Abhinav Kumar Shrivastava

CEO

Dubai, United Arab Emirates10 yrs 10 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Award-winning cybersecurity leader with 15+ years of experience.
  • Established UAE's first cloud-based Security Operations Center.
  • Recognized for excellence in healthcare cybersecurity leadership.
Stackforce AI infers this person is a Healthcare Cybersecurity Leader with extensive experience in compliance and risk management.

Contact

Skills

Core Skills

Information SecurityRisk ManagementCompliance

Other Skills

ISO 27001Security Operations CenterCybersecurity StrategyRisk ReductionRegulatory ComplianceCloud SecurityCyber ResilienceInformation Security GovernanceIncident ResponseSecurity ToolsInformation Security AwarenessCybersecurity Portfolio ManagementGovernanceCybersecurity ConsultingRisk Assessment

About

As an award-winning Information Security Leader with 15+ years of experience, I specialize in transforming cybersecurity from a compliance necessity into a strategic business enabler. As Associate Vice President – Information Security at NMC Healthcare, I lead cybersecurity strategy across 85+ locations in the UAE, overseeing enterprise-wide security programs and guiding a team of professionals dedicated to protecting critical healthcare operations. I have successfully built and executed enterprise-wide security roadmaps, established NMC’s first cloud-based Security Operations Center, and delivered measurable improvements in risk reduction, compliance, and operational resilience. I have been recognized with multiple accolades, including Excellence in CISO Leadership (2024), CISO50 (2024), and Excellence in Healthcare Cybersecurity Leadership (2025). I bring a proven record of driving transformation at scale. My expertise spans cybersecurity governance, digital risk protection, regulatory compliance (ADHICS, ISO 27001, PCI-DSS, SOC 2), risk quantification, and board-level reporting. I am passionate about creating security programs that enable innovation, support digital transformation, and strengthen trust in healthcare services. 🔑 Core Value Proposition: I bridge the gap between technical security controls and business strategy, ensuring cybersecurity investments deliver maximum ROI while enabling organizational growth.

Experience

Confidential healthcare

Associate Vice President - Information Security

Sep 2022Present · 3 yrs 7 mos · Abu Dhabi, United Arab Emirates · On-site

  • Designed and executed a 5-year enterprise cybersecurity strategy, directly aligned with business objectives and regulatory mandates.
  • Secured funds for 2025 initiatives, ensuring prioritized risk reduction and measurable ROI.
  • Established the first dedicated Information Security team (11 members), enhancing internal capability and governance maturity.
  • Implemented UAE’s first cloud-based Security Operations Center (SOC) in healthcare, earning the Excellence in Tech Innovation Award.
  • Spearheaded successful compliance programs including ADHICS, ISO 27001, PCI-DSS, and SOC 2 Type 2.
  • Deployed critical security controls (EDR, SOC, DRP, NAC), strengthening cyber resilience.
  • Published executive cyber security risk dashboards for the board and senior leadership, improving decision-making and transparency.
  • Appointed as Ethics & Compliance Champion and core Group Emergency Management & Business Continuity Committee member.
ISO 27001Information SecurityRisk ManagementSecurity Operations CenterCompliance

Prime minister's office - uae

Senior Advisory - Security Engineer

Mar 2021Aug 2022 · 1 yr 5 mos · Dubai, United Arab Emirates · On-site

  • Led Information Security Governance and strengthened compliance posture for a federal entity.
  • Enhanced security controls and developed integrated incident response and awareness programs.
  • Directed implementation of advanced security tools and frameworks to protect critical assets.
  • Received Certificate of Appreciation for outstanding contributions to service excellence.
Information Security GovernanceComplianceIncident ResponseSecurity ToolsInformation Security

