Summary
Overview
Work History
Education
Skills
Websites
Certification
Accomplishments
Affiliations
Phone
Currentlocation
Personal Information
Languages
References
Software
Interests
Timeline
Generic
Roshan Hareendra Babu

Roshan Hareendra Babu

Cybersecurity Leader | Managed Security Services | GRC, Cloud & Data Privacy
Coppell,Texas

Summary

Seasoned Cybersecurity leader with over 14 years of experience in managing and deploying advanced solutions for Information Security. Adept in designing, reviewing security architectures, with strong functional knowledge in cloud computing platforms.

Proven track record in framing cost effective, efficient solutions for delivering high quality outcomes, strong mentoring initiatives and driving talent retention. Passionate to always contribute to high-growth environments that value big-picture thinking.

Overview

17
17
years of professional experience
5
5
years of post-secondary education
9
9
Certifications

Work History

Senior Consultant

Infosys Limited
12.2018 - Current
  • Managed Security Services primary responsible point of contact for Vulnerability management, Threat Intelligence, Data Privacy compliance
  • Spearheaded the Risk management and Compliance engagement associated with security controls for a US strategic accounts in SOX ITGC, NIST-CSF and ISO 27001 with Generative AI for Compliance process- Manage Change, Manage Access and Mange Operations Security Quarterly & Baseline controls design and operating effectiveness
  • Cyber Risk Management, Threat Intelligence, Vulnerability Management with Network based and Agent based vulnerability scanning (Nessus, Outpost24 and Qualys) and remediation based on strategic prioritization for multiple client geo accounts
  • Performed PCI-DSS, HIPPA and FDA GxP regulations auditing and reporting
  • Cloud Platforms functional consulting based on the requirements of the stakeholders
  • Strong Expertise in Third-Party Risk Management with risk assessment, long term and short-term plans for risk mitigation
  • Quantitative and Qualitative Risk Assessment and presentation to C-suite leadership team for driving strategic decisions
  • Governance presentation and CISO Dashboard metric configuration (CyberGaze) and insights presentation to ensure KPI, KRI and Policy adherence.

Associate Lead

Envestnet
06.2016 - 12.2018
  • Reviewed Security architectures of Product security posture improvement and collaborated with multiple unit managers to improve overall security posture
  • PCI DSS requirements check, Data Privacy (database pseudo coding and masking validations for encryption)
  • Data Privacy adherence for US investors, PII, SPI checks and issues are all mandated
  • Deeply involved in cadence calls with security review calls to demonstrate value proposition
  • Suggested RPA BOT automation using UiPath for evidence gathering for Compliance requirements and ensure accuracy and completeness of evidence
  • Quarterly presentations and metrics to show the KPI and KRI with progress charts to C-suite level management.

Business Analyst

Macrosoft
07.2013 - 06.2016
  • Requirements gathering and analysis for new projects, Presales - Proposals for RFP, Process flows, Wireframes, Design documents
  • Product functional consulting from security perspective
  • Primary point of contact responsible in the development of security policies and procedures aligned with cloud computing and security postures
  • Conducted security assessments and audits, and presented findings to clients to facilitate informed decision-making
  • IT Security custom audit security questionnaire preparation based on ISO 27001
  • Secure SDLC awareness session materials building and training, Data privacy by design in SDLC capability development
  • Senior Management level presentations on Product Roadmap development for strategic decisions and Data Privacy adherence for GDPR for European accounts line of business.

IT Department - TW

Axiom Telecom LLC
04.2012 - 05.2013
  • IT Security Policies development, Vulnerability Management coordination with SCCM team coordination on Server patching window- CVSS score based prioritization and impact analysis
  • Security SME responsible for identifying trends, requirement analysis, feasibility study and designing/enhancing systems for all Product level security for projects (e-Commerce, POS, Retail Service system, etc.) Collaborated with internal teams to drive project management efforts for security product implementations, including Web Application Firewalls and Data masking
  • Conducted training and kept up to date with the evolving security services and technologies to maintain cutting-edge knowledge.

