Summary
Overview
Work History
Education
Skills
Personal Information
Certification
Languages
Accomplishments
Timeline
Generic

Subham Kumar

Pune

Summary

Dynamic Security Delivery Analyst with a proven track record at Accenture, excelling in Governance, Risk & Compliance (GRC) and ISO 27001 frameworks. Recognized for outstanding delivery, I effectively communicate findings and foster collaboration, driving compliance and risk management initiatives. Passionate about enhancing data protection and security awareness across teams.

Overview

3
3
years of professional experience
1
1
Certification

Work History

Security Delivery Analyst – GRC

Accenture
Pune
10.2022 - Current
  • Executed enterprise IT and cyber risk assessments in accordance with ISO 27001, NIST RMF, and Privacy by Design frameworks.
  • Evaluated applications in Data Security, IAM, Database, and Hosting Infrastructure to identify compliance risks.
  • Conducted control testing against ISO 27001 Annex A and NIST security controls for validation purposes.
  • Created and managed risk registers, treatment plans, and remediation tracking for audits.
  • Assessed IAM controls for access provisioning, privileged access management, and segregation of duties.
  • Reviewed compliance with GDPR and adherence to organizational ISMS policies.
  • Analyzed data trends to support project decision-making processes.
  • Developed reports to communicate findings and recommendations effectively.
  • Delivered security awareness training to both business and technical teams.
  • Achieved Accenture ACE Award for outstanding security delivery.

Education

Bachelor of Technology - Electrical & Electronics Engineering

Lakshmi Narain College of Technology
Bhopal
01.2022

Skills

  • Governance, Risk & Compliance (GRC)
  • ISO/IEC 27001:2022 ISMS
  • ISO 31000 Risk Management
  • NIST (800-30 RMF, 800-218 )
  • Privacy by Design & Data Protection (GDPR)
  • Segregation of Duties (SoD)
  • Cloud & Hosting Security
  • Risk Register & Risk Treatment Plans
  • Internal Audit Support
  • Control Testing & Evidence Collection
  • Compliance Reporting & Stakeholder Communication

Personal Information

Title: Cybersecurity & GRC Analyst (ISO 27001 | ISO 31000 | NIST | Risk Management)

Certification

  • ISO/IEC 27001:2013 ISMS Lead Auditor, BSI
  • ISO 31000:2018 Risk Management, Intertek
  • AWS Certified Cloud Practitioner

Languages

English
Advanced (C1)
C1
Hindi
Native
Native

Accomplishments

Accenture Celebrates Excellence (ACE)

Timeline

Security Delivery Analyst – GRC

Accenture
10.2022 - Current

Bachelor of Technology - Electrical & Electronics Engineering

Lakshmi Narain College of Technology
Subham Kumar