Submitting more applications increases your chances of landing a job.

Here’s how busy the average job seeker was last month:

Opportunities viewed

Applications submitted

Keep exploring and applying to maximize your chances!

Looking for employers with a proven track record of hiring women?

Click here to explore opportunities now!
We Value Your Feedback

You are invited to participate in a survey designed to help researchers understand how best to match workers to the types of jobs they are searching for

Would You Be Likely to Participate?

If selected, we will contact you via email with further instructions and details about your participation.

You will receive a $7 payout for answering the survey.


User unblocked successfully
Ashish Kumar Mishra, Head - Information Security Operations

Ashish Kumar Mishra

Head - Information Security Operations ·Jubilant FoodWorks India

India

Master's degree, Management and Business Administration

Work experience

Total years of experience: 19 years, 2 months

Head - Information Security Operations

July 2017 - Present

Jubilant FoodWorks India

Delhi, India

July 2017 - Present

Started as Head - Information Security Operations
• Responsible for IT Compliance and Certifications (ISO 27001:2013, PCI DSS, IFC/ITGC, BCP) across Jubilant FoodWorks (India, Srilanka, Nepal and Bangladesh), and entire Security Operations (SOC).

Company industry:
Retail & Wholesale
Job role:
Security

Head - Audit, Risk & Compliance

February 2017 - July 2017

InterGlobe Enterprise Ltd (Indigo airlines)

Delhi, India

February 2017 - July 2017

• Started as Head - Audit, Risk and Compliance and later on given interim responsibility of Information Security Operations
• Responsible for Compliances and Certifications (ISO 27001:2013, PCI DSS, SOC 1 - SSAE 16 Type II, SOX, BCP) across all InterGlobe Enterprise worldwide
group of companies (India, Philippines, Sri Lanka, China and Dubai)
• Responsible for Risk Management, Compliance, Information Security, Internal Audits, Investigations, Training and Awareness,
. Contractual Compliancy from Information Security Perspective
• Responsible for all third party Interactions, RFP Response Reviews, Contracts and Agreements from Information Security
Perspective
• Managing Budget and life cycle of information security policies, standards and procedures.
• Supplying strategic assistance in defining and determining balance between organizational business needs and information security
requirements.

Company industry:
Ground Fleet, Aviation, & Marine Refuelling
Job role:
Management

Senior Manager - Risk Management

November 2015 - February 2017

Societe Generale India

Bengaluru, India

November 2015 - February 2017

Responsible for the governance of risk management and information security for two business units namely ‘International Banking
& Financial Services’ and ‘Global Technology Services’.
• Information security projects within International Banking & Financial Services and GTS businesses of Societe Generale.
• Reported to Risk Head and VPs of both BUs and established monthly governance within India and onshore Risk & Information
Security counterparts.

Company industry:
Banking
Job role:
Management

Information Security Officer (Manager)

May 2014 - October 2015

InterGlobe Technologies

Delhi, India

May 2014 - October 2015

Started as Information Security Officer at IGT and later promoted to lead Audit Risk and Compliancy Practice at InterGlobe group
level.
• Responsible for Operational Risk Management - Risk Scorecard, Non Financial Risk Dashboard, High Level Risk Assessment,
Integrated Risk Assessments, coordination with Internal Audit team, Product and Project Risk Assessments, Key Risk Indicators
• Overseeing security posture for InterGlobe's BPO and IT LOBs across the globe.
. Responsible for Information Risk Management - Improved controls in IT Foundation, IT Resilience, Platform Security, Security Monitoring, User Access, Change Management and Vendor Outsourcing
• Responsible for Corporate Security and Investigations - Documenting and testing Disaster Recovery and Business Continuity Plans, Physical Security, Personnel Security and Fraud Investigations • Governed corporate wide Business Continuity and Disaster Recovery and Risk Management.
• Alignment with TSRM strategic targets, Governance through frameworks i.e. - ISO 27002, ISO 27005, ISO 18028, ISO 27011 and PCI
• Practiced IETF, OWASP, NIST, NSA Security Guidelines, SANS references.
• Strategic assistance in defining and determining balance between organizational business needs and information security requirements. Assisted team to understand information security aspect in presales, RFPs, RFQs and all client questionnaires.