Emirates nuclear energy corporation

Information Security Compliance Consultant

Nov 2019Feb 2021 · 1 yr 3 mos · Abu dhbai · On-site

  • Ensured compliance with FANR, SIA, and ISO 27001 requirements for nuclear sector operations.
  • Directed enterprise-wide information security risk management activities and closure of all audit findings.
  • Led Information Security Awareness Programs for ENEC and NAWAH, strengthening the culture of security.
  • Supported cloud adoption strategy during COVID-19 to ensure operational continuity.
ComplianceRisk ManagementInformation Security Awareness

Al rostamani group

Information Security Officer

Apr 2017Nov 2019 · 2 yrs 7 mos · Dubai, United Arab Emirates · On-site

  • Managed the cybersecurity portfolio for 22 group entities across the UAE, ensuring consistent governance, compliance, and risk management practices.
  • Established enterprise-wide information security governance frameworks and deployed risk-based controls aligned with ISO 27001 and business needs.
  • Conducted security audits and compliance reviews, achieving successful ISO 27001 certification and strengthening regulatory posture.
  • Enhanced cyber resilience by streamlining vulnerability management, incident response, and awareness programs across diverse business units.
  • Partnered with executive management and IT leadership to align security strategy with group-level business objectives.
Cybersecurity Portfolio ManagementGovernanceRisk ManagementInformation Security

Paramount computer systems

3 roles

Senior Security Consultant

Promoted

Dec 2015Mar 2017 · 1 yr 3 mos

  • Delivered strategic cybersecurity consulting for government entities and large enterprises across UAE, Qatar, Oman, Jordan, and Hungary, covering sectors such as banking, oil & gas, airports, real estate, and ministries.
  • Implemented endpoint security, vulnerability management, and risk assessment frameworks, strengthening client cyber resilience.
  • Directed and supported ISO 27001, ISO 22301, NESA, ISR certification and security program rollouts for multiple organizations, ensuring regulatory and audit readiness.
  • Conducted security assessments and compliance engagements for critical infrastructure clients, aligning controls with international standards and regional regulations.
  • Provided advisory on incident response planning and governance frameworks, enabling enterprises to improve operational readiness against emerging threats.
Cybersecurity ConsultingRisk AssessmentComplianceInformation SecurityRisk Management

Security Consultant

Promoted

Oct 2014Nov 2015 · 1 yr 1 mo

Associate Consultant

Aug 2013Sep 2014 · 1 yr 1 mo

Aujas

Information Security Consultant

Mar 2013Jul 2013 · 4 mos · New Delhi · On-site

  • Managed information security governance and compliance for the Aadhaar project (India’s national identity program), ensuring alignment with security standards and regulatory frameworks.
  • Conducted risk assessments, policy reviews, and compliance monitoring to safeguard sensitive citizen data.
  • Collaborated with stakeholders to design and implement information security controls that supported the scale and sensitivity of the Aadhaar ecosystem.
Information Security GovernanceRisk ManagementInformation Security

Mahindra special services group

Analyst - Managed Information Security Services

Mar 2012Feb 2013 · 11 mos · Mumbai, Maharashtra, India · On-site

  • Implemented ISO 27001 and ISO 22301 frameworks for a large multinational corporation in India, strengthening information security and business continuity governance.
  • Conducted compliance audits for MNCs against ISO 27001 requirements, identifying gaps and recommending remediation plans.
  • Delivered security assessments and contributed to risk management programs, supporting enterprise-wide compliance and resilience initiatives.
ISO 27001ISO 22301Compliance AuditsComplianceRisk Management

Education

Indian Institute of Information Technology Kota

Doctor of Philosophy - PhD — Cyber Security

Dec 2021Dec 2025

Indian Institute Of Information Technology Allahabad

Master’s Degree — Information Security & Cyber Law

Jan 2009Jan 2011

University of Rajasthan

Engineer’s Degree — Computer Science & Engineering

Jan 2004Jan 2008

Stackforce found 100+ more professionals with Information Security & Risk Management

Explore similar profiles based on matching skills and experience