موهان كومار, Manager - Information Security Office

موهان كومار

Manager - Information Security Office

National Bank of Bahrain

البلد
البحرين - المنامة
التعليم
ماجستير, Information systems
الخبرات
30 years, 5 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :30 years, 5 أشهر

Manager - Information Security Office في National Bank of Bahrain
  • البحرين - المنامة
  • أشغل هذه الوظيفة منذ أغسطس 2009

Manager - Information Security Office
National Bank of Bahrain, Bahrain Jan '09 - Till Date
◆ Acts as a central point of ownership and management for enterprise-wide Information Security in the Bank.
◆ Recommend approach and methods for implementing strategic Information Security objectives, initiatives, and directives.
◆ Device a comprehensive Information Security Program in line with the strategy for Bahrain HO and Overseas BUs.
◆ Risk based approach to assess the information and IT assets in developing a comprehensive mitigation strategy through redesigning the setup and improvising the process.
◆ Prime architect in redesigning the entire banks network, security and other IT infrastructure systems.
◆ Advisory services to IT team for adopting new technology and strategic decisions.
◆ Ensure that adequate information security management aspects are taken into account for strategic projects.
◆ Develop and maintain Information Security policies, standards, procedures and guidelines.
◆ Devised Information Security monitoring and reporting system to ensure monitoring of exceptional activities on high privilege accounts and incidents on all critical systems.
◆ Primary evaluator of Risk and Control Self Assessment (RCSA) for IT infrastructure and IT security operational security areas.
◆ Provide assistance to IT Audit, Fraud investigation team and Business units towards remediation on audit finding and fraud investigations.
◆ Facilitate Internal, External Audit and work for compliance with the management.
◆ Ensuring Security Awareness through fliers and awareness emails for the entire bank.

Manager في Ahlibank (S.A.O.G)
  • عمان - مسقط
  • نوفمبر 2008 إلى يونيو 2009

Manager - Information Security
Ahlibank (S.A.O.G) November 2008 - June 2009
◆ Strategic Information Security plan.
◆ Risk Assessment and Management.
◆ IT Control Compliance.
◆ IT and Information Security process development and maintenance.


◆ Development of Security policy, procedures and standards.
◆ Development of DR and BCP plan and related process.
◆ Implementation of information security projects.
◆ Security Infrastructure Management.
◆ User training and awareness about information security.
◆ Planning and implementation of Information Security policy, procedures and standards.
◆ Security monitoring and reporting.

Manager في Information Security Office
  • عمان - مسقط
  • يوليو 2004 إلى سبتمبر 2008

Manager - Information Security Office
BankMuscat (S.A.O.G) July 2004 - September 2008
◆ Develop, review and revise the Information Security Management System (ISMS)
◆ Enabled bank for ISO 27001 certification.
◆ Develop systematic approach and detail methodology for Information Risk Assessment.
◆ Conduct Risk assessment and derive Risk treatment Plan.
◆ Devise Information security policy, guidelines, standards and procedures.
◆ Guide Security Steering committee and business units on IS and Risk.
◆ Integrate security standard requirements to QA process.
◆ Plan and execute awareness program.
◆ Evaluation and recommendation of new Security products or technologies.
◆ Network Security architecture design and implementation.
◆ Manage projects initiated under Information Security Enhancement Program and networking.
◆ Implementing best practices and other recommendations by Statutory and external auditors.
◆ Co-ordinate ISO 27001 surveillance other statutory audits.

Senior Technical Consultant في Ramco Systems Ltd, India
  • الهند - دلهي
  • سبتمبر 2000 إلى يونيو 2004

Senior Technical Consultant
Ramco Systems Ltd, India September 2000 - June 2004
◆ Develop information security program for the clients.
◆ Develop techniques and procedures for conducting information security risk assessments and compliance audits.
◆ Devise Information security policy, guidelines, standards and procedures in conjunction with the risk assessment results.
◆ Assistance in enforcing information security standards and further audit trials on the compliance level towards BS7799.
◆ Product architecture design and implementation of security solutions.
◆ Technical support to diagnose, analyze, research and resolve complex security administration and operation related problems.
◆ Vulnerability Assessments on network, host and Database.

Facility Management Engg في Nexus Computers
  • الهند
  • نوفمبر 1998 إلى سبتمبر 2000

Facility Management Engg
Nexus Computers, Chennai November 1998 - September 2000
◆ Lead 3-member team for maintaining and administering the network at the client site. Implement new trends and technologies based on client requirements

Customer Support Engineer في Cat Computers
  • الهند
  • ديسمبر 1996 إلى سبتمبر 1998

Customer Support Engineer
Cat Computers December 1996 -September 1998
◆ Design and Implementing Local area Network solutions for clients

Service Engineer في Inscomp Systems and Controls PVT Ltd
  • الهند
  • يوليو 1993 إلى سبتمبر 1996

Service Engineer
Inscomp Systems and Controls PVT Ltd. July 1993 - September 1996
◆ ModiOlivetty sales and support
◆ IBM Compatible PCs Assembling and card level service.
◆ In House Engineer at APTECH Computer Education, Trichy.

الخلفية التعليمية

ماجستير, Information systems
  • في Sikkim Manipal University
  • يوليو 2012

◆ Masters In Business Administration (IS) - (Sikkim Manipal University)

بكالوريوس, Business Administration
  • في Madras University
  • مارس 2007

◆ Bachelor In Business Administration - (Madras University, India)

دبلوم, Electrical & Electronics Engg
  • في M I E T Polytechnic
  • مايو 1992

◆ Diploma In Electrical & Electronics Engg - (M I E T Polytechnic, Tiruchirapalli)

Specialties & Skills

Risk Assessment
Administration
Awareness
BEST PRACTICES
CLIENTS
ENGINEER
INFORMATION SECURITY
RISK ASSESSMENT
SECURITY
SOLUTIONS