Summary
Overview
Work History
Education
Skills
Qualifications Summary
References
Training
Timeline
Generic

Chirag Panchal

AVP-Infrastructure, Information Security and Compliance
Pune

Summary

A results-oriented professional with over 24 years of experience in driving infrastructure, information security, and compliance strategies for diverse organizations. Proven track record of optimizing IT infrastructure, fortifying cybersecurity frameworks, and ensuring regulatory compliance to safeguard organizational assets. Adept at leading cross-functional teams, implementing robust risk management practices, and fostering a culture of continuous improvement. Strong communicator with a strategic mindset, dedicated to delivering innovative solutions that align with business objectives and enhance operational resilience.


Overview

26
26
years of professional experience
4
4
years of post-secondary education

Work History

AVP – Infrastructure, Information Security and Compliance

HiLabs India Pvt. Ltd.
2 2022 - Current
  • Implement and maintain Security and Privacy controls as required by business and regulatory requirements
  • Ensure Secure software development there by reducing vulnerabilities introduced during development
  • Implement Cloud Security controls to ensure security and privacy of data
  • Conducting risk assessments to identify potential security threats, vulnerabilities, and impacts organization's assets and operations
  • Risk Management by way of assessing, and prioritizing potential security risks to organization's information assets and infrastructure
  • Conducting comprehensive vulnerability assessments across organization's systems, networks, and applications to identify potential weaknesses and security gaps including automated pentesting tools and manual validation.
  • Vulnerability management by prioritizing them based on severity and potential impact, and then collaborating with relevant teams to develop and implement effective remediation plans
  • Implementation of Security tools – File Integrity Monitoring (FIM), Host based Intrusion Detection (HIDS), Data Leak Prevention tool (DLP), Firewall (L3 and L7), Audit logging and monitoring, SIEM, SAST
  • Maintain corporate wide business continuity program to address disaster recovery, business continuity and emergency response management
  • Developed, maintained, and revised Information Security policies and procedures for operation of compliance program and its related activities
  • Due Diligence of all vendors to ensure that they are provide secure products and services

Sr. Manager – Information Security

DocASAP India Pvt. Ltd. (part of Optum/UHG group)
08.2020 - 02.2022
  • Implement and maintain Security and Privacy controls in accordance with business and regulatory requirements
  • Ensure Secure software development there by reducing vulnerabilities introduced during development proves by providing regular training to development team
  • Ensure security of Application and Cloud infrastructure by performing regular security review of releases, Automated/manual reconnaissance, regular vulnerability scans and Penetration tests
  • Implementation of Security tools – File Integrity Monitoring (FIM), Host based Intrusion Detection (HIDS), Data Leak Prevention tool (DLP)
  • Implemented Risk Assessment and Risk Mitigation as per industry best practices
  • Maintain corporate wide business continuity program to address disaster recovery, business continuity and emergency response management
  • Developed, maintained, and revised Information Security policies and procedures for operation of compliance program and its related activities
  • Due Diligence of all vendors to ensure secure products and services

Sr. Manager – Information Security

Innovaccer Analytics Pvt. Ltd.
06.2018 - 08.2020
  • Risk Management by way of assessing, and prioritizing potential security risks to organization's information assets and infrastructure
  • Vulnerability management by prioritizing them based on severity and potential impact, and then collaborating with relevant teams to develop and implement effective remediation plans
  • Maintain corporate wide business continuity program to address disaster recovery, business continuity and emergency response management
  • Developed and maintained Information Security policies and procedures for operation of compliance program and its related activities
  • Providing security trainings to all employees
  • Guaranteeing company's compliance with relevant standards by conducting routine internal audits

Sr. Consultant

Risk Quotient
02.2017 - 06.2018
  • Formulating and implementing strategic plans to enhance organization's overall security posture.
  • Identifying potential security risks and vulnerabilities, conducting risk assessments, and developing mitigation strategies to safeguard against threats.
  • Designing and implementing robust security architectures that align with business objectives while ensuring confidentiality, integrity, and availability of critical assets.
  • Ensuring compliance with relevant regulations and standards (such as GDPR, HIPAA, ISO 27001) through policy development, audits, and adherence to industry best practices.
  • Establishing proactive monitoring systems, analyzing security logs and events, and staying updated on emerging threats and vulnerabilities through threat intelligence feeds.
  • Educating staff on security best practices, raising awareness about potential threats, and promoting culture of security throughout organization.
  • Assessing and selecting security tools and technologies, overseeing their deployment, and optimizing their use to enhance overall security effectiveness.
  • Establishing proactive monitoring systems, analyzing security logs and events, and staying updated on emerging threats and vulnerabilities through threat intelligence feeds.

