Ashutosh Dubey
Information Security | CISSP | CISA | ISO 27001 | CSM
- Role
- Manager - Cyber Strategy & Transformation at Deloitte
- Location
- Hyderabad, TG, IN
- LinkedIn followers
- 500 followers
About Ashutosh Dubey
Ashutosh is CISSP, CISA and ISO 27001 certified Information Security Manager at Deloitte & Touche Assurance & Enterprise Risk Services. His key area of focus is in the domain of Security Management and Risk Assessments.Ashutosh has rich experience in collaborating with various vertical heads in the client organization(s) to bring the best out of partnerships. Strong expertise in cyber security risk assessment and controls evaluation for clients.Areas of work include:a) Assisting organizations to design and implement risk management strategies and programs that are aligned with overall business strategies and objectives.b) Conducting gap or readiness assessments against regulatory or industry standards or customized cyber security frameworks specific to the client’s industry, business and geography. Develop remediation strategy roadmaps to assist clients address their current state gaps and achieve a target state of maturity for their information security posture.c) Help our clients develop customized policies and compliance programs to meet legal and regulatory requirements based on the geographies in which they operate.d) Security strategy development, compliance management (HIPAA, NIST, PCI, ISO 27001 etc.), policies, procedures and standards development.e) Worked on the IT Asset risk assessment engagement for one of the largest life insurance companies in the industry. Responsible of auditing its global IT systems consists of over 400 applications and infrastructure environments. Engagement scope includes testing of over 300 controls for the critical IT assets including planning, executing, monitoring the progress, and communicating with the client.f) Worked with RSA Archer software to implement GRC solutions for clients spanning across Financial Services domain. g) Hands-on knowledge and experience in the following regulation/requirements: IS27001/02, NIST CSF, NIST 800:53, PCI DSS, HIPAA, HITRUST, COBIT, SOC1/2, GDPR, CMMI, etc. Apart from that extensive experience in the Project Management Office (PMO) of Large projects.h) Understanding of pre-sales and sales support activities such as RFP/RFI response, engagement pricing, etc.Ashutosh has a Post Graduate Diploma in Management (PGDM), specializing in Finance and Marketing from a leading B school. Prior to MBA, Ashutosh has worked within the FSI domain in Infosys Ltd.
Experience
Manager - Cyber Strategy & Transformation
Jun 2015 — Present · Hyderabad, IN
a) Security strategy development, compliance management (HIPAA, NIST 800-53, NIST CSF, PCI, GDPR, ISO 27001 etc.), policies, procedures and standards development.b) Help organizations to design and implement risk management strategies and programs that are aligned with overall business strategies and objectives.c) Conduct gap assessments against regulatory or industry standards or customized cyber security frameworks specific to the client’s industry, business and geography. Develop remediation strategy roadmaps to assist clients address their current state gaps and achieve a target state of maturity for their information security posture.d) Help our clients develop customized policies and compliance programs to meet unique legal and regulatory requirements based on the geographies in which they operate.e) Product security and supplier risk assessmentsf) Conduct risk assessments based on established standards (NIST, HIPAA, ISO 27001) and do gap analysis and provide future state information security solutions and road map.g) Conducted IT Audit of the largest life insurance companies in the industry. Responsible of auditing its global IT systems consists of over 200 applications and infrastructure environments. Lead the team to test of over 300 controls including planning, executing, monitoring the progress, and communicating with the client.h) Design and Deployment of Governance Risk and Compliance solutions for clients. Responsible for requirements gathering, requirements analysis, business process design, GRC strategy and implementation, business & systems implementation and integration.
Education
St. Aloysius Senior Secondary School, Jabalpur(M.P)
Senior Secondary certificate, Maths Science Computer
2001 — 2005
Jabalpur Engineering College, Jabalpur(GEC, Jabalpur)
Bachelor of Engineering (B.E.), Mechanical Engineering
2006 — 2010
Lal Bahadur Shastri Inst. Of Management
PGDM, Business Administration and Management, General
2013 — 2015
Skills
- Case Studies
- Microsoft Excel
- Microsoft Office
- Market Research
- Analysis
- Credit Risk
- Requirements Gathering
- Requirements Analysis
- Business Analysis
- Team Management
- Management
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.