ASHISH C.

ASHISH C.

Senior Vice President Cybersecurity @ State Bank of India

About

With Two decades of IT Security leadership experience, I have served across various industries such as Healthcare, Manufacturing, Banking, NBFC, Insurance, and eCommerce. Core Competencies: • GRC – Implemented ISMS frameworks within organizations globally. • Governed Cloud Security and conducted 3rd Party Risk Assessments. • Conducted ISO/ISMS, ITIL, NIST, COBIT, HIPAA, RBI Compliance Audits. • Specialized in Artificial Intelligence – General AI, Prompt Engineering. • Ensured Data Privacy compliance with GDPR, UK DPA, Indian IT Act 2000 (Amendment-2008), PDPA. • Managed Security Operations, Data Leak Prevention (DLP), Incident Management, IT Service Delivery, SIEM, and Vendor Management. • Successfully delivered projects across multiple geographies including the US, Czech Republic, Ireland, China, Malaysia, and India.

Country

India

City

Mumbai

Industry

Banking

Skill

Cissp, Artificial Intelligence (AI), ISO 27001, Information Security Management, Security Policy, Vulnerability Assessment, Information Security, PCI DSS, IT Audit, Security, Security Audits, Network Security, Risk Assessment, Risk Management, Incident Management, Auditing, CEH, BS25999, Business Continuity Planning, IrDA

Experience

State Bank of India

Senior Vice President Cybersecurity

State Bank of India

LinkedIn
2025-12 - Present · 10 mos

Navi Mumbai, Maharashtra, India

• Driving strategic initiatives that strengthen our overall strategic governance posture. • Partnering closely with cross-functional teams to deliver scalable, secure, and high-impact policy governance for our customers and stakeholders. • Building on a culture of excellence, innovation, and continuous improvement within the organization. Looking forward to contributing to the organization’s next phase of growth and collaborating with professionals who are equally passionate about transformative impact.

Stryker

Global Leader - Cybersecurity, Cyber Risk & IT Compliance

Stryker

LinkedIn
2020-5 - 2025-12 · 5 yrs 8 mos

Certified CISO | CISSP | CISM | CISA | CRISC | CDPSE | ITIL | DCPLA | DCPP | CHFI | CEH | LA - ISO 27001 | LA - BS 25999 | LA - ISO 13485 | LA - ISO 20000

Nykaa

Security Head - Technology

Nykaa

LinkedIn
2019-4 - 2020-4 · 1 yr 1 mo

# General Data Protection Regulation (GDPR) – o GDPR Readiness Assessment: Conducting assessments to make organization GDPR ready. o Developing Privacy Framework: Developed privacy framework based on the applicable data privacy requirements. o Privacy Organization Structure: Established Privacy Organization Structure o Data Protection Impact Assessment: Conducting DPIA of various applications, websites, business processes and enhancements to identify the risk and provide recommendations. o Privacy requirements of IT Act: Reviewing privacy policy with respect to the privacy requirements of IT Act, identified gaps and update policy. o Data Flow maps: Identify and understand the flow of personal data in a process based on the discussions and interviews to prepare the data flow diagrams. o Application assessment: Identifying gaps in the application as per the GDPR requirements. o Contract review: Review vendor contracts with respect to the privacy requirements. o Personal data inventory and Records of processing activities: Prepare inventory of personal data collected and records of processing activities. o Privacy awareness session: Drafting privacy awareness deck and providing privacy awareness sessions to employees from different business functions. # Data Leak Prevention (DLP) – o Evaluated various DLP solutions (including CASB) to meet Organizations data protection requirements o Ensure DLP systems detect potential data breach incidents in timely manner and prevent them by monitoring data while in-use (endpoint actions), in-motion (network traffic) and at-rest (data storage) o Continuous review of configuration and tuning of DLP systems, policies and response rules. # Governance, Risk & Compliance (GRC) – o Review of IT Ops / IT Security Operations processes (like Change Management, Patch Management, Incident Management, Problem Management) and ensure compliance to same

Home Credit India

Head - IT Security & Cyber Security

Home Credit India

LinkedIn
2018-7 - 2019-3 · 9 mos

• Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure that the integrity, confidentiality and availability of information is owned, controlled or processed by the organization. • Develop, maintain and publish up-to-date IT security policies, standards and guidelines. Oversee the approval, training, and dissemination of security policies and practices. • Communicate and implement a risk-based process for vendor risk management, including the assessment and treatment for risks that may result from partners, consultants and other service providers. • Manage IT security and risk management awareness training programs for all employees, contractors and approved system users. • Establish data flow between HRMS, Finance & IT Asset Management processes Master data to resolve issues like mismatch in asset records, timely identification of depreciation value of asset in FAR, track asset allocation etc. • Review regular reporting on the current status of the IT security program to enterprise risk teams, senior business leaders and the board of directors as part of a strategic enterprise risk management program. • Ensure that security programs follow relevant laws, regulations and policies to minimize or eliminate risk and audit findings. • Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data and the company's reputation. • Monitor the external threat environment for emerging threats and advise relevant stakeholders on the appropriate courses of action. • Liaise with external agencies, such as law enforcement and other advisory bodies as necessary, to ensure that the organization maintains a strong security posture.

