Ravi Rangarajan, Lead Consultant - ISMS

Ravi Rangarajan

Lead Consultant - ISMS

ADNOC (CNS MiddleEast)

Location
United Arab Emirates - Abu Dhabi
Education
Master's degree, Statistics
Experience
20 years, 3 Months

Share My Profile

Block User


Work Experience

Total years of experience :20 years, 3 Months

Lead Consultant - ISMS at ADNOC (CNS MiddleEast)
  • United Arab Emirates - Abu Dhabi
  • My current job since September 2022

Strategic Management | Information Security Governance | Risk & Compliance | ISO 27001 Implementation | ISMS Maintenance | UAE NESA Information Security Compliance | ISO 20000 Implementation | Information Security Awareness | Patch & Vulnerability Management | Access Review | IT Program Management | Risk Management | Audit Management

Head of Information Security & Quality at Almarai
  • Saudi Arabia - Riyadh
  • June 2014 to June 2019

 Oversaw information security strategies organization-wide, with a focus on maintaining the confidentiality, integrity, and availability of data.
 Implemented ISO 27001:2013, conducted internal audits, managed third-party certification processes & conducted surveillance audits.
 Similarly, managed ISO 9001:2015 implementation, conducted internal audits, ensured maintenance of the Quality Management System (QMS), oversaw certification processes, and conducted surveillance audits.
 Managed the IS governance steering committee, which included tasks such as establishing the committee, aligning its strategic objectives, conducting regular meetings, and identifying actionable items.
 Maintained the Information Security Management System (ISMS) by developing and updating policies, standards, guidelines, and best practices. This also involved actively seeking continuous feedback to improve the ISMS, as well as regularly reporting the current status to executive management.
 Oversaw risk management activities, which included conducting risk identification workshops, performing risk analysis and assessment, assigning risk ownership, actively managing risks, and periodically reporting on the status of risks.
 Organized annual mock exercises for business continuity and disaster recovery to assess preparedness.
 Facilitated the annual penetration testing exercise and collaborating to address any findings.
 Conducted risk-based audits of management systems (including QMS and ISMS) and engaging in IT governance activities.

Freelance Trainer at Entrepreneur - Freelance Trainer
  • India - Chennai
  • April 2013 to June 2014

• Providing training for various information security certifications (CISA, CISM, CEGIT, CRISC)
• Training on Statistics, Six Sigma
• Project Management and Agile Project Management trainings

Information Security and Quality Manager at Michelin India Private Limited
  • India - Chennai
  • July 2010 to March 2013

• Information Security Awareness & Training
• Information Security Risk Management
• Information Security Audits
• Information Security Incident Management
• Information Security Project Management
• Coordination with vendors for vulnerability management and penetration testing
• ISO 27001:2013 Control Implementation

Senior Manager (SQA) at WNS Global Services
  • India - Chennai
  • June 2007 to March 2010

• CMMI Implementation for Norwich Union, UK
• Process Improvement (Six Sigma) training to employees in Norwich Union, UK
• Process documentation for IT Service Management based on ITIL and ISO 20000
• ISO 9001:2008 implementation and sustenance
• ISO 27001:2005 support and internal audit
• Data analysis for process improvement
• Providing training on six sigma tools like Minitab, JMP, statistical analysis using Microsoft Excel

Associate Manager (Delivery Assurance) at Accenture
  • India - Chennai
  • May 2006 to June 2007

• Ensuring process adherence for the huge IT engagement for a prestigious banking client
• Performing various process audits and assisting in closure of audit findings
• Conducting process training
• Conducting induction training & orientation to new employees in Accenture
• Responsible for few CMMI process areas for documentation, training, implementation and auditing

Senior Associate (Quality Champion) at Cognizant Technology
  • India - Chennai
  • May 2003 to April 2006

• CMMI Level 5 implementation for the Hyderabad center (training, change management, process implementation, process auditing & metrics management)
• Successful completion of ISO 9001:2000 certification & surveillance audits for the vertical
• Providing training on CMMI processes, participating in SEPG activities
• Providing six sigma training and performing process improvement projects
• Periodically coordinating review of processes and updating the process assets
• Performing various audits (startup audit, configuration audit, phase-end audit, delivery audit, delivery management audit etc.)

