Ravi Rangarajan, Lead Consultant - ISMS

Ravi Rangarajan

Lead Consultant - ISMS

ADNOC (CNS MiddleEast)

Lieu
Émirats Arabes Unis - Abu Dhabi
Éducation
Master, Statistics
Expérience
20 years, 3 Mois

Partager Mon CV

Empêcher usager


Expériences professionnelles

Total des années d'expérience :20 years, 3 Mois

Lead Consultant - ISMS à ADNOC (CNS MiddleEast)
  • Émirats Arabes Unis - Abu Dhabi
  • Je travaille ici depuis septembre 2022

Strategic Management | Information Security Governance | Risk & Compliance | ISO 27001 Implementation | ISMS Maintenance | UAE NESA Information Security Compliance | ISO 20000 Implementation | Information Security Awareness | Patch & Vulnerability Management | Access Review | IT Program Management | Risk Management | Audit Management

Head of Information Security & Quality à Almarai
  • Arabie Saoudite - Riyad
  • juin 2014 à juin 2019

 Oversaw information security strategies organization-wide, with a focus on maintaining the confidentiality, integrity, and availability of data.
 Implemented ISO 27001:2013, conducted internal audits, managed third-party certification processes & conducted surveillance audits.
 Similarly, managed ISO 9001:2015 implementation, conducted internal audits, ensured maintenance of the Quality Management System (QMS), oversaw certification processes, and conducted surveillance audits.
 Managed the IS governance steering committee, which included tasks such as establishing the committee, aligning its strategic objectives, conducting regular meetings, and identifying actionable items.
 Maintained the Information Security Management System (ISMS) by developing and updating policies, standards, guidelines, and best practices. This also involved actively seeking continuous feedback to improve the ISMS, as well as regularly reporting the current status to executive management.
 Oversaw risk management activities, which included conducting risk identification workshops, performing risk analysis and assessment, assigning risk ownership, actively managing risks, and periodically reporting on the status of risks.
 Organized annual mock exercises for business continuity and disaster recovery to assess preparedness.
 Facilitated the annual penetration testing exercise and collaborating to address any findings.
 Conducted risk-based audits of management systems (including QMS and ISMS) and engaging in IT governance activities.

Freelance Trainer à Entrepreneur - Freelance Trainer
  • Inde - Chennai
  • avril 2013 à juin 2014

• Providing training for various information security certifications (CISA, CISM, CEGIT, CRISC)
• Training on Statistics, Six Sigma
• Project Management and Agile Project Management trainings

Information Security and Quality Manager à Michelin India Private Limited
  • Inde - Chennai
  • juillet 2010 à mars 2013

• Information Security Awareness & Training
• Information Security Risk Management
• Information Security Audits
• Information Security Incident Management
• Information Security Project Management
• Coordination with vendors for vulnerability management and penetration testing
• ISO 27001:2013 Control Implementation

Senior Manager (SQA) à WNS Global Services
  • Inde - Chennai
  • juin 2007 à mars 2010

• CMMI Implementation for Norwich Union, UK
• Process Improvement (Six Sigma) training to employees in Norwich Union, UK
• Process documentation for IT Service Management based on ITIL and ISO 20000
• ISO 9001:2008 implementation and sustenance
• ISO 27001:2005 support and internal audit
• Data analysis for process improvement
• Providing training on six sigma tools like Minitab, JMP, statistical analysis using Microsoft Excel

Associate Manager (Delivery Assurance) à Accenture
  • Inde - Chennai
  • mai 2006 à juin 2007

• Ensuring process adherence for the huge IT engagement for a prestigious banking client
• Performing various process audits and assisting in closure of audit findings
• Conducting process training
• Conducting induction training & orientation to new employees in Accenture
• Responsible for few CMMI process areas for documentation, training, implementation and auditing

Senior Associate (Quality Champion) à Cognizant Technology
  • Inde - Chennai
  • mai 2003 à avril 2006

• CMMI Level 5 implementation for the Hyderabad center (training, change management, process implementation, process auditing & metrics management)
• Successful completion of ISO 9001:2000 certification & surveillance audits for the vertical
• Providing training on CMMI processes, participating in SEPG activities
• Providing six sigma training and performing process improvement projects
• Periodically coordinating review of processes and updating the process assets
• Performing various audits (startup audit, configuration audit, phase-end audit, delivery audit, delivery management audit etc.)

