3
SANJEEV K PRADHAN Contact No.: 09899383236/09703616659 ~ E-Mail: [email protected] Information Security Specialist. IT Risk Assessment & Process Management “Striving to upgrade knowledge and practices to retain excellence in the field of Information Security and Compliance” SNAPSHOT A “Performance Driven Professional” bringing in a high level of IT security expertise and record of achievements gained in 09 years’ career in IT/ITES domain. This have included but not limited to IT Security Process Management, Risk Management Infrastructure Set up and Management, Vendor Management and Security Training. Presently associated with Verizon Data Services India Ltd., Hyderabad, India as Cyber Security Specialist (Asst. Manager, Security team). Good amount of Information Security experience in managing and maintaining security posture at different Verizon based vendor locations with an aim to accomplish corporate plans & goals. Familiar in assessing client queries and resourceful in providing project deliverables with apt solutions on time. Experienced in creating process/procedural documents and checklists and automating manual documentation efforts. Prudent, disciplined & self motivated with excellent interpersonal, communication & organizational skills with proven abilities in team management and Vendor management. CORE COMPETENCIES Process Management: Monitoring the overall functioning of processes aligned with ISO 270001 and Verizon corporate practices, risk assessment, identifying improvement areas and implementing adequate measures to maximize security controls at Vendor locations. Conducting internal process audits & process reviews for ensuring strict adherence to the process parameters/systems as per defined guidelines. Team Management: Identifying and implementing strategies for building team effectiveness by promoting a spirit of cooperation between team members. Recruiting teams and determining training needs of employees to enhance their operational efficiency leading to increased productivity. CERTIFICATION ISO 27001 Lead Auditor Certified Cyber Crime Investigator Certified Ethical Hacker V7 ITIL V3 Foundation Certification AWARDS Recognized as “Star Performer” award. Recognized as “Shine Star” award. Recognized as “Individual Contributor” award. Recognized as “Individual Contributor” award. Recognized as “Peageus Award” award. EMPLOYMENT RECITAL Verizon Data Services India Ltd, Hyderabad, India since Sept 2011 Presently designated as Cyber Security Specialist Growth Path: Nov’11 to Dec’12 Cyber Security Analyst – Managing Vendor program Infosys, Bangalore Dec’12 to April’14 Cyber Security Specialist (Asst. Manager) – Managing Vendor program IBM, Delhi

Sanjeev - Resume v1.0

Embed Size (px)

Citation preview

Page 1: Sanjeev - Resume v1.0

SANJEEV K PRADHANContact No.: 09899383236/09703616659 ~ E-Mail: [email protected]

Information Security Specialist. IT Risk Assessment & Process Management

“Striving to upgrade knowledge and practices to retain excellence in the field of Information Security and Compliance”

SNAPSHOT

A “Performance Driven Professional” bringing in a high level of IT security expertise and record of achievements gained in 09 years’ career in IT/ITES domain. This have included but not limited to IT Security Process Management, Risk Management Infrastructure Set up and Management, Vendor Management and Security Training.

Presently associated with Verizon Data Services India Ltd., Hyderabad, India as Cyber Security Specialist (Asst. Manager, Security team).

Good amount of Information Security experience in managing and maintaining security posture at different Verizon based vendor locations with an aim to accomplish corporate plans & goals.

Familiar in assessing client queries and resourceful in providing project deliverables with apt solutions on time. Experienced in creating process/procedural documents and checklists and automating manual documentation

efforts. Prudent, disciplined & self motivated with excellent interpersonal, communication & organizational skills with

proven abilities in team management and Vendor management.

CORE COMPETENCIES

Process Management: Monitoring the overall functioning of processes aligned with ISO 270001 and Verizon corporate practices, risk assessment, identifying improvement areas and implementing adequate measures to maximize security controls at Vendor locations. Conducting internal process audits & process reviews for ensuring strict adherence to the process parameters/systems as per defined guidelines.

Team Management: Identifying and implementing strategies for building team effectiveness by promoting a spirit of cooperation between team members. Recruiting teams and determining training needs of employees to enhance their operational efficiency leading to increased productivity.

CERTIFICATION

ISO 27001 Lead Auditor Certified Cyber Crime Investigator Certified Ethical Hacker V7 ITIL V3 Foundation Certification

AWARDS

Recognized as “Star Performer” award. Recognized as “Shine Star” award. Recognized as “Individual Contributor” award. Recognized as “Individual Contributor” award. Recognized as “Peageus Award” award.

