Swati Manocha

CEO

India12 yrs 3 mos experience
Highly Stable

Key Highlights

  • Led global compliance projects at Big4 firms.
  • Expert in ISO standards and data privacy regulations.
  • Advised organizations on DPDPA readiness in India.
Stackforce AI infers this person is a Cybersecurity and Data Privacy expert with extensive experience in compliance and risk management.

Contact

Skills

Core Skills

Risk ManagementData Privacy

Other Skills

Compliance RegulationsInformation Security ManagementThird Party Risk Management (TPRM)StrategyInformation SecurityProject PlanningCBusiness AnalysisProject ManagementMobile PaymentsCompetitive AnalysisData AnalysisManagementBusiness StrategyTeamwork

About

Cybersecurity and Data privacy professional. In my career journey, I have assisted small to large complex organisations in achieving their compliance objectives around Cyber Security, Data Privacy, Cloud Security and Business Continuity. I have worked across the globe (consultant and auditor) and primarily with organisations based out of US, Europe and India. I am authorised to work in EU and India. A certified CIPP/E, CISA, ISO Lead Auditor/Implementer, Cloud Security Alliance STAR lead auditor. And experience of working with various regulations such as DPDPA, GDPR etc During my career journey at big4s, I have led compliance projects globally and focusing diverse industries. Currently advising organizations on their DPDPA readiness journey in India. I have also led the market side of the EY CertifyPoint (ISO certification body of EY) business. In the markets role, I have had opportunities of hosting several webinars and public speaking in conferences. I started my journey at EY in 2014 focusing on ISO/IEC 27001:2013 Information Security Management System, further growing and expanding my competencies over the years in varied topics of ISO's, Cloud Security Alliance, GDPR, CCPA, CISA and many other leading frameworks & regulations. Before joining EY, I have gained experience working in Philips and Infosys

Experience

12 yrs 3 mos
Total Experience
2 yrs 9 mos
Average Tenure
1 yr 2 mos
Current Experience

Confluent

Regional Lead (OCISO) - Trust and Assurance

Feb 2025Present · 1 yr 2 mos

  • As a Staff Trust & Assurance Program Manager, I lead APAC & Middle East regions for Office of the CISO (OCISO).
  • Leading complex customer trust & assurance engagements across strategic and regulated accounts (e.g. FSI) including security audits, security contract negotiations, due diligence questionnaires. Translating regional regulatory and framework requirements (e.g., Australia APRA, Singapore MAS, ISO 27001, CSA CCM) into clear security narratives. Executing regional components of the Trust roadmap, aligning customer requirements, regulatory trends, and security capabilities. Enabling teams through targeted security and compliance sessions. Driving thought leadership and trust transparency via whitepapers

Deloitte

Associate Director

Feb 2024Feb 2025 · 1 yr · Gurugram, Haryana, India

  • Cyber, Data & Privacy

Ey

5 roles

Senior Manager

Promoted

Oct 2020Jul 2023 · 2 yrs 9 mos

  • Core focus on risk management, information security and data privacy topics
  • Assisting large-complex organizations with their risk & compliance objectives
  • Leading engagements with complex scope, with >50 products and >100 locations
  • Leading third party/internal audits basis ISO, SOC2, NIST, CSA and other frameworks as well as
  • managing the complete cycle of audit processes (i.e. planning to report delivery)
  • Assisting organizations in defining and implementing the compliance strategies and control
  • processes focusing People, Process and Technology
  • Advising organizations on data privacy principles by leveraging on IEC 27701:2019, GDPR with
  • principal focus on Data deletion, PII disclosure notification, sub-contracted PII processing etc.
  • Responsible for managing client relationships and growing the key client engagements from
  • various sectors (Fortune 500)
  • Managing a team of >25 members, with diverse backgrounds and nationalities
  • Trainer of ISO lead implementer/auditor topics
Risk ManagementCompliance RegulationsInformation Security ManagementThird Party Risk Management (TPRM)Data Privacy

Manager

Oct 2018Oct 2020 · 2 yrs

Senior Advisor - Risk

Oct 2016Sep 2018 · 1 yr 11 mos

  • Lead Auditor for certifications against ISO/IEC 27001:2013 - Information Security Management
  • Systems.
  • Lead implementer of management system frameworks as per various ISO standards.
  • Performed and lead several assessments against security and privacy controls for various organizations.
  • Key focus on cloud-based services.
  • Expertise in performing integrated framework audits based on various compliance
  • requirements/standards.

