HimalayasHimalayas logo
Ramsha QureshiRQ
Open to opportunities

Ramsha Qureshi

@ramshaqureshi

Information Security Analyst specializing in ISO 27001 and third-party risk management through strong GRC execution.

India
Message

What I'm looking for

I’m looking for a role where I can strengthen ISO 27001 and GRC through supplier/outsourcing risk assessments, audits (PCI DSS/ISMS), and improved security controls, partnering cross-functionally in a security-forward, growth-focused environment.

I’m an Information Security Analyst focused on turning governance, risk, and compliance into practical security improvements. I help organizations strengthen their resilience by aligning security work with ISO 27001 and global security frameworks, while keeping assessments clear, traceable, and actionable.

At De Lage Landen, I conduct comprehensive supplier and outsourcing risk assessments using OneTrust. I evaluate vendors against regulatory, data privacy, information security, and internal policy requirements, document findings and mitigation plans in OneTrust, and support ongoing risk monitoring, compliance reporting, and governance reviews.

Previously at EY, I reviewed complex environments to identify risks and vulnerabilities and supported PCI DSS compliance through cardholder data flow analysis and evidence collection. I also performed PCI DSS audits for iQor and coordinated PMO efforts at HCL, including spear phishing risk assessment and security awareness programs—building a strong audit and assessment mindset alongside my CRISC (in progress) and ISO 27001:2022 lead training.

Experience

Work history, roles, and key accomplishments

DL
Current

Information Security Executive

Jun 2024 - Present (1 year 10 months)

Conducting supplier and outsourcing risk assessments in OneTrust, evaluating vendor compliance with regulatory, privacy, information security, and internal policy requirements. Partnering with Procurement, Legal, and Information Security to standardise governance practices and document findings, mitigation plans, and ongoing monitoring for third-party risk posture.

WhiteHatJr logoWH

Mentor, WhiteHatJr

WhiteHatJr

Delivered interactive coding lessons, providing individual support to help students complete coding challenges and projects. Tracked student progress, followed the provided curriculum, and communicated updates to parents while staying current with coding trends to improve outcomes.

iQor logoIQ

PCI DSS Audit (iQor)

iQor

Evaluated systems, processes, and controls against PCI DSS requirements to identify gaps and non-compliance. Reviewed documentation evidence, assessed vulnerabilities affecting cardholder data, and prepared audit reports with remediation recommendations for continuous improvement.

HCL logoHC

PMO (Project & Security)

Coordinated PMO planning, execution, and monitoring to support alignment with organisational goals and timely project delivery. Identified project risks including spear phishing threats, supported stakeholder reporting on risks and security incidents, and helped implement security awareness programs to reduce phishing risk.

Education

Degrees, certifications, and relevant coursework

Barakatullah University logoBU

Barakatullah University

Bachelor of Computer Applications, Computer Applications

Completed a Bachelor of Computer Application program at Barakatullah University, Bhopal.

SC

St. Montfort School, CBSE

Higher Secondary (CBSE), Higher Secondary Education

Completed Higher Secondary education under the CBSE curriculum at St. Montfort School in Bhopal.

Tech stack

Software and tools used professionally

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan