
Fariha Rahman
Technology / Internet
Services offered
Experienced Information Security Analyst with 8-year record in risk management, information security governance, auditing, operations, and IT project management. Proficient in implementing ISO 27001 controls, business continuity management (BCM), conducting audits, and performing risk assessments. Achieved organizational goals through collaborating with cross-functional teams, training staff, and implementing best practices.
Experience
Security Senior Analyst, Information Security Governance Jan 2014- Nov 2017
Accenture
- Risk Assessment:
- Conducted risk assessment following NIST Risk Management Framework (RMF), ISO 27001 Risk Assessment Methodology and FAIR (Factor Analysis of Information Risk)
- Improved the number of risks identified and mitigated by 20%.
- Information Security Internal and External Audit:
- Conducted audits on projects leveraging in-depth understanding of internal controls, business process, application, and IT controls and auditing against best practices like ISO27K, ITGC, NIST.
- Supported SOX and SOC2 Audit compliance requirements for 4 of Accenture client's BU.
- Confirmed the mitigation of internal and external audit findings with 85% observations closed.
- Passed ISO 27K External Audit by DNV and E&Y with 0 Major findings.
- Conducted physical infrastructural audits in DC and DR (Data Center and Disaster Recovery).
- Information Security Control Implementation:
- Established PDCA management cycle while implementing ISMS policy in compliance with Accenture Information Security Management Policy 1457.
- Implemented 50+ Client Data Protection (CDP) controls in the 14 categories of ISO 27001.
- Served as a Business Continuity Manager and executed BCM table-top exercise, yearly simulation tests and walkthrough audits for 3 projects.
- Implemented Oracle Identity & Access Management which streamlined Access Management System Control.
- Achieved Accenture Spot and Industrialization Award for transforming information security practice in Accenture.
Education
ISO27K and Security+
Professionals in the same Technology / Internet sector as Fariha Rahman
Professionals from different sectors near Calgary, Alberta
Other users who are called Fariha
Jobs near Calgary, Alberta
-
Senior Architect
1 month ago
Hays Calgary, AlbertaWe are seeking a security professional for the role of Cybersecurity Advisor who can apply his or her security knowledge to provide holistic cybersecurity advisory services to the enterprise. · Bachelor's degree in Computer Science, Information Security, Engineering, or a technic ...
-
Lead/Principal Specialist
1 month ago
Parkland Corporation CalgaryThe Lead/Principal Specialist - SAP Security and GRC is responsible for the design, architecture, implementation, · and management of robust SAP security and Governance, Risk, · and Compliance (GRC) solutions. · ...
-
Cybersecurity Generalist Senior Associate
1 month ago
PwC Canada Calgary, AlbertaThis role involves providing comprehensive security solutions and experiences across various domains to safeguard client systems and data. · ...