Software Engineer

Infosys Limited
10.2007 - 09.2009
  • Software designer, developer for Core banking solution at OS layer (Z/OS) and DB layer (Oracle to DB2) in line with Product security standards
  • Led the implementation and management of security solutions, focusing on vulnerability scanning, penetration tests, and data protection strategies
  • Conferred the title STAR Infoscion for clearing the Business Language Learning Credit soft skills assessment.

Education

Master of Science - Internet Computing & Network Security

Loughborough University
Loughborough, United Kingdom
09.2009 - 05.2011

Bachelor of Technology - Computer Science and Engineering

Govt. Model Engineering College
Kerala, India
08.2003 - 05.2007

Skills

    Information Security

    Compliance Assurance

    Risk Management

    Governance

    Vulnerability Management

    Threat Intelligence

    Project Management

    Cloud Computing Consulting

    Compliance Assurance

    Presentations

    Client Relations and Engagement

    Flexibility

    Teamwork mindset

    Consulting

    Performance Benchmarking

Certification

Purdue University - Applied Cybersecurity Essentials-Hybrid Intensive (Enterprise Security, Ethical Hacking, Vulnerability Management)

Accomplishments

  • Research Paper Publication: Authored the PoV publication based on best practices research. (https://www.infosys.com/services/cybersecurity/insights/secure-offboarding.pdf)
  • Domain Maestro Award winner (Infosys): Recognition for strong technical acumen in Cybersecurity practice and mentoring resources in various accounts to scale up to speed.
  • INSTA Award - multiple quarters (Infosys): Best performer awards in multiple quarters for consistently delivering quality efficient outcomes.
  • Kaizen Award (Axiom Telecom): Deploying Process level improvements in Axiom Telecom IT department projects to ensure policy adherence.
  • Best Performer Award (Envestnet): Delivering results in challenging environment with resource availability issues.
  • Spot award (Macrosoft): Recognition for showcasing presentations with strong articulation of ideas.

Affiliations

  • Information Systems Audit and Control Association (ISACA)
  • International Association of Privacy Professionals (IAPP)

Phone

+1 (945)-267-8132, +91-7356842895

Currentlocation

836 Woodmoor Drive, Coppell, TX, 75019, USA

Personal Information

Visa Status: H1B

Languages

English - Proficient
Hindi - Intermediate
Malayalam - Native
Tamil - Intermediate

References

Prof. (Dr). Olaf Maennel, School of Computer and Mathematical Sciences, The University of Adelaide, Ingkarni Wardli 4.18, Adelaide, SA, 5000, Australia, om@maennel.net

Software

Compliance - SOX ITGC, ISO 27001, NIST-CSF, PCI-DSS, HIPAA, FedRAMP, CCM, CAIQ

Vulnerability Scanners - Outpost24, Nessus, Qualys

Threat Intelligence - Falcon Advisory Intelligence (CrowdStrike)

Cloud Computing - AWS, Azure, GCP, OCI

GRC Tools - RSA Archer, ServiceNow, MetricStream

Data Privacy - GDPR, DPDPA, CCPA

Risk Management - OneTrust TPRM

IAM - SailPoint Identity, Okta Workforce Identity

PAM - CyberArk

Databases - MySQL, Oracle, DB2

Sparx Enterprise Architect

ALM - JIRA, Confluence, Rally

Interests

Cricket

Gaming

Timeline

Senior Consultant

Infosys Limited
12.2018 - Current

Associate Lead

Envestnet
06.2016 - 12.2018

Business Analyst

Macrosoft
07.2013 - 06.2016

IT Department - TW

Axiom Telecom LLC
04.2012 - 05.2013

Master of Science - Internet Computing & Network Security

Loughborough University
09.2009 - 05.2011

Software Engineer

Infosys Limited
10.2007 - 09.2009

Bachelor of Technology - Computer Science and Engineering

Govt. Model Engineering College
08.2003 - 05.2007
Roshan Hareendra BabuCybersecurity Leader | Managed Security Services | GRC, Cloud & Data Privacy