Nirmal Joshi
@nirmaljoshi
Certified Information Systems Security Professional with expertise in Third Party Security
What I'm looking for
I am a Certified Information Systems Security Professional (CISSP) with 4 years of experience in Third Party Security Management (TPRM), IT Risk Management, security tool design and development, and prioritizing a strong security posture of the organization. Currently pursuing a Master of Technology in Software Systems with a specialization in CyberSecurity, I am building a strong foundation in the cybersecurity domain.
In my role as an Information Security Analyst at American Express, I am part of the Third Party Risk and Information Security Team. I conduct in-depth reviews of third parties, focusing on IT Risk Controls, Physical Security, Identity and Access Management (IAM), Data Loss Prevention (DLP), Security Infrastructure, Incident Management, and Secure Development. I also contribute to process efficiencies, resource optimization, and automation within the team. Additionally, I deliver technical sessions on various security topics in team development programs.
Previously, as an Information Security Engineer at NCR Corporation, I was responsible for preparing and implementing the Third Party Risk Management (TPRM) Program. I conducted Supplier/Vendor Information Security Assessments, performed Internal IT Risk Assessments, and designed and developed security tools to automate processes. I actively managed organizational-level risks and participated in annual global hackathons. I also delivered technical sessions on various topics in global unconferences.
Experience
Work history, roles, and key accomplishments
Information Security Analyst
American Express
Part of Third Party Risk and Information Security Team executed and operated under Information Security Office. Conduct in-depth reviews of Third Parties with a focus on IT Risk Controls, Physical Security, Identity and Access Management(IAM), Data Loss Prevention(DLP), Security Infrastructure, Incident Management, Secure Development. Help in coordinating information security gap remediation with
Information Security Engineer
NCR Corporation
Prepared and implemented Third Party Risk Management(TPRM) Program for NCR. Prioritized and conducted Supplier/Vendor Information Security Assessments, performed Internal IT Risk Assessment, and designed and developed Security Tools like Threat Modeling and Application Security Testing Module. Managed organizational level risks in centralized Risk Register and actively participated in Annual Glob
Education
Degrees, certifications, and relevant coursework
Nirmal hasn't added their education
Don't worry, there are 90k+ talented remote workers on Himalayas
Browse remote talentTech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Interested in hiring Nirmal?
You can contact Nirmal and 90k+ other talented remote workers on Himalayas.
Message NirmalFind your dream job
Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
