To lead information security management systems in an efficient and effective manner.
Information Security Consultant with proven ability to safeguard data and ensure compliance. Adept at identifying vulnerabilities, implementing robust security protocols, and enhancing system integrity. Strong team collaborator, adaptable, and focused on achieving results. Known for analytical thinking, problem-solving skills, and effective communication.
Overview
2026
2026
years of professional experience
8
8
Certifications
1
1
Language
Work History
Head - Information Security
TATA Consultancy Services
11.2014 - Current
Manages the Information Security for various business groups with in TCS including Telecom, Media and InfoService business lines.
Key responsibilities includes
Manage the security requirements of various projects under the business unit.
Ensure compliances against all security requirements in the operations of all business relationships under the unit
Compliance to Information security policies of both TCS and Customer
Ensure the security operations are in compliance to the industry standards and regulations.
Oversee the successful conduct of internal and external audits
Security Risk assessments
Security incident monitoring and handling
Security awareness creation
Monitoring the customer satisfaction on the security parameters
Ensure the availability and effectiveness of all Physical and Logical Security controls
Coordinate with stake holders with in and out side TCS for ensuring the security control compliances and effectiveness.
Developed and implemented comprehensive security policies, enhancing organizational compliance and mitigating data breach risks effectively.
Led incident response efforts during security breaches, ensuring rapid resolution and minimizing operational disruptions across departments.
Conducted regular security audits and vulnerability assessments, identifying weaknesses and strengthening overall system defenses significantly.
Collaborated with cross-functional teams to integrate security best practices into project lifecycles, improving risk management and project outcomes.
Circle Manager, Network Security
BHARTHI AIRTEL LTD.
08.2010 - 11.2014
Lead a team to implement Information Security controls on the core telco nodes, the OSS Network and the VAS servers of Kerala
Conduct qualitative risk assessment of infrastructure assets , business processes and treat risks.
Conduct tool-based Vulnerability assessments / basic hygiene audit on the Telco, network and VAS nodes periodically and ensure closure of holes, if there are any
Maintain the Lawful Interception infrastructure, which is a critical regulatory requirement
Drive and ensure the implementation of Business continuity and Disaster recovery program of Airtel in the circle. Does internal audits to ensure BS25999 audit readiness.
As Quality process champion, assist with TL 9000 implementation, Process audits.
Drive the ISO 27001 implementation and Certification initiative in the circle.
Sustain and improve Information Security status of the Circle
Conduct periodic Security Awareness training programs for team members
Interface with strategic partners, third parties and vendors, to ensure smooth conduct of their respective services.
Lead a team for maintain the Technical LAN / WAN of Telco network which supports the Operations and Maintenance of telco nodes.
Review and approve the security changes in the network (Firewall rules)
Developed and implemented robust security protocols, enhancing network integrity and reducing vulnerabilities across systems.
Led a team in conducting comprehensive security audits, identifying weaknesses, and fortifying defenses against potential threats.
Coordinated incident response strategies, minimizing downtime and ensuring swift recovery from security breaches.
Collaborated with cross-functional teams to design and roll out security awareness training, elevating organizational compliance and risk management.
Senior Security Analyst
DEUTSCHE BANK
01.2009 - Current
Working at the Security Operation Center within the Bank.
Responsible for providing Security Monitoring and analysis of Information security infrastructure within the Bank.
The responsibilities include:
Monitoring and Analyzing security events using the ArcSight (HIDS) infrastructure to ensure Security, availability and continuous uptime of the global Technology Infrastructure of the Bank.
Expanding monitoring coverage of technologies used in the Bank and/or vendor environments by integrating them within the ArcSight infrastructure.
Implementing updates and upgrades to the intrusion detection infrastructure.
Managing and maintaining extranet intrusion detection services for the Bank.
Working with global Security Team to provide 24
7 supports for running effective security operations.
Troubleshooting technical issues with performance, and overall functioning of the monitoring infrastructure.
Liaising with the intrusion detection technology provider for problem resolution, enhancement, product support etc.
Firewall log monitoring and analysis.
Rule configuration and monitoring of various databases like Oracle, MSSQL, Sybase and Application security.
Responsibility towards the Host and Extranet Intrusion Detection domain which are functionally aligned to the Global Prevention and Detection Services team.
Part of team provides the following services to the global Deutsche Bank franchise.
Host and Network Intrusion Detection
Enterprise Security State Monitoring
Global Penetration Testing of Internet and Intranet servers
Global War Dialing
Firewall Rule Change Assessment and Approvals Management (Inter-Network Connectivity Requests)
Developed and implemented security policies that enhanced risk management strategies across critical banking operations.
