Paul L.

Enterprise Information Security & Grc Consultant @Hitachi Energy

Warrington, GB
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Jun 2021 — Present

Enterprise Information Security & Grc Consultant @Hitachi Energy

View department →

CH

Consulted on the world’s largest ISO/IEC 27001 certification programme, spanning 70+ countries and 300+ locations, advising the Global CISO and senior security leadership on global security governance and certification strategy.Designed and implemented a Global Common Control Framework aligning multiple standards and regulatory requirements ISO/IEC 27001:2022, NIST CSF 2.0, NIS2, Cyber Resilience Act, IEC 62443, TISAX, CMMC 2.0, MLPS 2.0, OpenChain, GDPR and the EU AI Act, enabling consistent governance across global business units.Architected an enterprise cyber risk model in ServiceNow IRM, implementing local NIST RMF-aligned risk registers with inherent, control effectiveness, and residual risk scoring, applying defined risk tolerance with outcomes to accept or escalate risks to an enterprise risk framework aligned to ISO Integrated global audit findings and regulatory requirements into the control framework, enabling multi-standard compliance and traceability across the organisation.Developed board-level cyber risk reporting, including enterprise risk heatmaps, governance dashboards, and executive reporting for global cybersecurity leadership.Deep technical expertise in ServiceNow IRM, architecting enterprise GRC data models and governance architectures including UCF-aligned common control frameworks, authority documents and citations, compliance models (controls, control objectives, entity mappings enabling automated compliance), entity hierarchies (entities, entity types, entity classes), policies, issue management models (issues, remediation tasks, root cause), and risk models (risks, risk statements, risk assessment methodologies).

ABOUT PAUL L.

Enterprise Information Security consultant specialising in global control framework design, ISMS architecture, and regulatory compliance across complex organisations. Consultant for the world’s largest ISO/IEC 27001 certification programme spanning 70+ countries and 300+ locations, and designs enterprise governance models aligned to frameworks and regulations including ISO/IEC 27001, NIST CSF, NIST SP 800-53, IEC 62443, CIS Controls, DORA, NIS2, and the Cyber Resilience Act. Combines deep GRC expertise with a strong technical understanding of ServiceNow IRM and the ability to implement governance, risk, and compliance capabilities across GRC platforms.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

Paul L. — Enterprise Information Security & Grc Consultant at Hitachi Energy in Warrington, GB | Unifers