Wasim Jafri: Professional Profile
Wasim Jafri: Professional Profile
Wasim Jafri: Professional Profile
Professional Profile
To apply and continue to develop my Information Technology skillset to help achieve exceptional results for
my employer/customer. To effectively use my IT Service Management and niche ServiceNow experience
across various industries to deliver the best possible outcomes and meeting desired KPIs.
Area of Expertise
• ServiceNow Consultant
• Program Management
• Cyber Security - Governance, Risk and Compliance
• Agile/Scrum
• Business Analysis
• Stakeholder Management
• ServiceNow Next Gen Program: Certified System Administrator, Certified Application Developer*
• Frameworks: ITIL, NIST, ISO
• Technologies: ServiceNow, Splunk, SEIM, AWS Console, Endpoint Protection
• AWS, AZURE
• CompTIA Pentest+
• Certified Risk Information System Control
• Certified Ethical Hacker (V11)
Career History
As a part of Next Gen ServiceNow program, received extensive training and learning plan which includes CSA
and CAD. Coached by various ServiceNow SME’s, academic institutions, nonprofit organisations, governments,
and workforce development organisations in this program. Real- time hands on experience working on Servi-
ceNow projects with end to end implementation.
Reporting to the Cyber Risk and Compliance manager, my task was to be responsible for assisting with the de-
sign and implementation of secure risk and compliance related solutions to ensure that information assets
and associated technology, applications, systems, infrastructure and processes are adequately protected in
the digital ecosystem in which we operate.
• Managed a portfolio of Third Party Security Assessments. This includes leading meetings, sending out secu-
rity questionnaires, analysis of security questionnaire answers and the completion of assessment reports.
• Work with corporate legal and compliance representatives to identify all related Technology compliance re-
quirements (i.e., security, user access, privacy, data integrity, etc.) associated with the laws and regulations
within all relevant jurisdictions)
• Create and implement Policies, Standards, Procedures and Guidelines as per information security require-
ments
• Assist in the creation of a compliance risk assessment framework and periodically assess the regulatory,
commercial and organisational, inherent and residual technology compliance risks
• Perform Vendor security assessments
• Cyber security GAP assessments (NIST, ISO27001)
• Facilitate workshops and participate in working groups.
• Perform ISO Internal audits and assessments
• Develop communication to the Business Stakeholders
• Provide remediation guidance and prepare management reports to track remediation activities.
Education
Strengths
• Ability to work in and lead a team.
• Effective problem analysing skills.
• Good communication and presentation skills.
• Efficient time management skills for timely delivery of products to the customer.
Wasim Jafri