Conducted thorough security assessments, identifying vulnerabilities and recommending solutions to safeguard sensitive financial data.
Led cross-functional teams in the execution of incident response plans, effectively minimizing impact on business continuity.
Managed security monitoring systems, utilizing advanced analytics to detect and mitigate potential threats in real-time.
Manager(IT) – Security Administrator
Dena Bank (Govt. of India)
08.2004 - 12.2008
Activities: Ensuring that the Policies and standards are in place.
Implementing Security Configuration & Maintenance of the IT Infrastructure and develop Minimum Baseline standards for the IT components.
Develop New Technology Solutions for the bank and perform assessment for security patches and upgrades of existing applications and operating systems within the Bank
Perform Risk Assessment which includes identifying asset threats, vulnerabilities, and compensating controls, developing a risk profile for the assessed environment, and develop risk mitigation plan for the environment.
Develop access rights policies for different users and groups accessing various resources such as software applications, Operating Systems and Network equipments through out the Bank. To develop Security Awareness which involves developing, maintaining and deploying the Bank’s Security Awareness Program.
System Monitoring involving monitoring of networks and systems for security related events and incidents. This includes monitoring, management, and maintenance of the Intrusion Detection & Prevention System and reviewing log files of security infrastructure systems for any unauthorized or unrecognized activity.
Conduct security review on all of the bank’s systems to ensure compliance with the Minimum Baseline Standards and other policies and standards as related to operating systems, network devices, and applications
ISO 27001 implementation of Data Centre.
Associated with Risk Management Department of Dena Bank.
Involved in Framing of Information Security policy and Information Technology Policy for the Bank. Also involved in the reorganization of Information System Audit Policy of the Bank. Worked in association with E & Y for the above and for developing BCP & DRP for the Bank.
In the earlier assignment: Managed Information System activities of Chennai Region of Dena Bank, which included Information System Auditing of Branches, Checking compliance and adherence to the management policies at regional office and branch offices.
Managed the Chennai section of the Large sized intra network owned by Dena Bank connecting various branches ATMs and other Bank’s networks consisting of High end Routers, switches, Firewalls, leased circuits of various bandwidths from 64k to 4 Mbps, VSATs, ISDN etc. Managing and monitoring various Servers running Windows 2000, Unix and Novell Netware. Monitoring Information System Auditing and security. Monitoring a number of IT products used for the functioning of day-to-day banking.
Implemented security protocols that reduced data breach incidents, ensuring compliance with national cybersecurity standards.
Managed risk assessments and vulnerability scans, enhancing the organization's security posture and safeguarding sensitive information.
Led a team in deploying multi-factor authentication systems, significantly improving user access security and reducing unauthorized access attempts.
Coordinated incident response efforts, streamlining communication processes and minimizing downtime during security events.
Assistant Administrative Officer - IT
National Insurance Co. (Govt. of India)
Activities : Actively participated in the implementation of a network connecting 54 branches using MLLN circuits configured for data and voice(VoIP) communication. Managed this network and monitored for its performance during the working priod at NIC. Managed and monitored implementation of Windows 2000 Server network and Lotus Domino Server at regional office level. Involved in the procurement, Insurance and House keeping of IT Assets under the Region. Attended one month training on General Insurance at one of India’s premier Insurance institute NIA during this period at NIC.
Provided comprehensive administrative support for IT operations, ensuring efficient workflow and timely resolution of technical issues.
Coordinated documentation and data management processes, enhancing accuracy and accessibility of critical information.
Assisted in the implementation of IT projects, contributing to improved system performance and user satisfaction.
Facilitated communication between departments, fostering collaboration and streamlining project workflows within IT initiatives.
Project Engineer
ER&DCI, STDC, COCHIN
Activities : Involved in training activities of the company. Provided training for C++, VC++, Java, Networking.
Administration of the LAB and Network of Software training and Development Section of the company. Also acted as a module lead of a Software Project Developed for the Employee welfare Dept. of Govt. of Kerala.
Engineer
TAMM Solutions Pvt. Ltd.
Activities : Providing Customer support for PCs, Hardware and Software.
Education
MCA - Computer Application
MS University
Tamil Nadu
01.1999
B.Sc - Physics
Kerala University
Kerala
01.1996
Skills
ISO 27001, ISO 22301
Certification
ISO 27001 LA - Information Security - British Standards Institute - 2023 (2009)
L2 Desktop Support Engineer at Tata Consultancy Services – Toyota Financial Services BankL2 Desktop Support Engineer at Tata Consultancy Services – Toyota Financial Services Bank
Assistant Delivery Manager at Tata Consultancy Services, Global Shared ServicesAssistant Delivery Manager at Tata Consultancy Services, Global Shared Services