EMPLOYMENT RECITAL

Verizon Data Services India Ltd, Hyderabad, India since Sept 2011Presently designated as Cyber Security Specialist

Growth Path:

Nov’11 to Dec’12 Cyber Security Analyst – Managing Vendor program Infosys, BangaloreDec’12 to April’14 Cyber Security Specialist (Asst. Manager) – Managing Vendor program IBM, DelhiApril’14 to till date Cyber Security Specialist (Asst. Manager) – Managing Vendor Program IBM,

Delhi & Accenture & First source (Bangalore)

Page 2: Sanjeev - Resume v1.0

Highlights:

Responsible for the Implementation of the ISO 27001 standards. Assisted in the development and implementation of information security policies, laws, standards, and

processes for corporate governance. Responsible for enhancing the existing company information security policies, standards, and processes. Responsible for conducting initial reviews of audit logs pertaining to critical information systems encompassing

review of weekly generated reports and identification suspicious activities. Coordinated review of logs and user access data availability and programs for both regular and privileged users. Responsible for review of findings from incident investigations and facilities inspections. Managed execution of security assessment, analyzed process and prepared necessary reports. Provided necessary support to different security function and processes and tracked all activities. Conducting IT Risk assessments, Business impact analysis and IT systems recovery analysis Conducting information security audits and regulatory compliance audits Determine the IT compliancy required by Regulatory bodies and lead the compliance of the same. Administer security logs and monitoring systems. Work closely with IT staff members and vendors to ensure appropriate security controls are implemented. Coordinates risk and security assessments, breach drills and incident response drills. Work with third party providers to conduct comprehensive IT security assessments on a regular basis. Responsible for vendor assessments reviews Set up information security posture at Vendor locations as per the legal requirements. Implement security services required to protect the confidentiality, integrity, availability, privacy and

authenticity of the information stored in the vendor environment. Review and implement any changes to security requirements, in accordance with the Security Policy. Investigating causes, analyzing and diagnosing the problem and repairing or providing detailed alternative

solutions. Conduct periodic reviews and vulnerability risk assessments of the Equipment, Software, processes and

practices. Monitor logs and security events across network infrastructure. Log, monitor, investigate, and report on access

violations. Provide logs to analyze the misuse, fraudulent or malicious activities. Support security incident response processes in the event of a security breach by providing logging and audit

information and by providing incident reporting. Implement and manage a security incident management process according to the Security Policy. Provide periodic trending problem reports. Assist investigators of security incidents involving the vendor sites and other locations, document findings, and

coordinate resolution. Interview the Project teams in order to understand the current project implementation, execution, and delivery

and subsequently plan the security reviews. Review of the artifacts and identify potential risks/gaps observed during the review exercise. Deliver compliance awareness through various forums and educate users on adherence to compliance and

provide insight on reporting and handing potential compliance incidences. Identifying and coordinating security information requirements, including collection, collation, analysis and

dissemination of information relevant to safety and security of the resources and assets. Maintaining security information awareness of all aspects which could potentially affect the safety and security. Developing trend analysis, gathering comprehensive information on all factors of insecurity as well as

determining the relevance and validity of security information and the reliability of information resources. Periodic assessing of information security risk. Ensure compliance through adequate training programs and periodic security audits. These audits are both

internal and external in nature. Performing disaster recovery/business continuity planning documentation, reviews and updates Responsible for documentation and review of ISMS policies and audit reports. Established trusted relationships with information security and I.T. leadership across all aspects of the business unit.

PREVIOUS ASSIGNMENTS

June’07 to November’07 with Tata Tele Services, Orissa UnitUnit Manager of EBG

Primary Role: Fraud Analysis and Management

July’09 to April’11 with CGI India (Global IT Services provider), Bangalore UnitSoftware Engineer- Quality

Primary Role: Information Security compliance & standard implementation facilitation

November’07 to July’09 with Unisys Global Services India, Bangalore/ HyderabadService Delivery Associate-2

Primary Role: Information Security implementation in BPO unit

November’06 to June’07 with Bajaj Allianz Life Insurance, Orissa UnitTeam Lead-Service Specialist

Primary Role: Fraud Analysis and Management

April’11 to November’11 with Infinite Computer Solutions (India) Limited, Hyderabad UnitSenior Information Security Engineer

Primary Role: Information Security compliance & standard implementation facilitation

Page 3: Sanjeev - Resume v1.0

SCHOLASTICS

2006 MBA (Fin and HR), Utkal University, Bhubaneswar, Orissa

PERSONAL DOSSIER

Date of Birth: 02nd November, 1982Contact Address: Flat No 121, Block B, Sai Poorna Paradise, Somasundara Pallya, HSR II Stage ext.

Bangalore 560102Permanent Address: s/o Dr. N.K.Pradhan, Santa Sahi, Bajrakabati Road, Cuttack, Orissa-753001Languages Known: English, Oriya and HindiLocation Preference: India and OnshorePassport Details: Valid Passport