Abul Kalam Azad
Head of Information Security @Eastern Bank PLC.
Signup · Get unlimited contacts
WORK HISTORY
Head of Information Security @Eastern Bank PLC.
Strategic Security Leadership:Developed and implemented comprehensive information security plans to safeguard organizationaldata.Owned and operated ISO/IEC 27001-certified ISMS (scope, risk, SoA, audits, management reviews, continual improvement).Championed the adoption of Payment Card Industry Data Security Standard (PCI DSS) for securepayment processing.Vulnerability Management & Risk Mitigation:Reduced high-risk audit findings by 30%+ through stronger governance, evidence discipline, and control monitoring.Recommended and implemented appropriate security controls to address identified risks.Security Awareness & Education:Conducted training sessions and workshops to educate staff on information security best practices andISO 27001 compliance.Fostered a culture of security awareness within the organization.Security Architecture & Implementation:Implemented industry-leading security frameworks, standards, and best practices (e.g, NISTCybersecurity Framework, CIS Controls, and OWASP Top 10).Led the evaluation and deployment of critical security solutions like SIEM, ESG, NMS, File IntegritySolutions, WAFs, and NGFWs.Threat Detection & Response:Continuously monitored for potential cybersecurity threats and risks.Integrated security into the development lifecycle (Shift-Left approach) by providing securityconsultations throughout the software development process.Implemented various application security testing methodologies, including static code analysis, penetration testing, and vulnerability testing (OWASP 10).Incident Management & Recovery:Oversaw the expansion and management of the organization\'s incident management and responseprogram.Technical Expertise:Ensured the proper implementation of security hardening specifications.Supported the technical assessment of vulnerabilities using the CVSS framework.Generated insightful management reports and security metrics.Implementation of cloud security.
EDUCATION
Bangalore University
B.Sc - Computer Science, Computer Science
Bangladesh University of Engineering and Technology
Post Graduate Diploma, ICT
Bangladesh University of Engineering & Technology
Master's degree, Computer Science & Engineering
ABOUT ABUL KALAM AZAD
Senior cybersecurity and GRC leader with 20+ years of experience in regulated financial services, now based in Germany and open to opportunities across Germany. For the last 5+ years, I have led end-to-end ISO/IEC 27001 ISMS implementation and operation in a certified environment—defining scope, running risk assessments, maintaining the Statement of Applicability, driving control implementation, leading internal audits, supporting surveillance/recertification audits, and ensuring continual improvement through measurable KPIs and management reviews. In parallel, I have delivered PCI DSS implementation and continuous compliance for 13+ years across card and payment environments, ensuring strong security controls, audit readiness, and operational continuity.I bring strong Germany/EU-aligned security expertise including DSGVO/GDPR governance, BSI IT-Grundschutz mapping, DORA operational resilience concepts, NIS2 alignment, and practical compliance translation into implementable technical and organizational measures (TOMs). My strengths include risk management, third-party/vendor assurance, incident governance, SOC oversight, IAM/SSO/MFA/RBAC, logging and audit trails, vulnerability and patch management, and board-level reporting. I’m known for building “audit-ready all year” security programs—pragmatic, structured, and focused on outcomes.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.