Senior Executive (SQA) at Megasoft
  • India - Chennai
  • September 2000 to May 2003

• ISO 9001:1994 implementation for the development center in Chennai
• Maintenance of Quality Management System (QMS)
• CMM implementation
• Quality awareness training
• Process documentation, Process training, Process implementation
• Process measurement and metrics
• Process audits

Education

Master's degree, Statistics
  • at University of Madras
  • June 1989

Master Degree in Statistics - M.Sc (Statistics)

Bachelor's degree, Mathematics
  • at Government College (Men)
  • June 1985

Bachelor Degree in Mathematics - B.Sc (Mathematics)

Specialties & Skills

Six Sigma
AUDITING
DOCUMENTATION
QUALITY Management
Six Sigma - Operational Excellence
IT Service Management
Project Management
Information Security

Languages

English
Expert
Tamil
Native Speaker
Hindi
Intermediate
French
Beginner

Memberships

Project Management Institute
  • Member
  • December 2016

Training and Certifications

Bullet Proof Manager (Training)
Training Institute:
Cognizant
Date Attended:
April 2004
Duration:
16 hours
Presentation Skills (Training)
Training Institute:
Accenture
Date Attended:
February 2007
Duration:
16 hours
Situational Leadership II (Training)
Training Institute:
Ken Blanchard
Date Attended:
March 2016
Duration:
16 hours
Time Management (Training)
Training Institute:
A Prestigious Soft Skills Training Institute from Dubai
Date Attended:
June 2011
Duration:
8 hours
Problem Solving Skills (Training)
Training Institute:
Accenture
Date Attended:
February 2007
Duration:
16 hours
Certified Information Systems Auditor - CISA - ISACA (Certificate)
Date Attended:
April 2012
Certified Software Quality Analyst (Certificate)
Date Attended:
September 2002
Valid Until:
September 2005
Certified Information System Security Professional (CISSP) (Certificate)
Date Attended:
April 2011
Valid Until:
March 2015
ISO 27001:2005 Lead Auditor (Certificate)
Date Attended:
January 2009
IT Service Manager (Certificate)
Date Attended:
July 2010
Six Sigma Black Belt - American Society for Quality (Certificate)
Date Attended:
October 2011
PRINCE2 Foundation (Certificate)
Date Attended:
July 2012
Certified Software Test Engineer (Certificate)
Date Attended:
December 2002
Valid Until:
December 2005
Certified Quality Engineer - American Society for Quality (Certificate)
Date Attended:
December 2011
Certified Manager of Quality / Organizational Excellence - American Society for Quality (Certificate)
Date Attended:
March 2012
Certified Scrum Professional - Scrum Alliance (Certificate)
Date Attended:
April 2013
PRINCE2 Practitioner (Certificate)
Date Attended:
August 2012
Certified Quality Auditor - American Society for Quality (Certificate)
Date Attended:
June 2012
ITIL Foundation (Certificate)
Date Attended:
June 2007
PMI Agile Certified Practitioner (Certificate)
Date Attended:
January 2013
Certified Scrum Master - Scrum Alliance (Certificate)
Date Attended:
January 2013
Certified Information Security Manager - CISM - ISACA (Certificate)
Date Attended:
May 2012
Certified In The Governance of Enterprise IT - CGEIT - ISACA (Certificate)
Date Attended:
July 2012
Six Sigma Black Belt - Indian Statistical Instutite (Certificate)
Date Attended:
July 2007
Certified Ethical Hacker (CEH) (Certificate)
Date Attended:
July 2012
Valid Until:
June 2015
Certified in Risk and Information Systems Control (CRISC) - ISACA (Certificate)
Date Attended:
June 2012
ITIL Expert (Certificate)
Date Attended:
January 2011
Six Sigma - Master Black Belt - Indian Statistical Institute (Certificate)
Date Attended:
June 2008
Project Management Professional (Certificate)
Date Attended:
July 2004
Valid Until:
December 2007

Hobbies

  • Training & Lectures
    Providing training and lectures whenever the local PMI and ISACA Chapters request.
  • Conducting Events
    Conducting various events for the organization like Annual Day Celebration etc.