مانوج سينغ, Cyber Security Governance - Manager

مانوج سينغ

Cyber Security Governance - Manager

Accenture l Advanced Technology Centers in India (ATCI)

البلد
الهند - بنغالورو
التعليم
ماجستير, Business Analytics
الخبرات
19 years, 8 أشهر

مشاركة سيرتي الذاتية

حظر المستخدم


الخبرة العملية

مجموع سنوات الخبرة :19 years, 8 أشهر

Cyber Security Governance - Manager في Accenture l Advanced Technology Centers in India (ATCI)
  • الهند - بنغالورو
  • أشغل هذه الوظيفة منذ ديسمبر 2021

Currently leading ‘Cloud Security Governance’ for PCI-DSS compliance in Azure, CSPM (cloud security posture Management), FedRAMP, SOC2, ISO 27001, with agile, Jira, confluence, teams, SharePoint tools.
Provided strategic direction for ‘data privacy’ & ‘Security’ at ‘Cloud First’ 'Data and AI’, worked on DSPM (Data Security Posture Management).
Governed 'Product & Platform' Security for global life-science majors.
Effectively collaborated with Accenture's leadership & 'Global Security' teams.
Envisioned 'Security Governance’ framework, embedded Security at all stages.
Diligently led DevSecOps, SAST, DAST Blackduck OSS, SonarQube, QualysGuard and Prisma cloud vulnerability scans and remediation.
Assured for 'Client Data Protection', HIPAA, and GDPR regulatory compliance.
Supervised 'secure access' to enterprise data & applications and reduced risks

PRINCIPAL CONSULTANT (CYBER SECURITY) في Wipro l Bangalore
  • فبراير 2019 إلى نوفمبر 2021

Excelled in Cyber Security consultancy and advisory role for global majors. Established best practices for cyber security risk assessment and enterprise security controls for BFSI, Oil and gas majors. Managed and mentored GRC team. Designed and Implemented Cyber Security Enterprise Architecture framework to safeguard 'data privacy' and security using NIST, ISO 27001, SABSA, TOGAF, COBIT, MITRE, FedRAMP. GDPR, ISO 27701 PIMS, Regulatory Frameworks and Controls.

MANAGER - 'IT RISK AND COMPLIANCE' في Ujjivan Small Finance Bank l
  • ديسمبر 2017 إلى فبراير 2019

Steered 'IT Risk, Compliance & Audits' across this newly formed bank, established and elevated banking sector security and compliance to next level. Effectively designed and implemented Cyber Security Framework as per RBI cyber security and compliance requirements. Smoothly interfaced with Govt. controllers and regulators regarding IS and Cyber Security regulations, Audits and Compliance/Non-Compliance. Effectively interfaced with CRO, CTO and CISO and governed 'IT Risk Metrics'.

Cyber & Cloud Security في Mahindra Defence Systems Ltd.
  • الهند
  • نوفمبر 2016 إلى ديسمبر 2017

ASSOCIATE CONSULTANT - GRC Effectively led GRC projects for various industries and performed risk assessments. Established 'ISO 27001' and 'Risk Governance framework' from scratch. Aligned with Penetration Testing team, safeguarded client environment from potential threats and risks. Audited various sectors for 'ISO 27001' preparedness and assured accreditations.

SENIOR CONSULTANT (CYBERSECURITY G-SOC) في Capgemini l
  • مايو 2016 إلى أكتوبر 2016

Worked in Capgemini's Global Cyber Security Operations Center (G-SOC). Effectively managed SIEM tool, security incidents, triage and response process. designed, implemented and supervised security policies, procedures, standards and guidelines for global majors. Assessed contractual 'Security and Compliance' requirements and implemented appropriate information security controls. Supervised VA/PT, patch management and prevented security threats remarkably.

INFORMATION SECURITY LEAD في Larsen & Toubro Infotech Ltd.
  • الهند
  • يوليو 2011 إلى أبريل 2016

Played instrumental key role in establishing, improving and sustaining ISMS (ISO 27001) Information Security Management System for Organization and projects. Remarkably enhanced security posture of Organization and its global clients. Performed Organization-wide comprehensive Information Security (ISO 27001) Risk Assessment, managed and governed security and business risks effectively. Played major role in managing Organization wide CMM and ISO Audits primarily ISO 27001, SOC2 and ISAE3402. Enhanced overall effectiveness of various management systems and standards. Got support from Senior Management to envision and drive Organization-wide 'Information Security Program' and delivered excellence and value.

INFORMATION SECURITY ENGINEER في Allied Digital
  • الهند
  • فبراير 2008 إلى يونيو 2011

Performed 'Information Security Risk Assessment' while doing system integrations for domestic clients and enhanced security for products and services. Conducted internal audits, baselined & hardened network Security devices, routers, switches, firewalls, antivirus, servers and elevated security to next level. Performed 'gap assessment' for systems and networks.

SYSTEM & NTEWORK ADMIN في Qualtech Consultants
  • الهند
  • سبتمبر 2004 إلى فبراير 2008

Single point of contact for IT Infrastructure, IT Security and IT services. Provided excellent IT support for Software development platforms having Windows, Linux, Webservers, VMware, MS SQL, Oracle, JAVA, JBoss, and Eclipse. Enforced System and network security controls and performed IT Audits. Remarkably reduced budgetary and licensing cost by 60% implementing Linux platforms and opensource authorized software and vendor negotiations.

الخلفية التعليمية

ماجستير, Business Analytics
  • في Anna University
  • يناير 2023

, PG DIPLOMA IN CYBER SECURITY
  • في TILAK MAHARASHTRA VIDYAPEETH
  • يناير 2012

ماجستير, MASTERS IN COMPUTER APPLICATION
  • في Maharshi Dayanand University
  • يناير 2004

بكالوريوس, BACHELOR OF SCIENCE
  • في Vinoba Bhave University
  • يناير 2000

Specialties & Skills

Cyber Security
ISO 27001
Information Security Management
MANAGEMENT
NETWORK SECURITY
SECURITY CONTROLS
MANAGEMENT SYSTEMS
COMPLIANCE REQUIREMENTS
ARCHITECTURE FRAMEWORK
CYBER SECURITY
ENTERPRISE ARCHITECTURE FRAMEWORK
GOVERNANCE
CONTROL OBJECTIVES FOR INFORMATION AND RELATED TECHNOLOGY (COBIT)

حسابات مواقع التواصل الاجتماعي

الموقع الشخصي
الموقع الشخصي

لقد تم حذف الرابط بسبب انتهاكه لسياسة الموقع. يرجى التواصل مع قسم الدعم لمزيد من المعلومات.

اللغات

الهندية
متمرّس
الانجليزية
متمرّس

التدريب و الشهادات

IT Services Management (ITSM) (تدريب)
معهد التدريب:
Bureau Veritas
Azure 900 (تدريب)
معهد التدريب:
Accenture
ITIL V3 (الشهادة)
CCNA (الشهادة)
Vulnerability Management Expert (الشهادة)
CyberArk PAM Certified Trustee (الشهادة)
ISO/IEC: 20000 (ITSM) Internal Auditor (الشهادة)
BCMS (ISO/IEC: 22301:2012) Internal Auditor (الشهادة)
OneTrust Data Privacy Professional (الشهادة)
GDPR ISO 27701 Lead Implementor (الشهادة)
ISO 27001 Lead Auditor (الشهادة)
Certified Information Security Manager (CISM) (الشهادة)
تاريخ الدورة:
September 2017

الهوايات

  • Running, Cycling, Badminton, Sustainability
    Various awards in sports at school level.