Advisor - Risk

Sep 2014Sep 2016 · 2 yrs

  • Main focus on:
  • Certification audits for internationally recognized standards ISO/IEC 27001:2013 Information Security,
  • ISO 9001 Quality Management, ISO 22301 Business Continuity, ISO 20000 Service Management , ISO
  • 27018 Security and Privacy in Public cloud, CSA STAR certifications, ISO 14001 Environmental
  • Management, OHSAS 18001 Occupational Health & Safety
  • Implementation of Management System frameworks as per various standards
  • Performing gap analysis to assess the readiness towards certification(s)
  • Conducting Risk Assessments

Graduate Intern

Feb 2014Aug 2014 · 6 mos

  • The internship was combined with a master thesis project. The topic of thesis being 'Stakeholders perspective of Mobile Payment Platforms'. The aim of this research was to develop a bigger picture of mobile payment platforms from the viewpoint of numerous actors involved in the mobile payments industry, to compare their preferences and reflect on the strategic implications.
  • The perspectives of these actors were taken on 4 main categories i.e. Technological, Organization, Strategic and Economic. These 4 areas of focus further included different criteria.
  • The results were achieved using a quantitative approach called 'Analytic Hierarchy Process' which makes use of surveys and interviews.
  • About 45 participants took part in the research, many of them belonging to different industries.
  • The internship/thesis was completed with a public presentation
  • .
  • Apart from thesis project, this internship has been a great platform to get acquainted with advisory services of the organization. Additionally, a training on ISMS Lead Implementer was undertaken during the course of internship with an aim to understand the Information Security Management Systems.

Tedxdelft webcare team

Volunteer

Oct 2013Oct 2013 · 0 mo · Delft Area, Netherlands

Tu delft

Student Assistant

Jun 2013Dec 2013 · 6 mos · Delft Area, Netherlands

  • Assisted on various research projects.
  • Analyzed the factors behind emergence of a dominant standard in a standards battle between different products/technologies. Focused primarily on technology patterns and business ecosystems.
  • Another project related to platform wars in the field of smart grids. The project consisted of tasks like researching about the relevant standards in smart metering & Home Energy Management Systems, conducting a stakeholder analysis, investigating social values & norms influencing the acceptance of the technology.
  • My work took place under the supervision of Dr. G. (Geerten) van de Kaa, Assistant Professor ,
  • Strategy and Innovation,TU Delft

Infosys

System Engineer (Retail, CPG , Logistics and Life Sciences)

Aug 2011Jul 2012 · 11 mos · Jaipur Area, India

  • Worked as a System's Engineer in a team project for enhancement of website for U.S. Fashion retail chain, Nordstrom,Inc. My contribution was mainly on requirement analysis of the technical tasks.Also underwent an extensive training program at Infosys Limited, Mysore. This training was a great opportunity to develop and improve my software as well as team-working skills.

Philips lighting

Trainee (Global Technology Development)

Jun 2010Aug 2010 · 2 mos · Chandigarh Area, India

  • Training in Philips Electronics India Limited, Light factory under Global Technology Development(GTD) centre for Compact Fluorescent Lamps. GTD is a centre focusing on innovations and it investigates the lighting market and the changing trends.I worked on various test procedures performed on CFL's to improve their quality with respect to different market segments and also analyzed the internal circuitory of CFL's. This training was great platform in learning out ways to make technology cost efficient by optimizing the techniques.

Education

Delft University of Technology

Master's Degree — Management of Technology

Jan 2012Jan 2014

MMU,Mullana

Bachelors of Technology — Electronics and Istrumentation

Jan 2007Jan 2011

Delhi Public School,Faridabad

Stackforce found 100+ more professionals with Risk Management & Data Privacy

Explore similar profiles based on matching skills and experience