Ankita Patil
Junior IT Security Specialist @Futureon
Signup · Get unlimited contacts
WORK HISTORY
Junior IT Security Specialist @Futureon
Winchester, GB
Contributed to strengthening organizational security posture through policy development, monitoring, and incident response • Assisted in maintaining compliance with SOC 2, ISO 27001, and data protection frameworks • Performed risk-based vendor security assessments and third-party due diligence • Administered IAM and cloud directory platforms, ensuring secure and compliant access management • Executed phishing simulations and drove security awareness initiatives • Provided IT administration and end-user support in a security-focused environment • Managed software licensing, IT assets, and employee lifecycle processes• Collected, organized, and maintained audit evidence to support ISO 27001 and SOC 2 compliance assessments• Partnered with internal teams to validate security controls and ensure proper documentation• Assisted in preparing for internal and external audits, including control walkthroughs and gap remediation• Maintained policies, procedures, and control records to demonstrate compliance and operational effectiveness• Tracked and updated compliance artifacts (access reviews, risk assessments, incident logs, vendor assessments)• Supported control testing by providing system screenshots, logs, configurations, and procedural evidence• Helped coordinate auditor requests and ensured timely submission of accurate documentation• Contributed to continuous compliance monitoring and improvement initiatives
EDUCATION
University of Winchester
MSc, Masters of Cybersecurity
Jain College of Engineering, BELGAUM
Bachelor of Engineering - BE
ABOUT ANKITA PATIL
I am an IT Security and GRC professional with end-to-end ownership experience across information security governance, risk management, compliance, and IT operations. Having served as the sole IT and Security lead at FutureOn (UK), I have built and operated security programmes from the ground up — managing everything from vendor risk assessments and risk registers to security incident root cause analysis and direct stakeholder communication.My core areas of expertise include: Governance, Risk & Compliance (GRC) — ISO 27001 ISMS management, SOC 2 compliance, audit readiness, evidence collection, policy and standards maintenance, and compliance monitoring aligned to GDPR. Third-Party Risk Management (TPRM) — End-to-end vendor risk lifecycle including due diligence, security questionnaires, continuous monitoring, gap tracking, and risk escalation to leadership. Risk Register Ownership — Sole owner of enterprise risk register — identifying, assessing, documenting, and tracking all cybersecurity and IT risks with management reporting and dashboards. Incident Response & Root Cause Analysis — Led all security incident investigations, performed thorough RCA, defined corrective and preventive actions, and communicated findings directly to senior stakeholders. Identity & Access Management (IAM) — Full identity lifecycle management (Joiners/Movers/Leavers), access recertification, least-privilege enforcement, and asset governance using Microsoft 365 and JumpCloud.Before moving into security, I built a strong technology foundation as a Mainframe Developer on Lloyds Banking Group systems and a Software Engineer on British Airways systems — giving me a unique combination of financial services, aviation, and technology experience that I bring to every security and compliance engagement.I hold an MSc in Cyber Security from the University of Winchester (UK) and am actively pursuing ISO 27001 Lead Implementer certification. I am passionate about building security cultures, maturing GRC programmes, and translating complex risks into clear business decisions. Open to GRC, IT Security, IAM, Compliance, and Risk Management opportunities globally and remotely.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.