Ruchika Jeena
Information security analyst
- Role
- Information Security and Risk Analyst at Ameriprise Financial Services, LLC
- Location
- Gurugram, HR, IN
- LinkedIn followers
- 500 followers
About Ruchika Jeena
Self-motivated and detail-oriented professional with experience in IT Audit, Risk Management, and Information Security. Skilled in evaluating internal controls, conducting compliance reviews, and managing third-party risks to strengthen organizational governance and resilience. With a background in Electronics & Communication Engineering, I bring both technical expertise and analytical thinking to complex security and audit challenges.Core Strengths- IT Audit: Hands-on experience with ITGC, ITAC, SOC 2 Type II, and cybersecurity audits- Risk Management & TPRM: Coordinated Vendor Risk Assessments (VRA), reviewed DDQs/RFPs, and assessed third-party compliance frameworks- Cybersecurity & Compliance: Knowledge of firewalls, antivirus, IP networking, and information security standards; experience in policy review, SOP creation, and exception handling- Process Enhancement: Leveraged AI and automation to streamline compliance workflows, improve efficiency in risk assessments, and reduce manual effort in reporting- Governance & Policy Development: Created SOPs, reviewed organizational policies, and contributed to frameworks for information classification, DLP, and access management- Collaboration & Communication: Strong ability to work with both technical and non-technical stakeholders, presenting audit findings and risk insights to senior management.Career Objective:Information Security & Risk Management professional with 5 years of experience in IT Audit, TPRM, and cybersecurity. Applying my expertise in audit assurance, risk analysis, and cybersecurity to strengthen organizational compliance, mitigate risks, and drive secure digital transformation. Skilled in ITGC, SOC 2 Type II audits, vendor risk assessments, and compliance reviews (SOX, GDPR). Experienced in policy/SOP development, exception handling, and process automation using AI to enhance governance and efficiency. Strong communicator with the ability to bridge technical and business needs while driving secure, compliant operations.
Experience
Information Security and Risk Analyst
Ameriprise Financial Services, LLC
Jan 2024 — Present · Gurugram, IN
Information Security Analyst and Risk Analyst– Ameriprise FinancialAs a risk management and internal audit, contributing to compliance, regulatory reviews, and third-party risk assessments while driving process improvements through automation and AI.Key Contributions- Compliance & Regulation Projects: Managed DDQ (Due Diligence Questionnaires) and RFP (Request for Proposal) reviews, preparing data for board meetings and building Power BI & Excel dashboards, trackers to monitor progress- Exception & Control Testing: Prepared exception templates, performed control testing, and documented remediation steps to strengthen compliance posture- CMDB Clean-Up: Supported configuration management database (CMDB) clean-up activities to improve accuracy, governance, and asset tracking- Third-Party Risk Management: Coordinated Vendor Risk Assessments (VRA), evaluating third-party risks and enhancing vendor compliance frameworks. Conducted detailed reviews of critical documents such as VISR-G, VISR-APP, SOC 2 Type II, SOA reports, NPT, and AVS, ensuring alignment with regulatory standards, internal controls, and industry best practices- Policy & SOP Development: Created SOPs for processes, reviewed organizational policies and procedures, and contributed to governance frameworks- Information Security Support: Collaborated with cross-functional teams to ensure adherence to security standards and regulatory requirements.Professional Development:This role strengthened my ability to combine technical expertise, internal audit practices, and risk-focused analysis, enabling me to contribute to secure system design, compliance assurance, and proactive risk management. It also complemented my PwC IT Audit experience, where I worked extensively on ITGC, ITAC, SOC reporting, and cybersecurity audits, giving me a well-rounded foundation in both information security operations and audit assurance.
Education
Graphic Era Deemed to be University
Bachelor's degree, Electrical and Electronics Engineering
2016 — 2020
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.