Arun Venkata Rao Desai, Independent Consultant

Arun Venkata Rao Desai

Independent Consultant

Independent Consultant

البلد
الهند - بنغالورو
التعليم
بكالوريوس, Electronics and Communication
الخبرات
10 years, 0 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :10 years, 0 أشهر

Independent Consultant في Independent Consultant
  • المملكة العربية السعودية - الدمام
  • أشغل هذه الوظيفة منذ ديسمبر 2016

-SAMA CSF implementation for Leading bank, Riyadh, KSA
-Conducting SAMA Cybersecurity framework domains GAP assessment for all domains
- Developing KPI’s /KRI’s
- Developing and documenting cybersecurity architecture
- Development of security control standards for security solutions
- Conducting Security tool assessment
- Follow-ups on audit findings & action plans for closure for SAMA’s reporting
- Reviewing compliance for bank’s polices, regulatory-SAMA, SWIFT, SARIE, standards-ISO27001, PCI-DSS & evidence collection.
- Reviewing and updating of cybersecurity policies and procedures
- Progress reporting to the Steering committee on Governance, Risk and Compliance
-Re-validation of cybersecurity assessment based on SAMA Cybersecurity Framework, for regulatory body at KSA, Riyadh & Bahrain
-Cybersecurity assessment and reporting for TEMENOS core banking application at a large bank in Dubai, UAE
-Developing and documentation of cybersecurity KPI’s /KRI’s, exception handling & escalation process management for large bank in Riyadh
-Development of cybersecurity architecture based on SABSA concepts mapped to ISO 27001 standard
-BCM/DR consulting for Data center B to B and B to C applications,
-Conduct BCM awareness sessions to internal stakeholders
- BCM Framework development and update DR Framework development and update BCM/DR assessments. Testing contingency plans,
-Timely reporting of BCM/DR key Performance Indicators

Director and founding Member في ConSolServ Technologies
  • الهند - بنغالورو
  • يوليو 2015 إلى ديسمبر 2016

ICT and Information & Cybersecurity Security, compliance Consultant
My Responsibilities include:
• Being involved in Business development, sales and support.
• Identifying potential clients and building and maintaining contacts.
• To Provide advisory services with respect to:
• ICT network project planning, designing and installation of information technology systems for the clients
• Usage of information technology in order to meet client business objectives or overcome problems.
• To improve the structure and efficiency of IT systems in various client organizations.
• To provide strategic guidance to clients with regard to technology evaluations, IT infrastructure and enabling major business processes through enhancements to IT.
• To provide guidance during selection and procurement as well as providing highly expert technical assistance in:
• Defining software, hardware and network requirements in;
• Analyzing IT requirements within companies and giving independent and objective advice on the use of IT
• Developing agreed solutions and implementing new systems
• Assist clients with testing and ITIL processes
• Cyber security, threat and vulnerability assessment and Penetration testing.
• Writing reports and documentation.
• Training client users and consulting staff.
• Compiling and presenting information.
• Implementation of ISO 27001 information Security Management System for client organization.
• Drive and conduct ISO 27001 audit program, ISO 9001 QMS audit program, SSAE 16 /ISAE3402 compliance audits
• Project management of ICT projects like data center, Network operation center(NOC), security operation center(SOC), Wide Area and Local Area networks(WAN/LAN)
• Conducting risk management assessment and analysis in accordance to ISO 31000/ISO 27001
• Provide guidance to HIPAA and conducting audits

General Manager في Quest
  • الهند - بنغالورو
  • مايو 2014 إلى يونيو 2015

• To strengthen IT governance and compliance in the organization globally
• Chair Steering committees and Governance meeting for customer development centers
• Develop compliance framework using standard GRC tool
• Tracking security and compliance metrics of various departments contributing to customer’s Master Service Agreement compliance
• Drive Internal audit program and track remediation plans for closure of findings

الخلفية التعليمية

بكالوريوس, Electronics and Communication
  • في Sri Taralabalu Jagadguru Institute of Technology
  • يناير 1993

Specialties & Skills

IT Infrastructure
ISO 27001
IT Security
Data Center Architecture
Project Management
Vendor Management
Telecom
Networking
IT security audit Management
IT operations
Cybersecurity
information security audits
IT Governance and Compliance
Information security & IT Security Audits

اللغات

الانجليزية
متمرّس

التدريب و الشهادات

CSA-STAR (الشهادة)
تاريخ الدورة:
November 2016
صالحة لغاية:
October 2019
PMP (تدريب)
معهد التدريب:
QSIT
Six Sigma Green Belt (الشهادة)
تاريخ الدورة:
December 2002
ACRC (تدريب)
معهد التدريب:
Data craft
Unix and C programing (تدريب)
معهد التدريب:
Nityanjan Institute of computer education
ICRC (تدريب)
معهد التدريب:
Data craft
ISO 9001:2015 Lead auditor (تدريب)
معهد التدريب:
BSI
تاريخ الدورة:
November 2015
المدة:
40 ساعة
LAN Engineering (تدريب)
معهد التدريب:
CMS Institute
Certified Ethical Hacker v9 (الشهادة)
تاريخ الدورة:
December 2015
صالحة لغاية:
December 2018
ISO 27001 Lead auditor (الشهادة)
تاريخ الدورة:
February 2014

الهوايات

  • Cricket playing
    Represented class A division matches