Bhoomi G.
Information Security Specialist @Amazon || CISA | CISM | ISO 27001 LA | ISO 42001 LI | Ex-Deloitte | Ex-EY
- Role
- IT Risk Manager, Vendor Security and Appsec at Amazon
- Location
- New Delhi, DL, IN
- LinkedIn followers
- 500 followers
About Bhoomi G.
Experienced Cybersecurity Professional | CISA | CISM | ISO and NIST Auditor | Vendor Security Specialist With 8 years of dedicated experience in the cybersecurity field, I have developed a robust skill set focused on ensuring organizational security and compliance. My expertise spans:• Conducting comprehensive audits for ISO and NIST standards• Implementing and managing vendor security programs• Performing rigorous vendor audits to mitigate third-party risks• Developing and enforcing cybersecurity policies and procedures• Collaborating with cross-functional teams to enhance overall security postureThroughout my career, I\'ve consistently demonstrated a commitment to staying ahead of evolving cyber threats and compliance requirements. My approach combines technical acumen with strategic thinking to deliver actionable insights and sustainable security solutions.I\'m passionate about fostering a culture of security awareness and continuous improvement within organizations. Whether it\'s conducting a complex audit or streamlining vendor security processes, I bring a detail-oriented and results-driven approach to every project.Looking to connect with fellow cybersecurity professionals, industry leaders, and organizations committed to robust information security practices.
Experience
IT Risk Manager, Vendor Security and Appsec
Feb 2025 — Present
Led comprehensive vendor risk assessments, focusing on financial and information security aspects, to identify, analyze, and mitigate potential risks to the organization• Developed and maintained a robust risk management framework, including a risk matrix aligned with the organization\'s risk appetite, to facilitate informed decision-making and resource allocation• Managed the risk exception process through the Vendor Portfolio System (VPS), ensuring proper documentation, approval, and periodic review of accepted risks• Collaborated closely with internal security teams to align risk management strategies with overall security objectives, industry standards, and regulatory requirements• Conducted thorough third-party risk assessments, evaluating vendors\' security controls, policies, and procedures against established frameworks• Performed in-depth security reviews of internally developed applications, identifying vulnerabilities and recommending effective remediation strategies• Prioritized and drove the resolution of high-impact security findings, working cross-functionally with stakeholders to implement appropriate risk mitigation measures• Developed and presented comprehensive risk reports to senior management, providing insights on risk trends, emerging threats, and recommended mitigation strategies
Education
Asian School of Cyber Laws
Diploma in Cyber Law, Cyber Law
2017 — 2018
University of Mumbai
Bachelor's degree, Forensic Science
2013 — 2016
University of Mumbai
M.Sc in Forensic Science, Digital and Cyber forensics
2016 — 2018
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.