Information Security Auditor
Send a job offer directly to this candidate
Dedicated Information Security Analyst with a bachelor's degree in cyber security from Netaji Subhash Engineering College and currently pursuing an MBA in IT Management. I have over three years of experience in Governance, Risk, and Compliance (GRC), with expertise in Information Security Management Systems (ISMS), cybersecurity audits, risk assessments, security governance, and regulatory compliance across frameworks including ISO/IEC 27001, NIST CSF, CERT-In, NCIIPC, and the DPDP Act, 2023. Experienced in independently managing cybersecurity audit engagements for government and critical infrastructure organizations, developing security and privacy policies, and driving compliance initiatives.
Passionate about strengthening organizational security posture through effective risk management, data privacy, and continuous improvement while staying aligned with evolving regulatory and industry standards.
Assistant Security Auditor- ISMS - C3IHUB IIT Kanpur
(2025-08)
At C3iHub, IIT Kanpur, I conduct cybersecurity audits for critical government organizations, ensuring compliance with NCIIPC guidelines, MeitY Office Memorandum, CERT-In advisories, ISO/IEC 27001, and the NIST Cybersecurity Framework (CSF). My responsibilities include assessing security controls, conducting risk assessments, identifying compliance gaps, and recommending remediation measures to strengthen cybersecurity posture. I have also contributed to data privacy initiatives by developing and reviewing privacy policies, supporting DPDP Act, 2023 alignment, and implementing privacy governance controls to enhance organizational compliance and data protection.
Security Analyst - Prime Infoserv Pvt. Ltd.
(2023-06 - 2025-07)
I played my role as a Security Analyst in network and web applications for first three months. Later, I switched to the field of Information Security and Governance, Risk and Compliance. In this phase I have worked in several Information Security projects for Bank, Microfinance Services, Stock broking, Insurance Companies and many more. I have worked on several audits related to vendor management which include activities from reviewing the legal contracts & agreements to verifying the service deliveries and vendor assessments.
Services is my specialization as I have enrolled myself as a Lead Auditor in ISO 27001.
VAPT Intern - Indian School of Ethical Hacking
(2022-10 - 2023-04)
Worked as a VAPT Intern at the Indian School of Ethical Hacking. Worked in the VAPT Audit team for Six months. In these months, I used tools such as Nmap, Nessus, Metasploit, Burp suite, and many more.
Class X - All Subjects - Holy Cross School (2018)
Class XII - Computer Science - Jyotirmoy Public School (2020)
BSc - Cyber Security - Netaji Subhash Engineering College (2023)
MBA - IT Management