Natasha Batra
** *** ****** #100*-***-*** ****
Jersey City, NJ 07302 *************@*****.***
OVERVIEW: Cyber Security professional with four years of experience in IT Auditing, Governance, Risk, and Compliance (GRC). Knowledge in applying security frameworks to reduce client overall risk and improve security practices.
WORK EXPERIENCE
PriceWaterhouseCoopers Advisory Services, LLP, New York, New York Senior Associate, Consultant April 2015 – June 2016
● Serve as Security subject matter expert and improve overall client Risk
● Perform Security tests and evaluations to improve internal security controls
● Assess and prepare business impact and risk assessments for Financial Services clients
● Apply Project Management competencies to large multi divisional security remediation project Insight Global, New York, New York (Contract)
Information Systems Security Officer June 2014 April 2015
● Served as Security subject matter expert and representative on internal/external application development
● Performed Security tests and evaluations against PCI, FISMA, HIPAA and ISO standards
● Assessed and prepared business impact and risk assessments to the medical enterprise
● Completed vendor security risk assessments
HP Enterprise Services, Washington, DC (Contract)
Information Systems Security Officer April 2014 June 2014
● Served as Security subject matter expert and representative on internal/external application development
● Certify and accredit critical/non critical internal federal PCI applications
● Performed Security tests and evaluations against NIST 800 framework
● Assessed and prepared business impact assessment to determine application criticality
● Prepared and assessed vulnerability assessments, code reviews, application characterizations and data dependency matrices for federal applications.
Blue Canopy Group, LLC, Arlington, Virginia
Senior Information Security Auditor June 2013 November 2013
● Executed full audit cycle from the initial test plan through final summary report for executive management.
● Planned and Prepared full audit cycle artifacts from test plan through final summary report
● Performed regional and local information security assessments and site security reviews against COBIT accountability units (including Configuration Management, Backup and Restoration and Information Architecture)
● Assessed federal client’s site security against internal security rules
● Served as Security SME on internal development projects Aon Corporation through Randstad Technologies, Chicago, Illinois (Contract) Information Technology Risk Analysis January 2013 May 2013
● Performed Security Risk assessments and site security reviews at client data centers
● Planned and executed Information Security Audits against the NIST framework
● Rated and responded to security surveys for our clients
● Rated and assessed security survey findings from our suppliers and vendors
● Mitigated or determined if risk is acceptable with clients’ internal security team Bank Staff, Inc., Chicago, Illinois
Staffing Coordinator October 2011 November 2012
● Established policies to ensure compliance with PCI DSS
● Served as only in house security expert and drafted firms first information security policy
● Recruited and onboarded qualified candidates
● Served as only human resources point of contact for all contractors out in the field ● Conducted interviews of prospective candidates
Harmonia Analysis Consultant Holdings Group, LLC. McLean, Virginia February 2011 October 2011
● Educated team on emergency response and business continuity tactics and industry best practices
● Presented on and responded to RFP requests to create a technology prototype for emergency first responders
● Drafted technology proposals to win government contracts
● Assessed technology transfer readiness using surveys and interviews DHT LAW, P.L.L.C., Falls Church, Virginia
Litigation Assistant/Administrator August 2010 February 2011
● Drafted basic trial litigation (research papers, motions and requests)
● Researched and drafted litigation (motions and basic liens) on complex cases (family law, intellectual property law and criminal law)
● Prepared and Presented client facing presentations on their case status
● Served as primary point of contact for all clients requesting assistance with their pending cases CREDENTIALS
US Citizen with SF 85P (eligible for security clearance) EDUCATION
DePaul University, 2013
Masters of Science in Computer, Information and Network Security, Concentration: Governance, Risk and Compliance
Virginia Commonwealth University, 2009
Bachelors of Arts in Homeland Security and Emergency Preparedness and Criminal Justice SKILLS:
Information Security
Management
Writing Proposals
Project Management
Archer Tool
HIPAA
COBIT
Information Technology
Auditing
Enterprise Risk
Management
Languages: Hindi
(fluent) and Spanish
(basic)
NIST 800 53
Business Continuity