Kishan Mullegama
@kishanmullegama
Experienced cybersecurity professional specializing in risk management and compliance.
What I'm looking for
I am a seasoned cybersecurity professional with over 18 years of experience in the Governance, Risk, and Compliance (GRC) and cybersecurity fields. My expertise lies in providing security assurance for multi-million-dollar projects across various sectors, including Banking, Technology, and Oil & Gas. I hold a Master’s degree in Network Security and several industry certifications, including CISSP, CCSP, GCIH, and CISA, which underscore my commitment to maintaining the highest standards in cybersecurity.
Throughout my career, I have successfully designed, implemented, and managed information security services, including Security Operations Centers (SOC) and Vulnerability Management programs. My role as a Lead Security Risk Specialist at UKG involves conducting risk assessments, developing security policies, and managing GRC tools such as Archer and LogicGate. I am passionate about advancing cybersecurity frameworks and have been instrumental in drafting standards for Zero Trust architecture and AI policy, ensuring organizations remain resilient against emerging threats.
Experience
Work history, roles, and key accomplishments
Lead Security Risk Specialist
UKG
Oct 2018 - Present (6 years 7 months)
As a Lead Security Risk Specialist, I implement and assess security controls, conduct risk assessments, and maintain GRC tools like Archer and LogicGate. I develop security policies and manage technical security risks while drafting standards for ZeroTrust architecture.
Information Security Consultant
Mary Kay
Jan 2018 - Jul 2018 (6 months)
As an Information Security Consultant, I designed and operated a vulnerability management program, managed a team, and created information security policies and standards for global eCommerce sites.
Information Security Engineer
Federal Reserve Bank
Dec 2014 - Jan 2018 (3 years 1 month)
Responsible for IT risk assessments, vulnerability management, and security control assessments. I managed IT security projects and conducted DLP investigations while ensuring compliance with NIST standards.
Security Engineer
Qatar Petroleum
Mar 2011 - Dec 2014 (3 years 9 months)
As a Security Engineer, I managed vulnerability assessments, incident response, and security operations for Qatar Petroleum, enhancing security posture through policy development and process implementation.
Information Security Consultant
Sri Lanka Computer Emergency Response Team
Jul 2010 - Nov 2010 (4 months)
Worked as an Information Security Solution Architect to implement a Computer Security Incident Response Team (CSIRT) for the banking sector in Sri Lanka.
IT Security Consultant
Seminole Gaming
May 2009 - May 2010 (1 year)
Provided IT security consultancy services, designed and implemented the Palo Alto security suite, and maintained proxy appliances across multiple Seminole Gaming locations.
Global Security Engineer
ABN AMRO
Nov 2005 - Aug 2009 (3 years 9 months)
Worked as a Global Security Engineer providing vulnerability management and incident response services for ABN AMRO, ensuring security for over 100,000 global users.
Education
Degrees, certifications, and relevant coursework
Capitol College
Master of Science, Network Security
2003 - 2005
Completed a Master of Science in Network Security, focusing on advanced security protocols, risk management, and information assurance.
Barry University
Bachelor of Science, Computer Networks
2000 - 2003
Earned a Bachelor of Science in Professional Studies with a concentration in Computer Networks, covering essential networking concepts and technologies.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Interested in hiring Kishan?
You can contact Kishan and 90k+ other talented remote workers on Himalayas.
Message KishanFind your dream job
Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
