Summary
Overview
Work History
Education
Skills
Certification
Websites
Timeline
Generic
Vamsikrishna Gundu

Vamsikrishna Gundu

Hyderabad

Summary

As a senior analyst with nearly 1.5 years of experience I bring extensive expertise in leading ISO 27001 implementations, focusing on policy development, risk management, and internal audits. I have proven capabilities in NIST CSF, NIST SP 800-53, CMMC, and CPA projects, adept in client consultation, current state assessments, risk matrix reporting, and improvements roadmap creation. Skilled in collaborating on FedRAMP-aligned cloud security assessments, I am committed to driving organizational excellence and enhancing security resilience.

Overview

1
1
year of professional experience
1
1
Certification

Work History

Senior Analyst

EY LLP
Hyderabad
05.2023 - Current
  • Led ISO 27001:2013/2022 end-to-end implementations for various clients, encompassing policies and procedures creation, risk management, and conducted internal audit to validate the effectiveness of controls.
  • Executed comprehensive NIST CSF, NIST SP 800-53, CMMC, and CPA (Cybersecurity Program Assessment) projects, involving:
  • Conducting detailed client discussions to understand requirements and objectives.
  • Performing thorough gap assessments to pinpoint areas for improvement.
  • Developing risk matrix reports to prioritize and mitigate identified risks.
  • Delivering final current state assessment reports to provide clear insights into the security posture.
  • Collaborated with a team for cloud security assessments in accordance with the FedRAMP framework, ensuring compliance and security in cloud environments.

Education

Bachelor of Technology - Electrical, Electronics and Communications Engineering

Aditya College of Engineering And Technology
Surampalem
06-2022

Skills

  • ISO27001:2022
  • NIST CSF
  • NISTSP 800-53
  • Cloud Security (AWS, Azure)
  • Basic GDPR principles
  • HITRUST

Certification

  • AWS Certified Cloud Practitioner
  • Azure fundamentals (AZ-900) certified from Microsoft.
  • Azure security technology (AZ-500) certified from Microsoft.
  • Security, Compliance, and Identity (SC-900) certified from Microsoft.
  • ISC2 CC (Certified Cybersecurity)

Timeline

Senior Analyst

EY LLP
05.2023 - Current

Bachelor of Technology - Electrical, Electronics and Communications Engineering

Aditya College of Engineering And Technology
Vamsikrishna Gundu