Mahpara  Amil, Information Security Manager

Mahpara Amil

Information Security Manager

Payactiv SDS-IT

البلد
باكستان - روالبندي
التعليم
ماجستير, Master's Program Cyber Security Expert (Cyber
الخبرات
4 years, 2 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :4 years, 2 أشهر

Information Security Manager في Payactiv SDS-IT
  • باكستان - إسلام أباد
  • أشغل هذه الوظيفة منذ نوفمبر 2020

• Develop and implement governance frameworks, including ISO27001, SOC2, and PCI DSS, covering various aspects such as Enterprise Risk Management, Compliance, and Document/Record Management.
• Provide assistance to the Manager & CISO in order to elevate the effectiveness of Governance, risk management, and Compliance Management Systems.
• Continuously monitor, measure, analyze, and enhance the performance of departmental activities and projects related to GRC.
• Assist the sales department in addressing security-related inquiries in RFI/RFPs.
• Address challenges, develop strategic roadmaps, and deliver sustainable solutions to improve GRC processes and systems.
• Monitored, reported, and remediated internal and external issues related to ISMS, implementing corrective action plans.
• Initiate regular reviews and assessments as part of the continuous improvement cycle for all departmental projects and processes.
• Collaborate with relevant entities to improve the efficiency and effectiveness of Governance.
• Participated in change management sessions during sprint deployment.
• Maintain documentation for Business Continuity Plans.
• Oversee the Top Corporate Risks Program, working closely with initiative sponsors and owners to identify, assess, and execute risk-related initiatives effectively.
• Updated risk assessment register annually or with major changes.
• Support information security awareness training efforts within the company.
• Defined, reviewed, and edited information security policies based on compliance standards and conditions.
• Generated and managed internal audit reports, facilitating process improvements in collaboration with stakeholders.
• Possess knowledge about Data Privacy regulations such as GDPR and CCPA.
• Creation of pertinent Key Performance Indicators (KPIs) for Governance, Risk, and Compliance (GRC) and the establishment of reporting protocols.

Data Analyst في Youcan.Tech
  • باكستان - روالبندي
  • أكتوبر 2020 إلى نوفمبر 2020
Junior Dot Net Developer في Tutoria.pk
  • باكستان - إسلام أباد
  • يونيو 2019 إلى ديسمبر 2019

الخلفية التعليمية

ماجستير, Master's Program Cyber Security Expert (Cyber
  • في Simplilearn
  • يوليو 2023
بكالوريوس, Bachelor of Computer Science
  • في National University of Computer and Emerging Sciences
  • يونيو 2019

Specialties & Skills

Policies and Procedures
Risk Assessment
IT Audit
PCI DSS
ISO 27001
IT Security Risk Management
Internal Audit
Policy& Process Development
RFI/RFP
Vendor Due diligence
IT Security Frameworks
ISO27001
Change Managment
MANAGEMENT
Internal Security Controls
PCI DSS
Information security awareness
Project Management
IT Audit
ISO 27001
Information Security Management
IT Risk
SECURITY POLICIES

حسابات مواقع التواصل الاجتماعي

الموقع الشخصي
الموقع الشخصي

لقد تم حذف الرابط بسبب انتهاكه لسياسة الموقع. يرجى التواصل مع قسم الدعم لمزيد من المعلومات.

اللغات

الانجليزية
متوسط

التدريب و الشهادات

ISMS27001:2013 Lead Auditor (تدريب)
معهد التدريب:
International Register of Certificated Auditors
تاريخ الدورة:
January 2022

الهوايات

  • travelling