BigFix Patch Management Solution
· To Lead GRC team of Datacenter & Information Security under the governance of CTO and CISO
· Working closely with compliance, risk management, audit functions, Regulator and various stake holders across the Bank to ensure that information security is appropriately designed and updated based on audit feedback or testing.
· Implementation of risk assessment framework, Regulatory requirements
· Review and maintenance of standard security operating procedures and ISO/IEC 27001:2013 documentation in Datacenter
· Responsible for addressing the recommendations with regulatory & various audit and ensure compliance.
· Reporting of Cyber Security incidents, Key Risk Indicators (KRI) to the Regulator (Reserve Bank of India)
· Ensure key information security risks are identified, addressed and resolved in a timely manner
· Review of Key Performance Indicators (KPIs)/metrics and preparation of senior management reports
· Maintenance of Risk register and Risk assessment treatment report
· Serving as an advisor on security & compliance issues in Datacenter
· Periodical review of existing third parties, vendors, suppliers and partners.
· Conduct periodic risk assessment of vendors
· Preparation of documents and presentations for senior management
· Daily and weekly reports to senior management about security posture includes Critical services & Capacity monitoring
· 5+ yearsof experience in Banking sector, includes Information Security Management underGovernance, Risk & Compliance, vendor risk assessment, as ASSISTANT MANAGERin Karur Vysya Bank Limited
· Expertise in managing DatacentreSecurity Operation includes Patch Management,Security Baseline Implementation,Change Management process, Business continuity process to support business objectives and handling regulatory Compliances.
· Experience in coordinating audits for Datacentreincludes RBI audit,ISO ComplainceAudit,Continuous audit,application audit, vendor audit, etc.,
10 months(3months internship of PGDBT) of experience in Indian Financial Technology & Allied Services,Hyberabad (IFTAS), Hyderabad in SFMS on Cloud includes Payment channels processing (RTGS,NEFT) through cloud.(Period:Apr 2018 to Feb 2019).
Personal Skills:
undefinedBigFix Patch Management Solution
Tenable Vulnerability Assessment Solution
Information Security Compliance & Operations
Business continuity management (BCMS)
Risk Management
Vendor Management