Mahpara  Amil, Information Security Manager

Mahpara Amil

Information Security Manager

Payactiv SDS-IT

Lieu
Pakistan - Rawalpindi
Éducation
Master, Master's Program Cyber Security Expert (Cyber
Expérience
4 years, 2 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :4 years, 2 Mois

Information Security Manager à Payactiv SDS-IT
  • Pakistan - Islamabad
  • Je travaille ici depuis novembre 2020

• Develop and implement governance frameworks, including ISO27001, SOC2, and PCI DSS, covering various aspects such as Enterprise Risk Management, Compliance, and Document/Record Management.
• Provide assistance to the Manager & CISO in order to elevate the effectiveness of Governance, risk management, and Compliance Management Systems.
• Continuously monitor, measure, analyze, and enhance the performance of departmental activities and projects related to GRC.
• Assist the sales department in addressing security-related inquiries in RFI/RFPs.
• Address challenges, develop strategic roadmaps, and deliver sustainable solutions to improve GRC processes and systems.
• Monitored, reported, and remediated internal and external issues related to ISMS, implementing corrective action plans.
• Initiate regular reviews and assessments as part of the continuous improvement cycle for all departmental projects and processes.
• Collaborate with relevant entities to improve the efficiency and effectiveness of Governance.
• Participated in change management sessions during sprint deployment.
• Maintain documentation for Business Continuity Plans.
• Oversee the Top Corporate Risks Program, working closely with initiative sponsors and owners to identify, assess, and execute risk-related initiatives effectively.
• Updated risk assessment register annually or with major changes.
• Support information security awareness training efforts within the company.
• Defined, reviewed, and edited information security policies based on compliance standards and conditions.
• Generated and managed internal audit reports, facilitating process improvements in collaboration with stakeholders.
• Possess knowledge about Data Privacy regulations such as GDPR and CCPA.
• Creation of pertinent Key Performance Indicators (KPIs) for Governance, Risk, and Compliance (GRC) and the establishment of reporting protocols.

Data Analyst à Youcan.Tech
  • Pakistan - Rawalpindi
  • octobre 2020 à novembre 2020
Junior Dot Net Developer à Tutoria.pk
  • Pakistan - Islamabad
  • juin 2019 à décembre 2019

Éducation

Master, Master's Program Cyber Security Expert (Cyber
  • à Simplilearn
  • juillet 2023
Baccalauréat, Bachelor of Computer Science
  • à National University of Computer and Emerging Sciences
  • juin 2019

Specialties & Skills

Policies and Procedures
Risk Assessment
IT Audit
PCI DSS
ISO 27001
IT Security Risk Management
Internal Audit
Policy& Process Development
RFI/RFP
Vendor Due diligence
IT Security Frameworks
ISO27001
Change Managment
MANAGEMENT
Internal Security Controls
PCI DSS
Information security awareness
Project Management
IT Audit
ISO 27001
Information Security Management
IT Risk
SECURITY POLICIES

Profils Sociaux

Site Web Personnel
Site Web Personnel

Le lien a été supprimé pour non-respect des conditions d'utilisation. Veuillez contacter l’équipe d'assistance pour plus d'informations.

Langues

Anglais
Moyen

Formation et Diplômes

ISMS27001:2013 Lead Auditor (Formation)
Institut de formation:
International Register of Certificated Auditors
Date de la formation:
January 2022

Loisirs

  • travelling