Jushandra Kumar Palla
Senior Analyst at Deloitte | Cyber Strategy and Transformation | Cyber Security, Information Security and Data Privacy | ISO 27001: 2022 LA
- Role
- Senior Analyst at Deloitte
- Location
- Bengaluru, IN
- LinkedIn followers
- 500 followers
About Jushandra Kumar Palla
I am Jushandra Kumar Palla, a Senior Analyst based in the Bangalore office of Deloitte India Risk Advisory practices, specifically in the \"Cyber Strategy & Transformation - Extended Enterprises Risk Management\" team. With more than a year of experience, I excel in Cyber Security, Information Security Management Systems and Data Privacy. Particularly ISO 27001:2022, and third-party risk assessments. I am certified as an ISO 27001:2022 Lead Auditor and has foundational knowledge of ISO 19011:2018 auditing principles. I am adept at inherent risk profiling, vendor due diligence, and enhancing assessment questionnaires. I also Possess strong expertise and hands-on experience with vulnerability management and scanning tools, including Nessus.
Experience
Senior Analyst
Jul 2023 — Present · Bengaluru, IN
Developed and implemented comprehensive third-party risk assessments with a focus on ISO 27001, ensuring strict alignment with industry standards.Facilitated due diligence reviews for vendors by analyzing inherent risk profiles, tailoring assessment strategies to vendor responses, and presenting detailed findings to stakeholders.Managed the creation of detailed audit and gap reports, providing actionable recommendations to enable informed decision-making by senior leadership.Assessed and optimized SIG questionnaires, enhancing the accuracy of vendor evaluations and improving overall risk management processes.Planned and executed the development of risk registers, contributing to robust tracking and mitigation strategies for potential risks.Developed a compliance documentation tool using Power Apps, streamlining the process of documenting client compliance issues and ensuring adherence to required standards.Conducted endpoint security system assessments to identify existing system vulnerabilities and prevent potential data leaks.Successfully worked on policy creation to align client operations with ISO 27001:2022 compliance requirements.Created Records of Processing Activities (ROPA) to address data privacy concerns in specific engagement.Drafted data flow to illustrate departmental data flows and their associated functionalities.Conducted financial risk assessments of third-party vendors for a cell manufacturing client by analyzing financial data and visualizing vendor financial health, regulatory standing, and compliance posture through interactive Power BI dashboards to support stakeholder decision-making.Performed ISMS control testing using the SOG-Cybersecurity for Regulated Entities framework to evaluate the effectiveness of cybersecurity controls and validate regulatory compliance.
Education
Jain (Deemed-to-be University)
Bachelor of Technology - BTech
2019 — 2023
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.