BALA CHANDER SUGAVANESVARAN
About Candidate
· Have worked on the implementation of ISO 27001. · Implemented and maintained security controls adhering to client contractual agreement requirements with respect to ISO 27001 and organization baseline standards. · Performed various Information Security Audits for Clients ODC’s, Support Functions based on Security Policy & Procedure, Contractual and Client Security Requirements, ISO 27001 etc. Have worked in completing various Client Security Audits, Due Diligence Visits, Third Party Audits. · Performed multiple Security Risk Assessment for various clients, highlighting open and residual risk to Client and Leadership team · Have worked in completing SSAE 16 Audit interfacing with third party auditing organization. · Have knowledge on the operations of Amazon web services (AWS Cloud) and also about their security controls. · Performed Risk Assessment for various Information Security Exceptions and Change Requests. · Have responded to various Request for proposals (RFP’s, RFI’s), client due diligence queries with respect to Information Security posture. · Involved in conducting Client specific security awareness training program based on contractual (MSA) & regulatory requirements. · Managed Security Dashboard for Business Unit to impart security governance. · Have worked on application code security reviews with respect to web Application security guidelines. · Have worked on the SOX IT audit procedures and also carried out ITGC general controls testing. · Having experience as a Business analyst in gathering requirements and preparing BRD. · Strong programming skills in Oracle, PL-SQL, SQL, DB2, VB6.0 Technologies and basics of Informatica. |
Education
Work & Experience
Modified, maintained and developed the PLSQL and SQL codes to develop new enhancements. • Develop and maintain the documentation to support the team and business. • Responsibilities as an oracle developer include management of the queries, enhancement and support service issues. • Performed unit testing for the scripts.
Modified, maintained and developed the PLSQL and SQL codes to develop new enhancements. • Develop and maintain the documentation to support the team and business. • Responsibilities as an oracle developer include management of the queries, enhancement and support service issues. • Performed unit testing for the scripts
Modified, maintained and developed the PLSQL and SQL codes to develop new enhancements. • Develop and maintain the documentation to support the team and business. • Responsibilities as an oracle developer include management of the queries, enhancement and support service issues. • Performed unit testing for the scripts
Have worked on Carrying out User Access Management (UAM), Segregation of Duties (SOD), Revoke user, Password management, Change management reviews for the Sox applications. • Has been the Sox compliance coordinator with the external& internal auditors and also with the internal IT teams. • Interacted with external auditors on SOX related issues
• Implemented and maintained security controls adhering to client contractual agreement requirements with respect to ISO 27001 and organization baseline standards. • Performed various Information Security Audits for Clients ODC’s, Support Functions based on Security Policy & Procedure, Contractual and Client Security Requirements, ISO 27001 etc. Have worked in completing various Client Security Audits, Due Diligence Visits, Third Party Audits. • Performed multiple Security Risk Assessment for various clients, highlighting open and residual risk to Client and Leadership team • Have worked in completing SSAE 16 Audit interfacing with third party auditing organization. • Performed Risk Assessment for various Information Security Exceptions and Change Requests. • Have responded to various Request for proposals (RFP’s, RFI’s), client due diligence queries with respect to Information Security posture. • Involved in conducting Client specific security awareness training program based on contractual (MSA) & regulatory requirements. • Managed Security Dashboard for Business Unit to impart security governance.
• Have worked on the implementation of ISO 27001. • Implemented and maintained security controls adhering to client contractual agreement requirements with respect to ISO 27001 and organization baseline standards. • Performed various Information Security Audits based on Security Policy & Procedure, Contractual and Client Security Requirements, ISO 27001 etc. • Have worked in completing various Client Security Audits, Due Diligence Visits, Third Party Audits. • Performed multiple Security Risk Assessment for various clients, highlighting open and residual risk to Client and Leadership team. • Have knowledge on the operations of Amazon web services (AWS Cloud) and also about their security controls. • Performed Risk Assessment for various Information Security Exceptions and Change Requests. • Have responded to various Request for proposals (RFP’s, RFI’s), client due diligence queries with respect to Information Security posture. • Involved in conducting Client specific security awareness training program based on contractual (MSA) & regulatory requirements.