trav k
@travk
Results-driven Information Security Specialist and Project Manager.
What I'm looking for
I am a results-driven Information Security Specialist and Project Manager with extensive experience in leading information security projects and supporting risk and compliance initiatives within the banking and technology sectors. My expertise lies in aligning cybersecurity goals with business outcomes, ensuring that organizations not only meet compliance standards but also enhance their operational resilience.
Throughout my career, I have successfully managed significant upgrades, including the transition from ISO 27001:2013 to ISO 27001:2022, and have led the organization’s PCI-DSS v4 certification project. I excel in cross-functional collaboration, acting as a key liaison between technical teams and business leaders to ensure smooth project execution. My commitment to continuous improvement is evident in my support for Business Continuity Planning and Disaster Recovery efforts, as well as my proactive approach to incident management and security operations.
Experience
Work history, roles, and key accomplishments
Associate Project Manager - Information Systems Security
DFCC Bank PLC
Jun 2024 - Present (1 year)
Led the upgrade from ISO 27001:2013 to ISO 27001:2022, managing end-to-end certification and driving adoption of ISO 27035 and ISO 20000 frameworks. Successfully directed the organization’s PCI-DSS v4 certification project and supported Business Continuity Planning and Disaster Recovery efforts. Enhanced enterprise security infrastructure by implementing Oracle TDE Encryption, Privileged Access Ma
Specialist - SOC Analyst
Scicom Lanka
Jan 2024 - Present (1 year 5 months)
Monitored and analyzed security incidents in real-time using SIEM and threat detection tools, providing technical support for incident triage, escalation, and containment. Streamlined and maintained SOC SOPs to reflect evolving threat landscapes and industry best practices. Conducted threat intelligence analysis and collaborated with cross-functional teams to remediate incidents and address securi
Associate Information Security Analyst
Pearson Lanka
May 2022 - Present (3 years 1 month)
Managed global and divisional information security risk exception and risk management processes, ensuring alignment with ISO 27001 standards. Conducted third-party security and privacy assessments, maintaining continuous monitoring using tiered risk categorization frameworks. Supported M&A due diligence, consulted on ISO 22301 compliance, and aided SOC in incident management.
Information Security Analyst - GRC (Intern)
Pearson Lanka
May 2021 - Present (4 years 1 month)
Supported the Governance, Risk & Compliance (GRC) team in various information security initiatives. Assisted with daily operations related to information security analysis and compliance. Gained foundational experience in security frameworks and risk assessment processes.
Network Maintenance Intern
Lanka Bell
Aug 2018 - Present (6 years 10 months)
Assisted with network infrastructure maintenance and troubleshooting tasks. Gained practical experience in network operations and support. Contributed to ensuring the stability and performance of network systems.
Hardware Maintenance Intern
Swiss Comp Pvt Ltd
May 2018 - Present (7 years 1 month)
Performed hardware maintenance and repair tasks for various computer systems. Assisted in diagnosing and resolving hardware-related issues. Developed hands-on skills in computer assembly and component replacement.
Education
Degrees, certifications, and relevant coursework
LPF Academy
GCSE Advanced Level, Cambridge
Achieved the GCSE Advanced Level qualification through the Cambridge curriculum. Developed foundational academic skills across various subjects.
LPF Academy
IGCSE Ordinary Level, Cambridge
Obtained the IGCSE Ordinary Level qualification under the Cambridge examination board. Built a strong academic foundation in core subjects.
Sri Lanka Institute of Information Technology
BSc (Hons), Information Technology specialized in Cyber Security
Completed a Bachelor of Science (Honors) degree focusing on Information Technology with a specialization in Cyber Security. Gained comprehensive knowledge in cybersecurity principles, practices, and technologies.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Interested in hiring trav?
You can contact trav and 90k+ other talented remote workers on Himalayas.
Message travFind your dream job
Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
