Rahul Desai
Associate Director, Cyber & Digital Risk | TPRM Transformation | Cloud Security, AI & Emerging Risk Compliance | Worked with GCC BFSI clients | Designed a centralized global TPRM process with 95.8% adoption rate
- Role
- Associate Director, Cyber & Digital Risk Consulting at PwC India
- Location
- Pune, MH, IN
- LinkedIn followers
- 500 followers
About Rahul Desai
I’m a Cybersecurity and Risk Management leader with 20 years in BFSI, specializing in Third-Party Risk Management (TPRM) transformation, Cyber Governance, and Security Strategy. I help organizations solve one of their toughest challenges: managing cyber risk without slowing down growth.My USP is designing fit-for-future cybersecurity programs that enable growth, compliance, & trust.Beyond TPRM, I’ve designed GRC frameworks, cybersecurity maturity assessments, & AI compliance solutions aligned with ISO 42001. With experience across PwC, HSBC, Barclays, and Wipro, some of my key wins include: Third-Party Risk Management (TPRM) Transformation• Designed a centralized global TPRM process with 95.78% adoption (EMEA & APAC), siloed regional functions.• Implemented a global chargeback model, converting TPRM from cost center to service provider, unlocking $1.2M reinvestment in 2 years for innovation, talent, & new tools.• Secured alignment from 70+ CISOs globally, with a $50K annual cost increase per firm, by linking compliance to business value. Cybersecurity Strategy & Governance• Designed Governance, Risk & Compliance (GRC) frameworks enabling structured, enterprise-wide risk oversight.• Conducted Cybersecurity Maturity Assessments (CMA) and created Target Operating Models (TOMs) to guide long-term security roadmaps.• Built Unified Control Frameworks (UCF) for real-time mapping of regulatory controls, strengthening compliance posture. AI & Emerging Risk Readiness• Advocated for responsible AI adoption by developing AI compliance solutions aligned with ISO 42001.• Delivered AI impact assessments across EU, HK, and US markets, embedding future-ready regulatory compliance.• Embedded risk-first culture across CXO leadership teams, ensuring security was viewed as a strategic enabler. Key skills:TPRM Transformation • Cyber Security Assessments • Unified Control Framework (UCF) Design • GRC Frameworks Design • End to End IT Infrastructure Design • AI-Impact Assessments • Third Party Vendor Audits • Cloud Security • Risk Assessment & MitigationWhat defines me is the ability to connect strategy with execution - shaping boardroom-level cybersecurity priorities while ensuring frontline team delivery. My work has consistently improved compliance, mitigated enterprise risk, & increased profitability.Connect with me to talk about anything related to Cybersecurity. Let’s work together, because \"Everything is designed. Few things are designed well.\" and your organization deserves a well-designed cybersecurity solution. 🤝
Experience
Associate Director, Cyber & Digital Risk Consulting
May 2024 — Present
Driving 2 high-impact TPRM transformation projects for BFSI GCCs with budgets of INR 1 Cr-10.5 Cr, designing customized technology solutions as an SME, enhancing cybersecurity infrastructure & boosting operational efficiency across tools & processes• Building a Unified Control Framework (UCF) to centralize and dynamically manage regulatory controls - enabling real-time RCM (Risk and Control Matrix) updates and better compliance posture.• Aided technology unification for 2 major banks during M&A process, while maintaining the highest standards of security, and augmented processes through automation, thus reducing time of implementation & errors by 40%• Conducted AI-impact assessments to evaluate areas of integration for regulatory & compliance requirements in EU, HK, & US• Advocated for, and developed high-level AI compliance solutions aligned with ISO 47001 and aided responsible AI adoption.• Led the implementation of SEBI CSCRF, improved regulatory posture & aligned practices with national cybersecurity standards• Designed enterprise-wide Governance, Risk & Compliance (GRC) frameworks, enabling clients to embed structured risk oversight into operational workflows.• Led end-to-end Cybersecurity Maturity Assessments (CMA), current-state analysis & designed Target Operating Model (TOM)• Delivered transformation programs in Managed Security Services (MSS), identified critical vulnerabilities, established enhanced risk mitigation processes, and streamlined escalation paths, thus boosting NPS significantly
Education
Swami Ramanand Teerth Marathwada University (SRTMU), Nanded
Bachelor of Engineering - BE, Electronics
1998 — 2002
I2IT Pune
Master of Science - MS, Advanced Networking and Telecommunications
2003 — 2005
Skills
- Encryption
- Dns
- Computer Security
- Hosting
- Pre-Sales
- Vdi
- Infrastructure
- IT Operations
- Disaster Recovery
- Network Security
- Information Security Management
- Technical Support
- Software Development Life Cycle (Sdlc)
- Business Continuity
- Firewalls
- Information Security
- Data Center
- Antivirus
- Symantec Endpoint Protection
- Domain Name System (Dns)
- Vulnerability Assessment
- Security
- Iso 27001
- Sdlc
- External Audit
- Virtualization
- Itil
- Application Security
- Endpoint Security
- Troubleshooting
- Networking
- Vulnerability Management
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.