Vivek Shah

CEO

India8 yrs 9 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in GRC frameworks and compliance audits.
  • Proficient in RSA Archer development and customization.
  • Passionate about AI in cybersecurity and GRC automation.
Stackforce AI infers this person is a Cybersecurity expert specializing in GRC solutions and AI integration.

Contact

Skills

Core Skills

Grc Implementation & StrategyRsa Archer Development & Customization

Other Skills

ISO 27001GovernanceRisk ManagementCompliance (GRC)COSORegulatory StandardsGRCAIData ProtectionRSA ArcherAdvanced WorkflowData FeedsSDLCAgileArtificial Intelligence (AI)

About

As a GRC & Cybersecurity Professional, I specialize in designing, implementing, and optimizing Governance, Risk, and Compliance (GRC) solutions using RSA Archer, ISO 27001, ISO 27701, ISO 22301, ISO 31000 and CRISC methodologies. With experience spanning Tata Consultancy Services, Societe Generale etc. I have helped organizations streamline compliance, mitigate risks, and enhance IT security frameworks. 🔹 Core Expertise: ✅ GRC Implementation & Strategy (ISO 27001, ISO 42001, NIST, SOC2, HIPPA, GDPR; COBIT) ✅ RSA Archer Development & Customization (AWF, Data Feeds, Workflows) ✅ Risk Assessment, IT Audit & Compliance (CISA, CRISC, CGRC) ✅ Cybersecurity & Data Privacy (CIPP/E, GDPR, AI in GRC) ✅ AI & Automation in Risk Management I’m passionate about leveraging AI in cybersecurity & GRC automation to enhance risk management strategies and assist individual professionals and corporate to upskill in the domain of GRC & AI by offering several GRC & AI trainings. Let’s connect to discuss how we can drive GRC excellence & cybersecurity resilience together! 🚀 📩 Let’s Connect -> info@securacybertech.com 🔹 Seeking Thought Leaders & Opportunities in: GRC, Cybersecurity, Risk Management, Compliance, and Archer Consulting.

Experience

Secura cybertech

Chief GRC & AI Officer

Apr 2023 – Present · 3 yrs · India · On-site

  • Developing and implementing risk and compliance frameworks aligned to ISO, COSO, and regulatory standards across sectors.
  • Conducting enterprise risk assessments, leading compliance audits (e.g., ISO 27001, GDPR, ISO 27701, ISO 9001, ISO 22301, NIST, PCI DSS etc.), and built remediation plans.
  • Strengthening board and executive oversight processes, and guiding policy development and controls design.
  • Conducting in-house, online and public workshops on - GRC, AI, Data Protection internal controls, and audit readiness.
  • Mentoring professionals for certifications like CISA, CRISC, ISO 31000, ISO 27001, ISO 42001 etc.
  • Assisting organizations with - GRC tool selection and implementation (e.g., RSA Archer, ServiceNow), ensuring integration with business operations.
  • Acting as a trusted advisor to C-suite, regulators, and internal teams, ensuring a culture of compliance and accountability.
ISO 27001GovernanceRisk ManagementCompliance (GRC)GRC Implementation & StrategyRSA Archer Development & Customization

Tata consultancy services

GRC Consultant

Jan 2021 – Apr 2023 · 2 yrs 3 mos

  • Designed several Business Resiliency applications primarily using Advance Workflow feature (AWF) of RSA Archer, with appropriate plan to streamline the business requirements in an efficient way.
  • Formulated several kind of data-feeds for aggregating data in of RSA Archer to support variety of business processes.
  • Understood RSA Archer challenges as well as complexities and consulted business users with consistent, improved and innovative solutions that can be supported efficiently by GRC tool.
  • Identified scope of improvements within GRC solutions as well as from a platform perspective to strengthen organization’s IT GRC capabilities.
  • Trouble-shooting application issues and their resolution in terms of access control, DDEs, Notifications, Calculations, Workflows, Reports, Dashboards, iViews, Integration (Packaging, Data Imports, Data-Feeds) etc.
ISO 27001GovernanceRisk ManagementCompliance (GRC)RSA Archer Development & Customization

Societe generale corporate and investment banking - sgcib

GRC Consultant

Jul 2018 – Jan 2021 · 2 yrs 6 mos · Montreal, Canada Area

  • Identifying business requirements and developing Archer applications (including layout, workflow, reporting, notifications, questionnaires, access control, data-driven events, packaging etc.) following SDLC concepts and agile methodology in accordance with organization’s procedures and policies.
  • Understanding GRC challenges and complexities by providing consistent, improved and innovative management process that can be supported efficiently by GRC tool.
  • Working with GRC team (Business Analysts, Subject Matter Experts and Project Managers) to strengthen the organization’s IT GRC capabilities through development of the RSA Archer solution using RSA Archer 6.5.
  • Providing timely resolution by troubleshooting functional & technical issues dictated by the severity of the problem and track (case histories, issues, and action steps), while reporting required incidents to appropriate chain of command. End user community includes Governance, Risk and Compliance modules.
  • Configuring and monitoring platform (web servers, application servers and database servers) services as well as GRC Archer services (datafeeds, notifications & reports).
  • Performing testing/rollout of new releases/changes in TST, UAT, Pre-Prod & PROD environment (quality assurance), following organization’s procedures like change management, project governance and software configuration management.
  • Respecting IT norms, regulations and processes (ITIL regulations) within the organization.
  • Timely reporting of production and project status to client and IT management by oral and written communication to various audiences at appropriate levels.
ISO 27001GovernanceRisk ManagementCompliance (GRC)RSA Archer Development & Customization

E world

IT Consultant

Jun 2015 – Jun 2016 · 1 yr · Bhavnagar, Gujarat, India

  • Interacted with clients through a series of actions, either via phone, email or chat using the support documentations until their technical issue is solved.
  • Followed standard procedures for proper escalation of unsolved issues to the appropriate internal teams (e.g. software developers, service technicians, account managers etc.)
  • Incident/ticket handling (documenting, triaging, queue, follow-ups & escalations) using ServiceNow as well as investigated issues (by going through logs/code/database) using SQL
  • Improved system performance by identifying problems and recommending changes.

Education

Concordia University

Master of Engineering - MEng — Electrical and Computer Engineering

Jan 2016 – Jan 2018

Gujarat Technological University (GTU)

Bachelor of Engineering (B.E.) — Electronics and Communications Engineering

Jan 2011 – Jan 2015