Experienced IT security governance analyst with expertise in ISO 27001 audit, Data analysis, Threat intelligence, incident management, Vulnerability management, and operational quality. Currently working as a part-time Admin/Compliance analyst in the UK. Proficient in AVM tools, CRM, CMDB, and ITILV4 foundation. Highly analytical risk analyst with a solid background in assessments across various industries. Skilled in performing risk assessments, creating risk management plans, and identifying areas for improvement. Possesses a strong understanding of industry regulations and compliance requirements.
Overview
8
8
years of professional experience
5
5
years of post-secondary education
Work history
Admin/Compliance Assistant
Nurse And Care
Ipswich
2022.10 - Current
Managed correspondence via email, post, and document scanning while efficiently handling phone calls and greeting visitors
Executed meticulous administrative tasks, such as data entry, file management, and document preparation, greatly contributing to the seamless operation of the office.
Fostered collaboration with team members, successfully preparing and organizing meetings, appointments, and travel arrangements, guaranteeing efficient communication and coordination of schedules.
Provided invaluable support to the HR department by meticulously maintaining employee records, processing payroll information, and facilitating new hire onboarding processes.
Managed inventory, maintained an organized office, and provided administrative support to the manager
Collaborate with cross-functional teams to ensure IT systems and processes align with industry regulations, including GDPR and HIPAA for the UK healthcare sector
Maintain a deep understanding of healthcare industry compliance standards and implement necessary controls to ensure data protection and patient confidentiality
Conduct regular audits of IT systems, processes, and policies to identify potential compliance gaps and recommend corrective actions
Senior IT Security Governance Analyst
Allianz Technologies SE
Thiruvananthapuram, India
2019.12 - 2021.10
Implemented and optimized comprehensive IT security controls, policies, and procedures to protect sensitive data and mitigate cyber threats, resulting in a 60% decrease in security incidents.
Conducted thorough risk assessments and vulnerability scans, identifying critical vulnerabilities and developing effective remediation plans to ensure compliance with industry standards and regulatory requirements.
Led cross-functional teams in the design and implementation of robust disaster recovery and business continuity plans, ensuring minimal disruption to operations during unforeseen events.
Developed and delivered comprehensive security awareness training programs for employees, increasing overall security awareness and reducing the likelihood of successful social engineering attacks by 40%.
Efficiently streamlined data gathering for IT governance by implementing AVM tools, leading to the identification and clean-up of over 10,000 out-of-support legacy systems.
Collaborated extensively with the vulnerability management team to systematically collect information on vulnerable IT assets across Europe, resulting in the successful remediation of 97% of identified vulnerabilities
Championed the implementation of a dynamic process, utilizing scoring metrics, to promptly identify and integrate new critical IT components into monthly reports.
Proactively collaborated with Asset owners and Service owners to conduct comprehensive audits and guide them in streamlining their Risk acceptance processes. This resulted in a notable reduction of vulnerable IT assets to 20%, enhancing the overall security posture
Strategically pinpointed vulnerabilities in newly onboarded clients' IT assets through the meticulous execution of risk assessments, harnessing the capabilities of Qualys, SPLUNK, and Archer.
Implemented an innovative patch management framework for Windows, Linux, and VMware services, resulting in an 80% reduction in vulnerability-related risks.
Implemented internal controls and remediation plans to address and mitigate existing vulnerabilities.
Maintained thorough knowledge of industry best practices and emerging trends, capitalising on new advancements to meet client objectives.
Adapted risk frameworks to meet changes in appetite, culture and governance.
Quality Analyst
Binary Fountain Pvt Ltd
Thiruvananthapuram, India
2018.03 - 2019.09
Resolved internal product issues efficiently via JIRA and Salesforce ticketing systems, fostering seamless collaboration with the operations team to achieve prompt resolutions.
Liaised with cross-functional teams, comprising developers, engineers, and project managers, to expedite issue resolution through effective communication and collaboration.
Played a pivotal role in spearheading the development and meticulous testing of innovative products and features, achieving flawless integration with established systems and processes.
Exhibited expertise in monitoring vital performance metrics and crafting comprehensive reports and dynamic dashboards to meticulously track performance while identifying invaluable improvement opportunities.
Service Analyst
ARS T&TT
Thiruvananthapuram, India
2017.06 - 2018.03
Diligently oversaw service contracts and meticulously upheld SLAs for over 10 operational services/projects in the Netherlands and India, rigorously adhering to ITIL best practices.
Vigilantly monitored and swiftly addressed an impressive volume of 150+ 1st-line technical tickets per month from service managers, consistently delivering high-quality support services.
Conducted in-depth analysis of incident details, including Configuration Items, logs, and more, to proactively initiate essential actions and expedite service restoration.
Utilized SQL commands to extract bulk data from databases and performed data exploration to derive actionable insights supporting business strategies.
Quality Analyst
HCL Technologies
Chennai, India
2016.03 - 2017.04
Developed a robust operational quality analysis framework for provider credentialing healthcare projects, meticulously aligned with stringent HIPAA standards and evaluating 14 distinct data types, ensuring rigorous compliance and effectiveness.
Innovatively implemented process updates, comprehensive checklists, and detailed SOP documents to enhance team efficiency and effectiveness.
Rigorously verified the quality and pinpoint accuracy of data, meticulously assessing it for adherence to pre-defined acceptance criteria.
Resolved operational process failures by accurately identifying root causes.