Summary
Overview
Work History
Education
Skills
Security Clearance
Certification
Nationality
Timeline
Generic

Chetan Gupta

Melbourne,Australia

Summary

Cybersecurity Consultant with over 15 years of extensive experience in security consulting, governance, risk management, and compliance. Proven ability to align security initiatives with business objectives, foster stakeholder relationships, and coordinate activities across diverse teams. Skilled in maintaining strategic roadmaps and quarterly planning, effectively managing and prioritising security initiatives to achieve business and security goals. Adept at developing and maintaining a comprehensive view of risks, issues, and dependencies, with a proactive approach to escalation and resolution. Excellent communicator, capable of conveying complex technical information to non-technical stakeholders. Expertise in implementing robust vulnerability and risk management programs, utilising industry frameworks such as VPSF, ISM, Essential Eight, PSPF, CPS234, ISO27001, NIST, and DISP. Committed to ensuring compliance with regulatory requirements and industry standards, enhancing organisations' overall security posture.

Overview

16
16
years of professional experience
1
1
Certification

Work History

Security Consultant

Brennan
Melbourne, Victoria
01.2023 - 06.2024
  • Directed the standardisation of governance, risk management, and compliance activities, achieving a 30% increase in operation efficiency.
  • Developed cybersecurity strategies tailored to mid-size clients, ensuring regulatory compliance and business alignment.
  • Ensured the alignment of security initiatives with project goals across multiples, focusing on teams to maintain time, scope, risk, and quality.
  • Spearheaded a diverse portfolio of security projects, effectively addressing emerging threats and vulnerabilities.
  • Advised clients on enhancing their security posture through strategic cybersecurity initiatives.
  • Translated complex technical concepts into clear, actionable insights for non-technical stakeholders.

Sr. Risk & Assurance Specialist

Aurecon Australia
Melbourne, Victoria
09.2022 - 12.2022
  • Led the implementation of the ISO 27001 certification initiative, encompassing the development of comprehensive policies, procedures, and IT controls.
  • Enhanced the compliance assurance program by formalising IT controls, leading to significant improvements in risk mitigation and instilling a greater sense of security.
  • Under my direction, we initiated and completed proactive risk management projects, effectively addressing issues and managing interdependencies through a series of proactive actions.
  • Worked collaboratively with cross-functional teams to ensure adherence to regulatory requirements and alignment with industry standards.

Security Consulting Manager

Unisys
Melbourne, Victoria
06.2021 - 07.2022
  • As the Account Security Officer for the Department of Transport Victoria, responsible for serving as the primary security liaison.
  • Designed and executed a highly detailed cybersecurity strategy, ensuring it aligned with client objectives and industry best practices.
  • Additionally, I established and led a consortium of cybersecurity advisors to promote collaboration in addressing emerging threats and operational challenges.
  • My role also involved ensuring compliance with regulatory and industry standards through continuous assessment and implementation of information security measures.
  • Prioritised and spearheaded security initiatives across teams, successfully achieving strategic objectives and regulatory compliance.

Security Delivery Lead

DXC Technology
Melbourne, Victoria
11.2018 - 06.2021
  • Cultivated client relationships to enhance cyber resiliency and security posture.
  • Designed and executed a comprehensive vulnerability and patch management program, including developing dashboards for KPI and KRI monitoring.
  • Conducted in-depth solution risk assessments against cybersecurity standards and policies, ensuring robust security measures.
  • Directed security projects across teams, aligning initiatives with business goals and regulatory requirements.
  • Prioritised and led a portfolio of security projects, ensuring timely and effective delivery.

Cybersecurity Consultant

Wipro Ltd
Victoria, Melbourne
12.2015 - 11.2018
  • Led the security planning, coordination, and execution of the data centre transformation project
  • Design and implement a comprehensive security strategy, overseeing decommissioning old devices and integrating next-generation security devices
  • Conduct risk assessments and develop mitigation strategies to address security vulnerabilities.

Cybersecurity Consultant

Wipro Ltd
Tamil Naidu, Chennai
11.2014 - 12.2015
  • Implemented Check Point Cloud Capsule solution for mobile endpoint users
  • Collaborated with Check Point Research & Development team in Israel for complex issues.
  • Delivered security solutions across teams, ensuring project targets were met, and regulatory requirements were adhered to.
  • Conducted risk assessments and managed dependencies to ensure smooth delivery of security projects.

Team Lead, Consultant

Objectwin Technology
Chennai, ObjectwinTamil Naidu
05.2014 - 10.2014

Network Engineer

Vermillion Communication
New Delhi, Delhi
06.2008 - 07.2010

Education

MSc Information System Securities -

Sheffield Hallam University
04.2012

Skills

  • Strategic Planning: Expert in developing and implementing strategic security plans aligned with business objectives
  • Policy Framework Development: Proficient in creating and maintaining comprehensive security policies and frameworks
  • Risk Management: Skilled in identifying, assessing, and mitigating security risks
  • Compliance Management: Experienced in ensuring adherence to regulatory requirements and industry standards
  • Security Awareness and Training: Capable of designing and delivering effective security awareness programs
  • Incident Response: Competent in managing and responding to security incidents
  • Third-party Risk Management: Adept at evaluating and managing risks associated with third-party vendors
  • Collaboration & Communication: Strong ability to work with diverse teams and communicate complex technical information to non-technical stakeholders

Security Clearance

NV1

Certification

  • Certified Information Security Manager - CISM
  • Certified Information System Auditor - CISA
  • Certified in Risk & Information Security Control - CRISC
  • Certified Data Privacy Solutions Engineer - CDPSE
  • Certified ISO27001:2022 Lead Implementor

Nationality

Australian Citizen

Timeline

Security Consultant

Brennan
01.2023 - 06.2024

Sr. Risk & Assurance Specialist

Aurecon Australia
09.2022 - 12.2022

Security Consulting Manager

Unisys
06.2021 - 07.2022

Security Delivery Lead

DXC Technology
11.2018 - 06.2021

Cybersecurity Consultant

Wipro Ltd
12.2015 - 11.2018

Cybersecurity Consultant

Wipro Ltd
11.2014 - 12.2015

Team Lead, Consultant

Objectwin Technology
05.2014 - 10.2014

Network Engineer

Vermillion Communication
06.2008 - 07.2010

MSc Information System Securities -

Sheffield Hallam University
Chetan Gupta