Navetha Manoharan, Security Consultant - Cyber Strategic & Risk

Navetha Manoharan

Security Consultant - Cyber Strategic & Risk

Deloitte USI

Location
India - Puducherry
Education
Master's degree, M.Tech
Experience
5 years, 5 Months

Share My Profile

Block User


Work Experience

Total years of experience :5 years, 5 Months

Security Consultant - Cyber Strategic & Risk at Deloitte USI
  • India - Bengaluru
  • September 2021 to June 2023

Key Deliverables:
• Developed and implemented strategic security plans to protect organizational assets and sensitive information.
• Aligned security strategies with business objectives, ensuring a balance between risk mitigation and operational efficiency.
• Worked for Threat and Vulnerability management team in managed Security services to perform vulnerability assessments and identify OS/ application security weakness
• Executed CIS level-1 configuration scans for golden images.
• Scrutinised and performed vulnerability scans on out-of-band vulnerabilities.
• Reinforced the remediation team for installing troubleshooting Qualys Cloud agent in AWS & Azure VMs
• Chased and monitored the open reported vulnerabilities using Power BI Dashboards both weekly and monthly
• Developed and updated security policies, procedures, and guidelines based on industry standards and best practices.
• Ensured compliance with regulatory requirements and communicated changes to relevant stakeholders.
• Designed and delivered security awareness training programs for employees, promoting a culture of cybersecurity vigilance.
• Provided guidance during security incidents, coordinating response efforts to minimize impact.
• Conducted comprehensive cyber risk assessments for clients, identifying potential vulnerabilities and threats.
• Collaborated with stakeholders to prioritize risks and develop strategies for mitigation.

Senior Information Security Engineer at Infosys Limited
  • India - Chennai
  • May 2018 to September 2021

Key Deliverables:
• Conducted a vulnerability assessment using Qualys on the organizations managed network devices, covering switches, routers, endpoint devices, servers, and other network devices. Nmap was used to perform sporadic penetration testing on network devices.
• Implemented updates and patches to ensure the security of systems and networks.
• Ensured that security measures were integrated into the architecture of new systems and projects.
• Evaluated and selected security tools and technologies to enhance the organizations security capabilities.
• Steered and participated in the execution of large-scale initiatives such as the Skybox security suite, which minimized the need for human labour in carrying out security compliance evaluations utilizing security standards (a blend of NIST and ISO 27001 standards).
• Conducted security audits to assess compliance with internal policies and supported for external security audits.
• Knowledgeable about risk acceptance, remediation, and mitigation for the closure of audits using the GRC Archer tool for NCs documentation, support network, and delivery teams.

Education

Master's degree, M.Tech
  • at PONDICHERRY ENGINEERING COLLEGE
  • May 2018
Bachelor's degree, B. Tech Information Technology
  • at Sree Sastha Institute of Engineering and Technology, Anna University
  • June 2015
High school or equivalent, HSC
  • at Aditya Vidhyashram Higher Secondary School
  • May 2011

Specialties & Skills

IS Security
Vulnerability Scanning
Vulnerability Assessment
Vulnerability Management
Firewalls
Problem Solving
MITIGATION
VULNERABILITY
POWER BI
PENETRATION TESTING
Application Security
Vulnerability Assessment
Vulnerability Scanning
Vulnerability Assessment / Penetration Testing
Vulnerability Management

Social Profiles

Personal Website
Personal Website

URL removed due to policy violation. Please contact support for further information.

Languages

English
Expert
Tamil
Native Speaker
French
Beginner

Training and Certifications

Applied Cybersecurity Essentials – Hybrid Intensive (Training)
Training Institute:
Purdue University
Date Attended:
October 2020
Microsoft Certified: Azure Security Engineer Associate (AZ-500) (Certificate)
Date Attended:
February 2022
Valid Until:
February 2023
Qualys Certified Specialist in Vulnerability Management (Certificate)
Date Attended:
March 2021

Hobbies

  • Reading