineering -

Visvesvaraya Technological University

Skills

  • Governance, Risk, and Compliance (GRC)
  • ISO 27001:2022 Implementation & Auditing
  • PCI DSS v40 Requirements
  • Internal Audit & Risk Assessment
  • Data Security & IT General Controls (ITGC)
  • Information Security Policy & Awareness
  • Embedded Systems Testing (Manual)
  • Programming: C, C, Basic C#
  • Protocols: UART, SPI, I2C, CAN, CAN-TP
  • Tools: BUSMASTER, CANalyzer, Visual Studio, CAN dB, Renesas Tools, JIRA, Bugzilla, IBM RTC, GitHub
  • Cybersecurity strategy, Vulnerability assessment, Threat intelligence

Interpersonal skills

• Strong Communication
• Collaboration & Team Leadership
• Time Management
• Adaptability
• Content Creation

Certification

  • ISO 27001:2022 Lead Auditor – Intertek India Pvt Ltd
  • ISO 27001:2022 Certified Information Security Professional (2023)
  • PCI DSS v4.0 Training – CyberFrat

Timeline

Chief Information Security Officer (CISO)

06.2025

Information Security Professional

Shloki

Test Engineer – Automotive Domain

QSG Technologies

Bachelor of Engineering -

Visvesvaraya Technological University
Shruti Ashrit