Back to Developers
Anusha Dasari

Anusha Dasari

Information Security and GRC professional

Chennai, India 2+ yrs exp 83 · Excellent

About

Information Security and GRC professional with 2.6 years of experience in ITGC, ISO 27001, SOC 2, and risk assessment. Hands-on experience in control testing, audit support, and risk remediation tracking. Strong exposure to regulatory compliance, stakeholder coordination, and security framework implementation. Currently building expertise In Third-Party Risk Management (TPRM), including vendor risk assessments, due diligence, and continuous monitoring.

Skills & Expertise (14)

NIST Cybersecurity Framework Intermediate
7.2/10
2
Years Exp
IT General Controls Intermediate
7.0/10
2
Years Exp
Risk Assessment Intermediate
6.8/10
2
Years Exp
Access Control Intermediate
6.5/10
2
Years Exp
Incident Response patch management Incident Management Change Management Business Continuity Third-Party Risk Management COBIT OneTrust Qualys Network Security

Work Experience

GRC Analyst

Kanoo Elite

Aug 2025 - Nov 2025

Conducted comprehensive PDPL compliance assessments to ensure organizational adherence to data protection regulations. Supported Aramco CCC audit documentation by preparing and validating required evidence. Performed compliance assessments considering third-party dependencies and data handling risks. Collaborated with client stakeholders to address security gaps involving vendors and external service providers. Supported due diligence activities by validating documentation and compliance evidence from third parties. Tracked remediation actions and ensured closure of identified risks across business and vendor environments.

GRC & Compliance Analyst

DXC Technology Pvt. Ltd.

Jan 2023 - May 2024

Worked as part of the core compliance team involved in implementing and maturing the organization's Information Security Management System (ISMS) in line with ISO 27001:2022, migrating successfully from the 2013 version. Participated in internal audits, risk assessments, and gap analysis against ISO 27001:2022, ensuring alignment with Annex A controls. Applied NIST Cybersecurity Framework (CSF) for control mapping, risk treatment planning, and enhancing security posture across cloud and on-prem environments. Executed detailed ITGC testing across key business applications and infrastructure, ensuring coverage for SOC 2 and SOX audits. Collected, validated, and tracked audit evidence related to change management, logical access, backup management, and system operations. Supported development and review of policies and procedures, including Information Security Policy, Access Control Policy, and Incident Management. Collaborated with control owners, infrastructure, and application teams to track compliance metrics and remediate identified control deficiencies. Assisted in developing control dashboards and audit response trackers for both internal and external audit cycles.

GRC Intern

DXC Technology

Oct 2022 - Dec 2022

Underwent practical training in IT audit processes, supporting control documentation and compliance tracking under supervision. Supported the creation and refinement of control narratives and processed documentation aligned with COBIT principles. Assisted in internal audit readiness, performing test scripts, verifying controls, and compiling evidence for audit folders. Learned about audit lifecycle activities such as planning, fieldwork, testing, and reporting. Supported staff members in their daily tasks, reducing workload burden and allowing for increased focus on higher-priority assignments.

IS-GRC Intern

Wipro Technologies

Mar 2022 - Jul 2022

Supported internal audit activities focused on ITGC, ISMS, and SOC 2 readiness. Received focused training in Information Security Governance, Risk, and Compliance(IS-GRC), SOX, and SOC 2 control requirements. Participated in internal workshops simulating ITGC audits and risk-based prioritization of controls. Gained exposure to control frameworks including ISO 27001, NIST, and COBIT, developing an understanding of audit lifecycle and compliance maturity models. Involved in simulated risk analysis and control mapping exercises.

Education

Bachelor of Engineering (B.E): Electrical and Electronics Engineering - Kamala Institute of Technology and Science

- 2022 · Afghanistan

Intermediate (MPC) - Trinity Junior College

- 2018 · Afghanistan

SSC - Montessori English Medium High School

- 2016 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 19/20
🎓 Education 10/10
⏱️ Experience 9/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 83/100

Profile Overview

Member sinceMar 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation