At Karamtara Engineering Ltd., I manage the GRC function and oversee implementation and continuous improvement of ISO/IEC 27001:2022, DPDPA, and GDPR compliance programs.
I conduct enterprise-wide and vendor security risk assessments, plan risk treatment, and track remediation activities to closure. I also manage governance processes for endpoint protection, DLP, Microsoft Entra ID, antivirus, threat intelligence, and security monitoring.
Previously, at eProtect 360 Solutions Pvt. Ltd., I led ISO 27001 and ISO 22301 certification audits and implementation projects. At Shieldbyte Infosec Pvt. Ltd., I supported assessments and audits and drafted ISMS documentation, including policies, procedures, and risk registers.

