Default profile banner
AI

Asif Iqbal

@asifiqbal

Senior Information Security Consultant at Genzeon Technology Solutions Pvt Ltd

Ranchi

Genzeon Technology Solutions Pvt LtdRanchi University

Asif Iqbal is a seasoned Information Security professional with over 18 years of experience. He possesses strong expertise in administering security infrastructure, including proficiency with IDS/IPS technologies like Snort, and managing Linux/Windows systems. His skills encompass performing internal audits compliant with ISO 27001 standards, risk management, and comprehensive network security solutions.

Experience

Senior Information Security Consultant

Genzeon Technology Solutions Pvt Ltd

•Feb 2022 - Present

Manage Organization's Information Security policies and procedures. Administers the Integrated Risk Management tool in Service Now to update controls, policies, procedures and evidence used as part of the Security Compliance program. Performs periodic testing of process that are executed to achieve compliance with Information Security policies and procedures. Assist internal IT and Business control owners to prepare for HITRUST requirements.

Information Security Consultant

Royal InfoTech

•Jan 2020 - Feb 2022

Support development, implementation and maintenance of information security policies, standards and processes to prevent, detect, analyse, and respond to information security incidents. Lead and contribute to the development, operations and maintenance of the Security incident management process, awareness trainings and campaigns, vulnerabilities management and penetration testing. Support risk based implementation of security controls for protection of information systems, networks and applications. Support BAU IT security operations including Security Incident & Event Management (SIEM) processes, threat and incident management to mitigate risks. Proactively research and develop technical solutions/security tools to help mitigate security vulnerabilities and automate repeatable tasks. Collaborate with IT Support, IT Shared Services and IT Architecture & Strategy teams to ensure systems, applications and networks are secure by design.

Manager Information Security

AEGIS Global / ASM Enterprise Solution

•Dec 2018 - Invalid Date

Carry out internal Audits. Audits in compliance to ISO 27001. Risk Assessment and Information Security Audits. Review to ensure compliance with client's policy procedures requirements. Provide information security awareness training to organization personnel. Serve as a focal point of contact for the Client information security team and the organization. Follow and maintain the corporate Information Security Monitoring related policies and procedures.

Manger Cyber Security

Vishva Raj InfoTech

•Jun 2014 - Invalid Date

Conduct vulnerability assessment using scanners like Nessus, Nmap, Acunetix, etc. Exploit vulnerabilities using tools, small program codes. Review asset discovery and vulnerability assessment data. Provide real-time guidance on network configuration, security settings and policies, and attack mitigation procedures. Audits in compliance to ISO 27001. Perform Network VAPT, SIEM deployment, and Access Protection.

Cyber Security Auditor

Cyber Defence Research Centre (CDRC)

•Jan 2012 - May 2014•Jharkhand

Deploying 24* 7 Honeypot in the Datacenter. Implementation of Information Security Management System (ISMS) based on ISO 27001. To map applicable industry standard practices and guidelines. Threat Intelligence using Open Source Tools. Recommend and suggest roadmap towards mitigating the risk. Assist in developing processes, tools, and techniques to enhance the performance of technical network security audits. Manage audits independently and perform audits end to end. Security of the entire network on a regular basis using widely acknowledged best practices. Measure users' security awareness with password audits and social engineering campaigns. Complete Network Security Scanning, Vulnerability, Network Assessment & Patch Management. Implement cyber security risk management practices in line with defined strategy. Lead / facilitate meetings to debate and understand the risk. Conduct Field Cyber Crime investigation of computers, networks & Mobile (including Physical memory extraction) investigation.

Learning Management System Developer

Competition Forum

•Nov 2008 - Dec 2011

Give current knowledge of industry developments in technology affecting database and application development. Contribute to the ongoing development and enhancement of the university's LMS, including customized enhancements to be contributed back to the open source developer community. Contribute to the development and maintenance of LMS interfaces with custom student information systems. Assist training personnel in developing LMS-related curricula.

Assistant Project Manager

Educomp Solutions Ltd

•Feb 2004 - Oct 2008

Design and Install ICT networking systems. Timely upgrade of LAN infrastructure and Internet connectivity to meet Microsoft - Partners In Learning Project requirements. Ensure secured LAN through configuration of firewalls. Ensure all technical requirements are met in all projects. Ensure that the desktop and network resources of Microsoft - Partners In Learning Project are protected from malicious virus attacks. Troubleshooting and providing service support in diagnosing, resolving and repairing server-related hardware and software malfunctions. Monitoring of backup and restoration procedures for both server and local drives. Liaising with security vendors, suppliers, service providers and external resources; Train new categories of staff to use the various tools. Support the knowledge management unit for effective Training and survey data analysis.

Education

Ranchi University

MBA

Human Resource Management

Ranchi University

B.sc

Computer Science

Jan 2000•Grade: Ist Class

ISDAC (institute Of software Development and Advanced Computing)

Diploma In Advanced Computing (CDAC-ATC)

Jan 2002

CMC

Diploma In Software Technology

Jan 2000

Licenses & Certifications

Microsoft Certified Professional (Visual Basic: Distributed)

Ranchi University

• No expiration

Skills

Security Audit
VAPT
ISO 27001
NIST
Threat Intelligence
Honey net
Security Incident Handling
Risk Management
WAF support
Network Security
Information Security Solutions
Cloud Services
SIEM
IDS/IPS
Linux/Windows Systems Administration
Internal Audits
Metasploit
Acunetix
NMAP
Nessus
Forensic Analysis
Microsoft Azure