MENJELAJAH


0.0
0.0
0%
$15 USD / Jam
・

Sri Lanka (12:40 PG)
・
Menyertai pada Januari 12, 2008
$15 USD / Jam
・
Self-motivated, hardworking and creative IT professional person (with more than 6 years experience within the IT security & consultancy and overall more than 09 years experience in IT environment) looking forward to a challenging position, where using my academic knowledge, experience, interpersonal/analytical skills and ability to acquire new skills with dedication and teamwork.
Tiada ulasan untuk dilihat di sini!
Pengalaman
Specialist Compliance & Security
Jan, 2014 - Sekarang
•
12 tahun, 2 bulan
Synapsys Ltd. (DFCC Group IT)
Jan, 2014 - Sekarang
•
12 tahun, 2 bulan
• Develop adequate policies and procedures to streamline the DFCC IT environment processes based on the ISO 27001 and other security requirements and government requirements. • Maintain process quality of the IT service which provided by the DFCC Group IT team based on the ISO 9001 • Conduct Information security review and provide required security measures for new system implementations • Providing support to IT team to conduct the periodic BCP drills and monitor and review the drill outcomes. Further, provide recommendation to improve the process. • Provide support to IT operation team to improve the information security within the DFCC IT environment • Provide support to IT team for implementation of external review recommendations • Reviewing system logs, firewall logs and network monitoring logs to identify and evaluate the suspicious activities. Provide support to analysis the suspicious security breaches and take necessary actions to minimize it. • Conduct and participate to security drills which conducted by security partners • evaluate possible risks encountered during the security reviews and process monitoring stages
Jan, 2014 - Sekarang
•
12 tahun, 2 bulan
Senior Supervisor Assurance & Advisory Services (IS)
Mac, 2010 - Jan, 2014
•
3 tahun, 10 bulan
SriLankan Airline Limited
Mac, 2010 - Jan, 2014
•
3 tahun, 10 bulan
Main responsibilities: • Perform engagement planning and finalization of review procedures before start the reviews • Conduct initial review meetings with relevant user department • Perform internal Information System audits in accordance with industry standards and best practices. • Conducting data center related audits in accordance with industry standards and best practices. • Provide support in implementing IT Security Infrastructure and IT Security Program • Develop final reports based on the review findings and communicate to senior management with appropriate/ feasible recommendations to mitigate risks identified. • Provide consultancy support for new system implementations and conduct pre-implementation reviews. • Provide consultancy support for ISO 27001/ ISO 9001 certifications and conduct pre-certification/ internal reviews for same • Provide consultancy support to develop corporate information security manual and IT related all manuals/ policies/ procedures. • Provide the adequate consultancy support to improve the organization IT controls/ Information security management. • Provide support to develop the company Business Continuity Management • Provide IT knowledge support to department team to carry out their day today works • Hand on experience in working with Oracle business objects (BO reports) and Structure Query Language (SQL) for analyzing data and develop required reports in various systems. • Participate to Amadeus Ticketing and Reservation system training • Conducted reviews : Internet booking engine, FlySmiles system, Call centre Fraud management system, Pricing system, HR system and finance systems, ISO 27001 and ISO 9001 pre-implementation and internal reviews
Mac, 2010 - Jan, 2014
•
3 tahun, 10 bulan
Senior Technology Audit Associate
Sep, 2008 - Feb, 2010
•
1 tahun, 5 bulan
Ernst & Young, Sri Lanka - ITRA
Sep, 2008 - Feb, 2010
•
1 tahun, 5 bulan
Main responsibilities • Perform engagement planning and finalization of review procedures before start the reviews • Conduct initial review meetings with relevant user department • Execution of IT risk and assurance assignments to ensure the design and operation of the company business processes are in compliance with company IT policies and statutory regulations • Perform IT applications reviews to ensure adequacy and efficiency of operating, security, compliance and financial procedures established for IT control purposes; • Assist financial audit team on testing mandatory fraud procedures adhere with IT infrastructure using computer aided tools and techniques which are developed by the firm; • Hand on experience in computer assisted audit tool (CAAT) - ACL tool and have expectance work with structured query language (SQL) for analyzing data. • Prepare reports based upon identified risks, audit findings, client responses and impact to financial statements; and • Effectively communicate audit findings via update meetings and closing conferences with management personnel Client base:
Sep, 2008 - Feb, 2010
•
1 tahun, 5 bulan
Pendidikan
Professional Education
2006 - 2009
•
3 tahun

United Kingdom
2006 - 2009
•
3 tahun
Kelayakan
JAVA Software Development
2007
University of Colombo School of Computing (UCSC)
2007
ISO 27001 Lead Auditor
2014
DNV
Information Security Management System ISO 27001:2013
2014
Computer Hacking Forensic Investigator – CHFI
2014
EC Council
Computer Forensic Investigation
2014
Pengesahan