Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Vijay Cherukupally

Summary

IT Risk and Compliance Officer with a strong track record in risk assessment and compliance auditing. Demonstrated ability to develop strategic compliance measures that enhance organizational integrity. Skilled in engaging stakeholders to ensure alignment with compliance objectives. Proven experience in conducting thorough audits to identify and mitigate risks.

Overview

13
13
years of professional experience
3
3
Certification

Work History

IT Risk and Compliance Officer

Dubai Holding Asset Management
07.2024 - Current
  • Conducted risk-based audits for multiple departments across the Dubai Holding Asset Management group.
  • Conducted walkthroughs of business processes with stakeholders to identify risks and control gaps.
  • Prepared audit reports and presented findings to senior management and stakeholders.
  • Developed detailed audit plans, outlining scope, objectives, and timelines for each engagement.
  • Managed GDPR compliance for all CRM activities, safeguarding customer data privacy.

Information Security Manager

MBG Group
12.2023 - 06.2024
  • Conducted internal audits for clients to verify compliance with ISO 27001 and UAE Information Assurance (NESA).
  • Assisted in the implementation of corrective actions based on audit results.
  • Participated in meetings with external auditors during annual reviews.
  • Conducted follow-up audits to verify implementation of corrective actions taken by management teams.
  • Collaborated with stakeholders to develop strategies for ensuring compliance with applicable laws and regulations.

Audit Supervisor

Deloitte
Hyderabad
05.2022 - 10.2023
  • Conducted multiple SOX 404 audits across various business units, managing teams and coordinating fieldwork for large clients.
  • Performed walkthroughs and testing of key internal controls to ensure compliance with SOX 404 standards.
  • Utilized audit management software and data analytics tools to enhance sampling efficiency and detect financial anomalies.

Senior Audit Associate

PWC
Hyderabad
11.2021 - 05.2022
  • Conducted risk assessments and due diligence for new and existing vendors.
  • Monitored compliance with TPRM policies, standards, and regulatory requirements.
  • Analyzed risk metrics and reported significant risks to senior management, ensuring timely escalation.

Senior Information Security Analyst

Franklin Templeton
Hyderabad
11.2021 - 05.2022
  • Conducted risk assessments and ongoing monitoring for critical vendors.
  • Maintained vendor risk register and documented assessment results.
  • Collaborated with procurement, legal, and IT/security teams to implement controls.
  • Provided risk-based recommendations to support contract negotiations.

Senior Security Consultant

Accenture
Hyderabad
02.2018 - 12.2020
  • Conducted internal audits and supported external certification audits.
  • Reviewed ISMS controls, documented findings, and recommended improvements.
  • Prepared organizations for certification and surveillance audits.
  • Conducted privacy assessments to identify compliance gaps and risks.
  • Enabled client organizations to meet compliance standards such as ISO 27001 and GDPR by implementing necessary controls within their azure environments.

Information Security Analyst

Wells Fargo
Hyderabad
05.2012 - 01.2018
  • Conducted quarterly user access reviews for critical banking systems, validating provisioning with department heads to enforce least privilege and ensure regulatory compliance.
  • Led change management reviews for IT infrastructure and core banking applications, assessing design and effectiveness of controls related to change authorization and segregation of duties.
  • Executed comprehensive risk assessments using industry frameworks to identify, prioritize, and mitigate operational risks affecting banking services.
  • Prepared detailed reports on access review outcomes and risk assessment findings for audit committees and senior management.

Education

Bachelor of Commerce -

Badruka College
Hyderabad, India
05-2012

Skills

  • Risk assessment and management
  • Compliance auditing and regulatory framework
  • Stakeholder engagement and communication
  • Policy development and change management
  • Audit management and internal controls
  • Data analytics and information security
  • Vendor risk management strategies
  • Enterprise risk mitigation

Certification

  • CISSP
  • CISA
  • ISO 27001 LI/LA

Timeline

IT Risk and Compliance Officer

Dubai Holding Asset Management
07.2024 - Current

Information Security Manager

MBG Group
12.2023 - 06.2024

Audit Supervisor

Deloitte
05.2022 - 10.2023

Senior Audit Associate

PWC
11.2021 - 05.2022

Senior Information Security Analyst

Franklin Templeton
11.2021 - 05.2022

Senior Security Consultant

Accenture
02.2018 - 12.2020

Information Security Analyst

Wells Fargo
05.2012 - 01.2018

Bachelor of Commerce -

Badruka College
Vijay Cherukupally