Harsh Vardhan B.

CEO

Gurugram, Haryana, India4 yrs 6 mos experience
Highly Stable

Key Highlights

  • Expert in ISO 27001 implementation and compliance.
  • Proven track record in risk management and incident handling.
  • Strong cross-functional collaboration to enhance security posture.
Stackforce AI infers this person is a Governance, Risk & Compliance expert in Information Security.

Contact

Skills

Core Skills

Risk ManagementInformation SecurityGovernance, Risk & ComplianceTechnical Support

Other Skills

Control Self-Assessment (CSA)Incident ManagementRisk AssessmentRisk TreatmentSecurity AwarenessVulnerability ManagementAuditingIT GRCData AnalyticsISO 27001Risk RegisterInternal AuditsCybersecurity AssessmentsCompliance ManagementZscaler

About

GRC & Information Security professional with hands-on experience in Control Self-Assessment (CSA), Incident Management, and Risk Management across regulated enterprise environments. Currently working as an Information Security Executive at Bill Gosling Outsourcing, where I support CSA reviews, assess control effectiveness, and manage Low and High risks to ensure issues are identified, mitigated, and audit-ready. Previously at Tata Consultancy Services (TCS), I worked as an Information Security Manager, implementing ISO 27001-based controls, maintaining the Risk Register, and supporting internal and client audits through structured risk and compliance practices. My strengths lie in risk identification, control validation, incident and problem review, and cross-functional coordination, helping organizations strengthen governance, reduce exposure, and maintain regulatory alignment.

Experience

4 yrs 6 mos
Total Experience
3 yrs 10 mos
Average Tenure
8 mos
Current Experience

Bill gosling outsourcing

Information Security Executive

Sep 2025Present · 8 mos · Gurugram, Haryana, India · Hybrid

  • Control Self-Assessment (CSA) coordinator, assessing design and operating effectiveness of information security controls.
  • Review and validate security incidents, risks, and problems, ensuring proper RCA, corrective actions, and evidence-based closure.
  • Manage Low and High risks, including risk assessment, mitigation planning, tracking, and formal risk acceptance.
  • Maintain the Risk Register and ensure all CSA, incident, and risk records are audit-ready.
  • Collaborate with IT, Compliance, and Business teams to remediate control gaps and strengthen security posture.
Control Self-Assessment (CSA)Incident ManagementRisk ManagementRisk AssessmentRisk TreatmentSecurity Awareness+5

Tata consultancy services

2 roles

Information Security Manager

Promoted

Oct 2021Aug 2024 · 2 yrs 10 mos

  • Implemented ISO 27001-based security controls across client environments, ensuring compliance with organizational and regulatory standards.
  • Conducted periodic risk assessments and maintained the Risk Register to track and mitigate vulnerabilities.
  • Led internal reviews and cybersecurity assessments to evaluate security posture and recommend corrective actions.
  • Facilitated third-party and client audits, preparing documentation and evidence aligned with audit requirements.
  • Collaborated with cross-functional teams to drive security awareness and policy compliance.
ISO 27001Risk RegisterInternal AuditsCybersecurity AssessmentsCompliance ManagementGovernance, Risk & Compliance+1

System Compliance Engineer

Oct 2020Oct 2021 · 1 yr

  • Managed asset compliance by ensuring proper deployment and configuration of enterprise security tools: Zscaler, Forcepoint DLP, McAfee Drive Encryption, and CrowdStrike.
  • Supported users with system/network issues, security software troubleshooting, and OS-level patch management.
  • Documented compliance findings and coordinated with teams to implement required remediation
ZscalerMcAfee Drive EncryptionCrowdStrikeEmail SecurityTechnical UnderstandingInformation Security+1

Education

CHANDIGARH UNIVERSITY

Master of Computer Applications - MCA — Computer Science

Mar 2022Feb 2024

Bundelkhand University

Bachelor of Computer Applications (BCA) — Computer Science

Jan 2017Jan 2020

Stackforce found 100+ more professionals with Risk Management & Information Security

Explore similar profiles based on matching skills and experience