At Deloitte USI, I lead end-to-end information security risk assessments, control testing, and compliance programs aligned to ISO 27001, NIST CSF, COBIT, CIS Controls, and Cyber Essentials Plus.
I perform 40–50 risk assessments annually, own the enterprise risk register, and work with business and IT leaders to turn technical findings into clear risk decisions and practical remediation plans. I also support Cyber Essentials Plus certification through evidence collection, control validation, and assessor liaison across firewall, configuration, access, malware, and patch-management domains.
Previously at HCL Technologies, I monitored and triaged endpoint and malware security events, analysed logs, supported assurance evidence, implemented BitLocker encryption, and monitored FireEye alerts. I produced operational dashboards, metrics, and shift handovers to improve visibility into control status and risk trends.
My earlier engineering work included secure embedded-device architecture, encryption, access controls, firmware testing, and 24/7 monitoring solutions. I'm CISSP-certified and bring more than 10 years of IT experience, including over seven years focused on cybersecurity risk, compliance, and assurance.
