Bio
Credentials
-
PRINCE2 Foundation in Project Management
AXELOS Global Best PracticeAug, 2016- Apr, 2026 -
ITIL Foundation in IT Service Management
AXELOS Global Best PracticeJul, 2016- Apr, 2026 -
IRM Enterprise Conference and Opco Workshops, Houston, USA
ChevronJan, 2015- Apr, 2026 -
Software License Manager Training
ChevronSep, 2014- Apr, 2026 -
IRM Training & Workshop, Houston, TX, USA
ChevronFeb, 2014- Apr, 2026 -
CORPGWD Experienced Supervisor Workshop – People Leadership 1
ChevronDec, 2012- Apr, 2026 -
Teamwork & Team-Building Skills
British CouncilSep, 2012- Apr, 2026 -
Presentation Skill
British CouncilAug, 2012- Apr, 2026 -
Data Privacy Coordinator, San Ramon, CA, USA
ChevronMar, 2012- Apr, 2026 -
IRM Conference, San Ramon, CA, USA
ChevronMar, 2012- Apr, 2026 -
Process Control Network Security Intermediate, Houston, USA
ChevronApr, 2010- Apr, 2026 -
Supervisors Essentials Workshop - GWD
ChevronJun, 2009- Apr, 2026 -
Global IRM Conference, Houston, TX, USA
ChevronApr, 2008- Apr, 2026 -
Operational Excellence Regular Certification
ChevronDec, 2007- Apr, 2026 -
IRM Information Protection, Data Privacy Training, Singapore
ChevronJul, 2007- Apr, 2026 -
SOX Hands-on Power Users, Assessors & Reviewers, Bangkok
ChevronMay, 2007- Apr, 2026 -
Microsoft Certified Professional
MicrosoftDec, 2004- Apr, 2026 -
Certificate of Excellence on Core Technologies of MS Exchange Server 5.0
Desktop Computer Connection Ltd, Authorized Technical Education CenterSep, 1998- Apr, 2026 -
C' Language with Application
Computer Center, University of DhakaJul, 1994- Apr, 2026 -
Capital Stewardship Organizational Capability (CSOC)
ChevronSep, 2011- Apr, 2026
Experience
-
-
United States
-
Oil and Gas
-
700 & Above Employee
-
Cybersecurity Risk Analyst
-
Jul 2021 - Present
• Supports the Risk Manager and performs risk management activities at a more detailed level*• Understands and assesses the cyber risks, vulnerabilities and threats faced by the platform; recommends and drives the implementation of appropriate mitigation strategies, including IRM plans and implementation of common tools and processes• Understands relevant standards, laws and regulations and proactively engages to ensure they are addressed• Conducts spot checks to Platform processes, reports results, provides recommendations to remediate, and follows up on remediation efforts • Power user for ServiceNow and OneTrust; can train users• Facilitates DPIAs and Incident investigations as needed• Reports state of IP/DP compliance and escalates priority conflicts to the leadership team• Ensures that gaps and vulnerabilities identified are properly managed and remediated• Assists in coordination of the audits/compliance requirements and remediation of the findings
-
-
Information Risk Management Team Lead
-
Mar 2019 - Jun 2021
• Business Unit (BU) IRM Coordinator• Process Control Network (PCN) IRM Coordinator• Business Unit Data Privacy Coordinator• Process Control Network (PCN) Cybersecurity Advisor• SOX IT Coordinator• Cybersecurity Acceleration Project deployment coordinator• Member of ITLT• Cyber Incident Response (CIRT) Coordinator• Pre-Audit IRM validation, identify gaps and track remediation• Coordinate IT and PCN Audit activities, audit responses and track gap remediation• Coordinate Cybersecurity vulnerability remediation• Prepare IRM Annual Plan• Disaster Recovery Plan (DRP) Coordinator• Manager IRM Plan activities on Archer GRC• Review and approve BU exception, ensure mitigations are in place.
