About
AI enabled Information Security and GRC professional with over 5 years of experience supporting Industrial level cybersecurity compliance programs. Skilled in audit coordination, IT general controls assessment, evidence management, policy updates and Access Management. ISO/IEC 27001 Lead Auditor certified with hands-on experience in IAM, vulnerability management, patching, logging and network security controls. Experienced working with cross-functional teams in consulting and client-facing environments. Recently completed the AIMS, ISO/IEC 42001:2023 Lead Auditor certification and gained knowledge in the domain of AI governance and Management system.
Skills & Expertise (13)
Work Experience
Security Consultant
Arval BNP Paribus
Present - Present
Managed 28 production security controls across IAM, vulnerability management, patching, logging and network security strengthening overall control coverage across all domains. Led annual and semi-annual audit control campaigns with end-to-end evidence management and coordination. Analysed audit outcomes, identified control gaps, and supported remediation planning through clear and actionable reporting. Reviewed and updated security policies and control documentation to reflect audit findings and business changes. Coordinated with control owners and application teams to ensure timely evidence submission and proper control implementation. Supported continuous compliance activities by tracking control status and maintaining audit-ready documentation.
Associate Security Consultant
Capgemini Technology Services India Ltd.
Apr 2021 - Present
Managed 2270 vulnerability by coordinating with the owner to find the root cause, action plan and remediation plan for Cyber program. Create the action plan analysis template to find out the trend the monthly vulnerability. Supported CMMC Governance team by monitoring daily, weekly and monthly non-IDM provisioning alerts and identify the defects one and report that. Perform Lookback analysis for the defective provisions for any non-compliance transaction and update the report as Sox evidence. Manage monitoring tracker for two applications by updating the SQL query results.
Education
B. Tech (CSE) - Hooghly Engineering and Technology College
- · Afghanistan
12th (CS) - Uttarpara Govt. High School
- · Afghanistan