Home Credit India

Assitant Vice President - IT Security

Home Credit India

LinkedIn
2017-4 - 2019-3 · 2 yrs

India

Home Credit India

AVP - IT SECURITY

Home Credit India

LinkedIn
2017-4 - 2018-6 · 1 yr 3 mos

India

Stryker

GLOBAL SR. INFORMATION SECURITY LEADER

Stryker

LinkedIn
2016-3 - 2017-3 · 1 yr 1 mo
Stryker

GLOBAL INFORMATION SECURITY LEADER

Stryker

LinkedIn
2013-1 - 2016-2 · 3 yrs 2 mos

• Perform internal security assessment tests as well as Risk assessments & gap analysis based on Stryker and Industry Security policies and standards. • Create a risk mitigation plan as an outcome of the security assessments • Conduct organization wide data classification assessment and security audits and manage remediation plans • Develop, maintain and publish up-to-date Global IT security policies, standards and guidelines. • Oversee the approval, training, and dissemination of security policies and practices. • Establish Master data management process for GRC tool Archer. • Demonstrate Customer service excellence and teamwork attitude • Work closely with the project owner as a trusted security advisor

Paladion an Atos business

Project Manager

Paladion an Atos business

LinkedIn
2008-9 - 2012-12 · 4 yrs 4 mos

I've worked extensively in the BSFI sector handling the auditing, assessments and other roles including SBI, Allahabad Bank, HDFC, Indian Bank, Corporation Bank, United Bank, SBI-Life, SBI Custodial Services Ltd., Saudi Telecom Company, Canara HSBC Life Insurance, A Littleworld and others. I also audited banking support services organization including that of a captive unit of large foreign bank.

MindCraft Software Pvt. Ltd.

Senior Consultant

MindCraft Software Pvt. Ltd.

LinkedIn
2008-2 - 2008-9 · 8 mos

Implemented ISO 27001 Compliance activity Information Security Awareness Training to employees Drafted IT Security Policy & Procedure

eClerx

Information Security Officer

eClerx

LinkedIn
2007-9 - 2008-1 · 5 mos

Managing ISO 27001 Compliance activity BCP/DR awareness training to employees Review of IT Security Policy & Procedure

Benara Udyog Ltd.

System Analyst

Benara Udyog Ltd.

2003-12 - 2005-3 · 1 yr 4 mos

Agra

Information Security Awareness Training to employees Drafted IT Security Policy & Procedure

Education

Indian Institute Of Information Technology Allahabad

Indian Institute Of Information Technology Allahabad

LinkedIn

Information Security & Cyber Laws

2005 - 2007 · 2 yrs

MS - INFORMATION SECURITY & CYBER LAWS

Dr. Bhim Rao Ambedkar University, Agra

Dr. Bhim Rao Ambedkar University, Agra

LinkedIn

Computer Sc. & Engineering

1999 - 2003 · 4 yrs

BE - COMPUTER SCIENCE & ENGINEERING

ASHISH C.'s Contact Information

Email

******@***.com

Phone

(**) *** ****

Find the Right Leads
Find Verified Contact Data

Try with: Jensen Huang @ nvidia.com Click to autofill
LeadContact awards, five-star ratings, and GDPR compliance badges

What LeadContact does well

Find verified emails, phone numbers, and decision-makers with 98% accuracy.

Find Leads

Find Leads

Find the right people by company, role, industry, location, and more.

925M+ professional profiles

Find Leads
Find Emails

Find Emails

Access verified email addresses for your target contacts.

657M+ emails

Find Emails
Find Phone Numbers

Find Phone Numbers

Get cross-validated phone data from multiple top sources.

239M+ phone numbers

Find Phone Numbers

More Accurate. Lower Cost.

Find contact data in 1 tool with 98% accuracy

LeadContact integrates leading enrichment tools to deliver more accurate contact data—without paying for each one.

LeadContact Logo
Competitor Tools

All these = $289 per month

Great conversations start with the right contact.

It’s time to find yours.