Kunal Jangra

Assistant Manager (Tprm) Vendor Security Risk Specialist @SBI Card

Gurugram, HR, IN
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Jun 2023 — Present

Assistant Manager (Tprm) Vendor Security Risk Specialist @SBI Card

View department →

Gurugram, IN

Conducted 100+ vendor security risk assessments for medium, high, and critical-risk vendors. • Performed on-site security audits across multiple Indian states to evaluate vendors’ compliance with SBI Card’s security requirements. • Reviewed cloud vendors (AWS, Azure, private) for security posture, network segmentation, encryption, and regulatory compliance. • Ensured compliance with ISO 27001:2022, SOC 2 Type II, and PCI DSS frameworks. • Collaborated with business, procurement, and legal teams to update contracts when vendor service changes impacted compliance. • Developed Corrective Action Plans (CAPs) for identified risks and followed up to ensure timely remediation. • Conducted firewall configuration reviews (SOPHOS) and network segmentation checks for vendor environments. • Supported internal and external audits, providing risk documentation and evidence.

EDUCATION

2019 — 2023

Amity University, Noida

Bachelor of Technology - BTech

ABOUT KUNAL JANGRA

Information Security professional with 2+ years of experience in Vendor Security Risk Management, Compliance Audits, and Third-Party Risk Assessments in the BFSI sector.Currently serving as Assistant Manager – Information Security at SBI Card, specializing in assessing medium, high, and critical-risk vendors through on-site and remote audits. Experienced in ISO 27001:2022 implementation & audits, SOC 2 reviews, PCI DSS compliance, and cloud security evaluations.Skilled in: • Third-Party Risk Management (TPRM) – Vendor onboarding, periodic reviews, exit audits • Security Audits – On-site & virtual audits across India • Cloud Security – AWS, Azure, private cloud controls & compliance • Regulatory Compliance – RBI guidelines, DPDP Act, PCI DSS • Risk Reporting – Inherent/Residual risk analysis, Corrective Action PlansPassionate about strengthening vendor ecosystems, reducing cyber risk exposure, and driving compliance maturity within organizations. Always eager to learn, adapt, and implement best practices in information security governance.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.