IT-Head

Superdoll Trailer Manufacture Co. (T) Limited
10.2012 - 01.2017

This role involves managing IT infrastructure and operations comprising Windows 2003/2008, Google Apps for Business. It also includes maintaining Cisco Routers, Firewall, leased internet, and data links. IT budgeting, IT roadmaps,Management reporting, managing IT security, ensuring data confidentiality and adherence to IT policies.

Sr. Manager-IT

CORE Education & Technologies Limited
02.2012 - 09.2012

This role involves overseeing complex IT infrastructure and operations across multiple locations, including Windows 2008 on IBM servers, VMware, Symantec NetBackup, SQL servers, and Exchange 2010.

Manager-IT

Quality Group Ltd.
03.2007 - 08.2011

Systems Administrator

Editec Lotteries
02.2006 - 02.2007

Team Member

Pan India Network Infravest Pvt. Ltd
12.2002 - 01.2006

Executive Customer Support

Zee Telefilms Limited
03.2001 - 12.2002

Customer Support Engineer

PCS Industries Limited
08.2000 - 02.2001

Customer Support Engineer

Omni Computers Pvt. Limited
05.1998 - 07.2000

Education

Bachelor of Computer Applications - Computer Applications

YCMOU
Nashik, Maharashtra
05.2003 - 05.2003

Diploma - Electronics And Telecommunication

Bharti Vidyapeeth Institute of Technology
Navi, Mumbai
06.1993 - 05.1997

Skills

SocII Type2

undefined

Qualifications Summary

Currently perusing CISSP

ISO27001 Lead Auditor, 2019
Certified Information Systems Auditor (CISA), 2019
ITIL Lifecycle Foundation, 2017
Training of Certified Ethical Hacker, 2014
Cisco Certified Network Professional, 2007
Cisco Certified Network Associate 2.0, 2002
Microsoft Certified Systems Engineer in Windows NT 4.0, 2000
Masters Diploma in Networking and Data Communication from CMS Computer Institute, 1998

References

References will be provided upon request.

Training

  • 7 habits of highly effective people by Stephen covey
  • Leadership training by coach Phil

Timeline

Sr. Manager – Information Security

DocASAP India Pvt. Ltd. (part of Optum/UHG group)
08.2020 - 02.2022

Sr. Manager – Information Security

Innovaccer Analytics Pvt. Ltd.
06.2018 - 08.2020

Sr. Consultant

Risk Quotient
02.2017 - 06.2018

IT-Head

Superdoll Trailer Manufacture Co. (T) Limited
10.2012 - 01.2017

Sr. Manager-IT

CORE Education & Technologies Limited
02.2012 - 09.2012

Manager-IT

Quality Group Ltd.
03.2007 - 08.2011

Systems Administrator

Editec Lotteries
02.2006 - 02.2007

Bachelor of Computer Applications - Computer Applications

YCMOU
05.2003 - 05.2003

Team Member

Pan India Network Infravest Pvt. Ltd
12.2002 - 01.2006

Executive Customer Support

Zee Telefilms Limited
03.2001 - 12.2002

Customer Support Engineer

PCS Industries Limited
08.2000 - 02.2001

Customer Support Engineer

Omni Computers Pvt. Limited
05.1998 - 07.2000

Diploma - Electronics And Telecommunication

Bharti Vidyapeeth Institute of Technology
06.1993 - 05.1997

AVP – Infrastructure, Information Security and Compliance

HiLabs India Pvt. Ltd.
2 2022 - Current
Chirag PanchalAVP-Infrastructure, Information Security and Compliance