Senior Executive (SQA) à Megasoft
  • Inde - Chennai
  • septembre 2000 à mai 2003

• ISO 9001:1994 implementation for the development center in Chennai
• Maintenance of Quality Management System (QMS)
• CMM implementation
• Quality awareness training
• Process documentation, Process training, Process implementation
• Process measurement and metrics
• Process audits

Éducation

Master, Statistics
  • à University of Madras
  • juin 1989

Master Degree in Statistics - M.Sc (Statistics)

Baccalauréat, Mathematics
  • à Government College (Men)
  • juin 1985

Bachelor Degree in Mathematics - B.Sc (Mathematics)

Specialties & Skills

Six Sigma
AUDITING
DOCUMENTATION
QUALITY Management
Six Sigma - Operational Excellence
IT Service Management
Project Management
Information Security

Langues

Anglais
Expert
Tamil
Langue Maternelle
Hindi
Moyen
Français
Débutant

Adhésions

Project Management Institute
  • Member
  • December 2016

Formation et Diplômes

Bullet Proof Manager (Formation)
Institut de formation:
Cognizant
Date de la formation:
April 2004
Durée:
16 heures
Presentation Skills (Formation)
Institut de formation:
Accenture
Date de la formation:
February 2007
Durée:
16 heures
Situational Leadership II (Formation)
Institut de formation:
Ken Blanchard
Date de la formation:
March 2016
Durée:
16 heures
Time Management (Formation)
Institut de formation:
A Prestigious Soft Skills Training Institute from Dubai
Date de la formation:
June 2011
Durée:
8 heures
Problem Solving Skills (Formation)
Institut de formation:
Accenture
Date de la formation:
February 2007
Durée:
16 heures
Certified Information Systems Auditor - CISA - ISACA (Certificat)
Date de la formation:
April 2012
Certified Software Quality Analyst (Certificat)
Date de la formation:
September 2002
Valide jusqu'à:
September 2005
Certified Information System Security Professional (CISSP) (Certificat)
Date de la formation:
April 2011
Valide jusqu'à:
March 2015
ISO 27001:2005 Lead Auditor (Certificat)
Date de la formation:
January 2009
IT Service Manager (Certificat)
Date de la formation:
July 2010
Six Sigma Black Belt - American Society for Quality (Certificat)
Date de la formation:
October 2011
PRINCE2 Foundation (Certificat)
Date de la formation:
July 2012
Certified Software Test Engineer (Certificat)
Date de la formation:
December 2002
Valide jusqu'à:
December 2005
Certified Quality Engineer - American Society for Quality (Certificat)
Date de la formation:
December 2011
Certified Manager of Quality / Organizational Excellence - American Society for Quality (Certificat)
Date de la formation:
March 2012
Certified Scrum Professional - Scrum Alliance (Certificat)
Date de la formation:
April 2013
PRINCE2 Practitioner (Certificat)
Date de la formation:
August 2012
Certified Quality Auditor - American Society for Quality (Certificat)
Date de la formation:
June 2012
ITIL Foundation (Certificat)
Date de la formation:
June 2007
PMI Agile Certified Practitioner (Certificat)
Date de la formation:
January 2013
Certified Scrum Master - Scrum Alliance (Certificat)
Date de la formation:
January 2013
Certified Information Security Manager - CISM - ISACA (Certificat)
Date de la formation:
May 2012
Certified In The Governance of Enterprise IT - CGEIT - ISACA (Certificat)
Date de la formation:
July 2012
Six Sigma Black Belt - Indian Statistical Instutite (Certificat)
Date de la formation:
July 2007
Certified Ethical Hacker (CEH) (Certificat)
Date de la formation:
July 2012
Valide jusqu'à:
June 2015
Certified in Risk and Information Systems Control (CRISC) - ISACA (Certificat)
Date de la formation:
June 2012
ITIL Expert (Certificat)
Date de la formation:
January 2011
Six Sigma - Master Black Belt - Indian Statistical Institute (Certificat)
Date de la formation:
June 2008
Project Management Professional (Certificat)
Date de la formation:
July 2004
Valide jusqu'à:
December 2007

Loisirs

  • Training & Lectures
    Providing training and lectures whenever the local PMI and ISACA Chapters request.
  • Conducting Events
    Conducting various events for the organization like Annual Day Celebration etc.