Company industry:
Airlines
Job role:
Management

Divisional Manager (Internal Audit)

January 2007 - January 2014

Innodata India

Delhi, India

January 2007 - January 2014

Reported to Head - Internal Audits and CISO
• Developed and implemented a risk-based IT audit strategy in compliance with ISMS, HIPAA, UK DPA & QMS Policies/Procedures.
• Guided Internal Audit Teams globally to execute internal audits Design & Review using a control framework and associated controls
for several areas focused on Information Security such as Access Control, User and Privilege Management, Identity Management,
Data Loss Prevention, Multifactor Authentication, Encryption and many other Communications and Operations Management
domains.
• Development of baseline infrastructure and application hardening guides based on industry best practice and provide leadership
and expertise related to current security solutions and configurations.
• Assess business process, technology and information technology architecture at logical, system and component levels to
understand the risk posture, apply critical thinking, and determine the security models to ensure security best practices are
implemented.
• Evaluate vendor and internal products for security capabilities and integration into Innodata computing environments ensuring
enabling of corporate business models and responsiveness to evolving trends.
• Perform Internal & External vulnerability assessment, pen testing and prepare reports.
• Interact with both internal and external teams/ auditors, review documentation/ evidences and proactively working in identifying
and mitigating gaps.
• Designing IT Security, Risk Management & Configuration Management Processes using COBIT 5

Company industry:
IT Services
Job role:
Management

Education

Indian Institute of Management Calcutta

February 2014

February 2014

Master's degree, Management and Business Administration

India

Senior Management Program (Executive Mode) - Duration 1 year

Indian Institute of Management Lucknow

February 2013

February 2013

Master's degree, Business Administration

India

Executive Program in Business Management Duration 1 year

Government Polytechnic

July 2001

July 2001

Higher diploma, Computer Applications

India

Post Graduate Diploma in Computer Applications Duration - 2 Years

Kanpur University

July 1999

July 1999

Bachelor's degree, Sciences

India

GPA (percentage): 61%

GPA (percentage): 61%

Physic Mathematics Chemistry

Skills

HIPAA
Expert
HIPAA
Expert
ISO 27001
Expert
ISO 27001
Expert
PCI DSS
Expert
PCI DSS
Expert
Cyber Security
Expert
Cyber Security
Expert
Enterprise Risk Management
Expert
Enterprise Risk Management
Expert
BALANCE
Expert
BALANCE
Expert
BUSINESS PROCESS
Expert
BUSINESS PROCESS
Expert
C
Expert
C
Expert
INFORMATION SECURITY
Expert
INFORMATION SECURITY
Expert
ISO
Expert
ISO
Expert
ORGANIZATIONAL SKILLS
Expert
ORGANIZATIONAL SKILLS
Expert
PCI
Expert
PCI
Expert
POLICY ANALYSIS
Expert
POLICY ANALYSIS
Expert
RISK MANAGEMENT
Expert
RISK MANAGEMENT
Expert
STRATEGIC
Expert
STRATEGIC
Expert

Languages

English
Expert
Hindi
Native Speaker
Urdu
Intermediate
Thai
Beginner
Hebrew
Beginner
Arabic
Beginner

Memberships

ISC2

Professional

December 2010

ISACA

Professional

December 2010

PMI

Professional

December 2010

YHAI

Professional

June 1999

Training and Certifications

Certifications
Microsoft Certified Database Administrator (SQL Server)
Microsoft Certified IT Professional (Windows Server, Exchange Server, SharePoint Server)
Cisco Certified network Associate
Certified Hacking Forensic Investigator
Certified Ethical Hacker
ITIL Foundation - EXIN
ITIL Intermediate - EXIN
ISO 31000 Implementation- BSI
ISO 22301 Lead Auditor- BSI
ISO 27001 Lead Auditor - BSI
CRISC
CISA
CISSP