Rahul Ravi
@rahulravi
Experienced GRC professional with a strong background in information security.
What I'm looking for
I am an engaging team player and professional with over 9 years of experience in governance, risk, and compliance (GRC). My expertise lies in auditing and implementing multiple standards and frameworks within the regulatory and GRC domain. I am detail-oriented and have a proven track record of executing projects on time while solving complex problems efficiently.
Currently, I serve as the Information Security Officer at Newtap Finance, where I am the sole contributor for InfoSec Compliance. I have successfully created essential policies and conducted comprehensive risk assessments based on ISO standards. My previous roles at PhonePe and Aspire further honed my skills in internal audits and compliance, ensuring organizations meet regulatory requirements. I have led significant initiatives at CRED and OLA, driving compliance and security measures across various projects.
Experience
Work history, roles, and key accomplishments
Information Security Officer – GRC
Newtap Finance
Sep 2024 - Present (11 months)
As the sole individual contributor for InfoSec Compliance, I developed all relevant IS, IT, and Privacy policies, procedures, and SOPs. I conducted internal audits based on ISO/IEC 27001:2022 ISMS and RBI MD, along with comprehensive risk assessments and GAP analysis for the V-CIP process.
Manager – Internal Audit
PhonePe
Jun 2024 - Aug 2024 (2 months)
I supported the team in conducting internal audits of the organization's customer and merchant support functions, ensuring compliance with all applicable regulatory requirements. I also participated in scoping critical technologies related to support functions and performed ITGC audits.
Lead - IT GRC
Aspire
Apr 2024 - May 2024 (1 month)
I supported the organization in preparing for their initial PCI DSS v4.0.0 audit, managing communication with audit partners and ensuring audit readiness. I also reviewed organizational policies and gathered evidence for ISO 27001:2022 certification.
Security & Compliance
Cred
Feb 2020 - Apr 2024 (4 years 2 months)
I led the Audit & Assurance Pod within the risk, compliance, and privacy team, driving external audit efforts for the Dreamplug group across all certifications. I also spearheaded the implementation and audit programs for PCI DSS v3.2.1 and ISO 27001.
Senior Security Analyst
Ola
Aug 2019 - Feb 2020 (6 months)
I led the initial PCI DSS v3.2.1 implementation program for the company. I also conducted comprehensive risk assessments for various lines of businesses, including Ola Cabs, Ola Fleet, Ola Money, and Ola Electric.
Consultant/PCI QSA
SISA Information Security
Jul 2016 - Aug 2019 (3 years 1 month)
As a PCI Qualified Security Assessor (QSA), I led PCI DSS v3.2.1 assessments, successfully certifying over 40 unique clients across multiple continents. I also conducted regulatory compliance audits based on RBI and NPCI guidelines, along with ISO 27001:2013 ISMS readiness audits.
Risk Consultant
KPMG
Dec 2015 - Jun 2016 (6 months)
I conducted two-order risk analyses for clients based in the U.S. and Netherlands. I also supported the on-site audit team with document reviews, evidence collection, and report reviews.
Education
Degrees, certifications, and relevant coursework
Jain University
M.Sc., Information Security Management Services
2014 - 2016
Completed a Master of Science in Information Security Management Services. This program provided advanced knowledge and skills in managing information security within organizations.
Jain University
B.Sc., Electronics, Mathematics & Computer Science
2011 - 2014
Obtained a Bachelor of Science with a focus on Electronics, Mathematics, and Computer Science. This foundational degree provided a strong interdisciplinary background in technical and analytical subjects.
Availability
Location
Authorized to work in
Job categories
Interested in hiring Rahul?
You can contact Rahul and 90k+ other talented remote workers on Himalayas.
Message RahulFind your dream job
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