-
-
Information Risk Management & Information Management Supervisor
-
Nov 2008 - Mar 2019
• Manage Information Protection (IP) Compliance and activities• Plan, develop and implement annual IP plan • Coordinate SOX (IT), Data Privacy and Information Management (IM) compliance activities• Ensure Disaster Recovery and Incident Response Plan• Deployment Coordinator of Archer GRC Tool• Ensure Software License Management• Ensure Cyber Security Assurance• Facilitate Risk Assessments for IT systems in business and PCN/SCADA network• Facilitate Pre-audit assessment, identify gaps and ensure remediation• Coordinate IT Audit activities, audit responses and gap remediation effort• Supplier Qualification Assessment for third party contractor / vendor • Manage and ensure IT compliance evergreen tasks• Identify and submit exceptions with mitigation plan for non-compliant systems• Coordinate for IP directive deployments• Participate in Global IT Risk Management Activities (Conference / Workshop / Meetings / Presentations)• Facilitate monthly / Quarterly IT compliance meetings • Monthly / Annual IT Compliance Report to local / regional / global IT Leadership Team• IRM Coordinator of Process Control Network (PCN) / SCADA systems• Manage IT Inventory (assets, applications, databases, etc.)• Ensure SOX Process 20 controls and perform annual / semi annual audit/testing• Ensure Data Privacy directive deployment as per company standards • Ensure Data Privacy process inventory, assessment and gap remediation• Assess and Ensure IP Compliance for new projects of the operation: resource, budget, planning• Mentors IT Staffs on Information Protection matters• Ensure compliance training for users, System Administrators and Project team members• Ensure technical controls as per Company standards and policy for IT systems and technologies• Plan, develop and implement IT standard operating procedures and processes• Ensure IP compliance on Factory Acceptance Testing (FAT) and Site Acceptance Testing (SAT) for PCN systems before commissioning.
-
-
Information Protection Coordinator
-
Oct 2003 - Oct 2008
• Coordinate Information Protection (IP) Compliance and activities• Plan, develop and implement annual Information Protection (IP) plan • IT SOX and Information Management (IM) Coordinator• Ensure Disaster Recovery Plan for the Company IT System• Coordinate Risk Assessments/Pre-Audit reviews for IT systems in business and PCN/SCADA network• Ensure IT compliance evergreen tasks are completed• Communicate in all directions to raise awareness of IP and share information • Prepare assessment / compliance reports for computing and network environments • Identify and submit exceptions including mitigation plan for non-compliant systems• Coordinate with IT staff and leadership team for Information Protection (IP) directive deployments• Participate in Global IT Risk Management Activities • IRM Coordinator of Process Control Network (PCN) / SCADA systems• Manage IT Inventory (hardware, network devices, applications, databases, etc.) for business and PCN• Ensure compliance for SOX Process 20 controls and perform annual / semi-annual audit/testing• Mentors other IT Staffs on IP matters• Ensure IC&T on-boarding induction for new employees and contractors• Ensure compliance training for users and System Administrators• Ensure required technical controls as per Company standards and guideline for IT systems and technologies• System Administration of Landmark Linux Systems for Geophysical Application• Plan, develop and implement IT standard operating procedures and processes
-
Unocal
-
Bangladesh
-
IT Coordinator
-
Mar 2000 - Sep 2003
-
Bangladesh
• Administrate Local Area Network in the Gas Plant and Field offices running on NT and LINUX• Inventory management for all IT equipment including PCs, printers, scanners and modems in the gas plant and field offices of the company• Provide immediate IT related support to the PC users (for any hardware, application software and remote e-mail using MS Outlook) in the gas plant and field offices of the company• Configured and maintain MS Exchange Server 5.5, apache web server and a DNS server• Design and execute monitoring programs for operational activities• Prepare monthly monitoring reports for IT• Maintain liaison with the corporate office and be updated with new rules and regulations• Organize training needs assessment for field employees on IT
-
AGNI Systems Limited
-
Dhaka, Bangladesh
-
System Administrator
-
Oct 1996 - Mar 2000
-
Dhaka, Bangladesh
• LINUX System Administration.• Administer Proxy server in Win NT & LINUX (Squid).• Install, design and maintain TCP/IP networking using Ethernet card and CAT5 UTP cable.• Configure SMTP, UUCP, DNS and Proxy server in LINUX for corporate clients.• Configure SMTP Mail server using MS Exchange Server 5.5• Maintain Lotus CCMAIL 8.0 server in Win NT 4.0 and Novel NetWare 4.11• Configure Proxy server using MS Proxy Server 2.0 or Winproxy.• Upgrade firmware of modem.• Register new domain name at Network Solutions Database.• Maintain and update the company web site, http://www.agni.net• Develop Internet Home Page.• Write required dial-in chat script. • Prepare technical manual and user documentation.• Give solution for critical technical problems for the Help Desk team.• Provide corporate training to install, configure and troubleshoot Internet client software.• Setup Thaicom Direct and ZakNet PC Card for high speed download of Internet information
-
-
Maintenance Engineer
-
Dec 1995 - Sep 1996
-
Dhaka
* Client Support for Internet Service Provider
-
-
Education
-
1991 - 1992University of Dhaka
Master of Science (M.Sc.), Physics -
1988 - 1991University of Dhaka
Bachelor of Science (B.Sc.), Physics -
1985 - 1987Dhaka College
Higher Secondary Certificate (H.S.C.), Physics -
1983 - 1985Rangpur Zilla School
Secondary School Certificate (S.S.C.), Science Group
Suggested Services
This profile is unclaimed. These are suggested service rates with 0% commision upon successful connection
Industry Focus. “Oil and Gas”
Need a custom project? We'll create a solution designed specifically for your project.
References
Community