Summary
Overview
Work History
Education
Skills
Certification
Accomplishments
Work Availability
Timeline
Methodologyframework
Automationtooldeveloped
Emailplatform
Personal Information
Methodologyframework
Automationtooldeveloped
Emailplatform
Generic
THARUN SUGUMARAN

THARUN SUGUMARAN

Halifax,NS

Summary

Experienced Cybersecurity and IT Audit Professional with over 10 years of expertise in developing, implementing, and managing security measures for diverse clients, including healthcare, insurance, and life sciences organizations. Demonstrated ability to conduct comprehensive security architecture assessments, identify and mitigate risks, and ensure compliance with industry standards such as SOX, SOC II, HIPAA, COBIT, ISO/IEC, NIST, SANS, ISACA, and PCI DSS. Adept at collaborating with stakeholders to align security measures with business objectives and provide actionable recommendations for enhancing security posture. Proven track record in performing IT audits, managing privileged accounts, and executing remediation efforts to address control weaknesses. Highly skilled in delivering detailed audit reports, influencing executive management, and supporting responses to internal testing, audits, and regulatory exams. Exceptional problem-solving and communication skills, with a focus on maintaining a balance between risk mitigation and operational efficiency.

Overview

10
10
years of professional experience
1
1
Certificate

Work History

Senior Associate

Cognizant Technology Solutions
05.2022 - Current
  • Executed comprehensive security architecture assessments for clients in the healthcare and life sciences sectors, identifying vulnerabilities and recommending solutions that improved data protection by 40% and compliance adherence by 25%.
  • Delivered detailed reports outlining vulnerabilities, risk mitigation strategies, and recommended security improvements, leading to a 30% reduction in security incidents.
  • Implemented security controls and measures based on industry standards and tailored to client-specific needs, improving compliance rates by 25%.
  • Collaborated with clients to understand business objectives and aligned security measures with organizational goals, enhancing overall security posture by 20%.
  • Provided ongoing support and consultation to clients for the implementation of security recommendations, achieving a 95% client satisfaction rate.
  • Served as technical subject matter expert (SME) on cyber security/systems security matters, conducting over 50 training sessions.
  • Conducted reviews to identify risk areas and establish protocols, reducing risk exposure by 40%.
  • Evaluated IT controls, analyzing and assessing IT controls, risk mitigation, security, and compliance, including the entire IT audit process, resulting in a 35% improvement in audit outcomes.
  • Worked with audit project teams to achieve departmental goals and ensure awareness of changes in business activities and objectives, leading to a 10% increase in audit efficiency.
  • Performed audit follow-up activities to test implementation of management's responses to audit findings, ensuring a 90% remediation rate.
  • Performed annual SOX Compliance audit, testing key controls for design adequacy and operating effectiveness, achieving a 98% compliance rate.
  • Executed SOC II audit review, leading to a 20% improvement in control effectiveness.
  • Timely drafted audit reports that included appropriate audit findings and management recommendations, presenting audit-identified issues to internal audit department leadership and senior management, influencing over 100 executive decisions.
  • Conducted tests of design (TOD) and tests of effectiveness (TOE) to validate remediation efforts put together by management, achieving a 95% success rate in remediation efforts.

Senior Associate

Cognizant Technologies Solutions
07.2019 - 05.2022
  • Interacted with client stakeholders and emphasized adherence to security standards specific to Privileged Accounts, resulting in a 50% reduction in privileged account misuse.
  • Performed remediation of Privileged Non-Person Accounts and Orphaned Privileged High Risk AD Accounts, achieving a 90% remediation success rate.
  • Designed, developed, and implemented test plans to perform internal audits on SOX\SOC1 related applications, Active Directory Privileged accounts & groups, Mainframe Datasets, IBM groups, and SQL Database groups, leading to a 30% improvement in audit accuracy.
  • Conducted semi-annual access reviews of Privileged accounts & groups, non-person accounts, and user entitlements assigned to users, improving compliance rates by 20%.
  • Assisted HR team in performing investigations on retro terminated users to validate whether terminated users accessed any SOX\SOC1 applications after their termination date, identifying 10 critical violations and preventing potential breaches.

Associate

Cognizant Technologies Solutions
10.2016 - 06.2019
  • Worked with Healthcare Client Stakeholders to gather information related to restricted data (SSN/HICN) usage in applications, resulting in a 95% reduction in non-compliance incidents.
  • Developed an automation tool: Security Policy Compliance Communicator, which automatically manages communication with Business Line Owners in an organization, enforcing various security policies and preventing financial implications for the client.

Senior System Executive

Cognizant Technologies Solutions
03.2014 - 09.2016
  • Provisioned and de-provisioned access for over 5,000 client employees, contractors, and 3rd party providers, maintaining a 98% accuracy rate.
  • Acted as the first point of contact for all network-related issues, achieving a 95% resolution rate for Level 1 incidents.
  • Maintained up-to-date policies and procedures, ensuring 100% adherence to client policies.

Education

Postgraduate in IT(JAVA) -

NIIT
Chennai, India
03.2014

Bachelor's Degree in (Computer Science And Engineering) -

Anna University
Chennai, India
01.2013

Skills

  • Risk Assessments
  • Data Privacy and Protection
  • Identity & Access Management/ Certification
  • Compliance & Self-Assessment Professional
  • Security Alerts
  • Networking
  • Active directory and Mainframe
  • Governance
  • Tableau-ITPM
  • Splunk
  • Gurucul Risk Analytics (GRA)
  • Service Now
  • BMC Remedy
  • EGRC Archer
  • TABoR
  • RSA Archer
  • Total Privileged Access Management
  • Kali Linux
  • Windows Server 2008/2012/2012 r2/2016
  • Project Management

Certification

  • Microsoft Certified Profession in Installation, Storage and Compute with 2016, Microsoft Corporation
  • Certified Ethical Hacker V10
  • Splunk Certified User
  • ITIL V3
  • SIX Sigma Yellow Belt
  • Process Space from Cognizant Certified Professional

Accomplishments

  • Awarded as the Best Newcomer, Customer Champion, Digital Excellence by Business Unit
  • Received appreciation from client several times for resolving the issues on time.
  • Associate of the Quarter (Q2) & Client Awards: 2019
  • Supervised team of 20 staff members.

Work Availability

monday
tuesday
wednesday
thursday
friday
saturday
sunday
morning
afternoon
evening
swipe to browse

Timeline

Senior Associate

Cognizant Technology Solutions
05.2022 - Current

Senior Associate

Cognizant Technologies Solutions
07.2019 - 05.2022

Associate

Cognizant Technologies Solutions
10.2016 - 06.2019

Senior System Executive

Cognizant Technologies Solutions
03.2014 - 09.2016

Postgraduate in IT(JAVA) -

NIIT

Bachelor's Degree in (Computer Science And Engineering) -

Anna University

Methodologyframework

ITIL V3

Automationtooldeveloped

Security Policy Compliance Communicator (SPCC)

Emailplatform

MS Exchange

Personal Information

Identity & Access Management/ Certification Compliance & Self-Assessment Professional/ Data Privacy and Protection/ Data Cleanup/ Security Audits/Risk Assessment

Methodologyframework

ITIL V3

Automationtooldeveloped

Security Policy Compliance Communicator (SPCC)

Emailplatform

MS Exchange

THARUN SUGUMARAN