Accomplished Senior Cyber Business Analyst with 17 years of experience in information security, specializing in identity and access management. Possess a deep understanding of security, supported by a master's degree in Cyber Security. Skilled at effectively communicating with management, end users, experts, and vendors. Demonstrated success in project delivery, promoting design thinking and experimentation to foster innovation. Dedicated team player committed to achieving collective goals.
Overview
17
17
years of professional experience
Work History
Senior Cyber Business Analyst
Ausgrid
02.2023 - Current
Conducted comprehensive security posture reviews focused on Data Security and Privacy across the company's application portfolio, identifying inherent risks, preparing detailed reports, and providing strategic remediation recommendations to enhance overall security resilience.
End to end coordination of Enterprise Application On-boarding to Saviynt including Stakeholder engagement, requirement gathering, identifying integration solutions. Requirement gathering and implementation support for various privileged access management activities.
Led the requirement gathering for a critical Cryptographic project uplift. Engaged in Request for Information (RFI) and subsequent vendor selection process. Facilitated product selection workshops for Hardware Security Module (HSM) and Certificate Lifecycle Manager (CLM).
Built a cyber control library for Ausgrid that is aligned with AISCSF frameworks. Worked on enhancing the Risk Management module of Enablon, establishing a new Cyber Risk management module and making the control library available on Enablon to link to Cyber risks.
Senior Technical Business Analyst
Macquarie Group
03.2022 - 12.2022
End to end application on-boarding to SailPoint Identity Platform.
Coordinated Periodic User Access Reviews starting from creating UARs, scheduling, supporting Managers to complete on time, troubleshooting technical issues and reporting compliance metrices.
Documented SailPoint On-boarding, UAR processes and Service Management workflows using Visio.
Facilitated Agile ceremonies.
Senior Technical Business Analyst
AIA
10.2021 - 03.2022
Business Requirement Gathering for a Customer Identity and Access Management Platform.
Participated in product selection and procurement of ForgeRock Identity for Customer Identity and Access Management (CIAM).
Liaised with application teams to gather identity requirements of applications to be on board to CIAM platform.
Senior IAM Business Analyst
Commonwealth Bank of Australia
09.2018 - 10.2021
Worked as Senior Business Analyst in Cyber Identity and Protection Team.
Worked as a product manager for tactical Identity Solution.
Worked with business and technology stakeholders in to proactively understand and shape future business initiatives in the identity space.
Onboarded various services in the bank to Identity Platform.
Worked with Service and Business Owners across the bank and line 1 risk to help them bring down risks in their Identity space.
Formulating drift management strategies and roadmaps, ensuring services are maturing and evolving.
Analysing user access drift within applications and Prepare load sheets for remediation.
Coordinated drift remediation changes.
Provided training to Service Managers and other key stakeholders on key identity controls.
Proactively managed risk, internal, and external audit obligations and responsibilities in Identity space, in line with the Groups operational risk management framework.
Documented service management plans and process workflows.
Acted as SME for Identity Controls.
Senior IAM Business Analyst
Telstra
11.2017 - 09.2018
Worked as Senior BA in a team that manages end-to-end identity transformation of Enterprise and Customer applications.
Facilitated formal engagements with application teams and nurtured the relationship through end of project.
Analyzed client’s business requirements and processes through document analysis, interviews, workshops, and workflow analysis.
Worked with Architects to understand capability requirements and align to strategic solutions.
Translated Business requirements to user stories for Build team.
Worked well in agile ways of working and use JIRA & Confluence extensively.
Facilitated agile ceremonies such as retrospectives, planning and elaboration sessions.
Planned and managed application deployments onto identity platform.
Co-ordinated deployment nights and conducted Post Implementation Reviews.
Defined and documented various categories of application on-boarding processes.
Expertise in creating process flows using Visio.
Senior Technical Business Analyst
COMMONWEALTH BANK OF AUSTRALIA (via TCS)
06.2015 - 11.2017
Worked as a Senior Technical BA in CBAs organization wide identity initiative ‘Program AEGIS’.
Managed end to end identity data reconciliation project in a project manager capacity for 8 months.
Worked with Business and technology teams to understand end to end process and data flow in applications.
Analyzed client’s business requirements and processes through document analysis, interviews, workshops, and workflow analysis.
Worked with Designers to formulate reconciliation specifications for each application and co –ordinated end to end implementation.
Prepared accurate and detailed requirement specifications documents, user interface guides, and functional specification documents.
Conducted identity control gap analysis at regular intervals.
Conducted workshops to define processes and created process workflows.
Ran workshops for Business on Identity manager reconciliation and their relevance in risk control and audit.
Business Analyst
ROYAL HASKONING (via TCS)
05.2012 - 01.2015
Worked on automating manual user management processes.
Defined and documented user management process.
Established and lead user management operations team.
Requirement gathering for Forefront Identity Manager implementation.
Technical Business Analyst (Via TCS)
SUPERVALU
09.2011 - 05.2012
Worked on integrating application suites to Sun identity manager to establish unified user credentials and single sign on.
Worked extensively on customization of Sun IDM forms and workflows using XPRESS and XML to accommodate the changes brought by integration.
Worked on the Business Process Editor (BPE) to create various reusable rules, sub processes etc.
Coordinated among multiple Vendors and technical teams to complete the project successfully.
Completed requirement analysis for Federated identity implementation.
Information Security Specialist
Mphasis, An HP Company
10.2008 - 09.2011
Administrator in Identity Operations team supporting multiple clients.
Supported the implementation of Sun Identity Manager and Oracle Access Manager.
Worked as HIDS/NIDS admin, monitoring anomalies and alerts.
Education
Master of Cyber Security -
CHARLES STURT UNIVERSITY
06.2024
Bachelor of Technology - Computer Science and Engineering