Summary
Overview
Work History
Education
Skills
Certification
Websites
Affiliations
References
Timeline
Generic

Divya Tomy

Unit 10, 27, Osborne Street,Wollongong,NSW

Summary

Highly motivated ISO 27001 Implementer/Internal Auditor with analytical skills to protect sensitive data and maintain system integrity. Passionate about bringing my robust cybersecurity knowledge and strategic problem-solving skills to a forward-thinking team.

Overview

3
3
years of professional experience
1
1
Certification

Work History

Executive Analyst

FM Core Ltd
Birkirkara, Malta
08.2023 - 05.2025
  • Implementation of ISO 27001 controls within the organization.
  • Performing internal audits against ISO 27001 controls.
  • Preparation of a risk assessment list.
  • Provided guidance on improving internal controls over business processes.
  • Drafted reports summarizing audit results while highlighting any irregularities or inconsistencies found during the process.
  • Interacted regularly with clients to discuss audit progress, findings, and recommendations.
  • Conducted risk assessments to identify potential areas of fraud or non-compliance.
  • Collaborated closely with other team members to develop effective audit plans.
  • Reviewed client documentation including contracts, invoices, bank statements.
  • Assisted in preparing audit plans based on established objectives and standards.

Business Advisor

NOUV Tech
Zebbug, Malta
09.2022 - 07.2023
  • Provided assistance to different clients in ISO 27001 implementation.
  • Participated in designing, implementing, and maintaining an effective Information Security Management System (ISMS).
  • Evaluates the effectiveness and compliance of the organization's ISMS against the ISO 27001 standard.
  • Participated in decision-making with risk management plans.
  • Assisted external auditors during annual audits by providing necessary information.
  • Develops and implements information security policies and procedures.
  • Provide training and raise awareness about information security among employees.
  • Documents audit findings, including non-conformities, and provide recommendations for improvement.
  • Identified potential fraud risks and developed strategies to mitigate them.
  • Developed audit programs and internal control systems to identify areas of risk.
  • Conducted interviews with management personnel to assess the effectiveness of internal controls.
  • Ensures the ISMS is regularly reviewed and improved to adapt to changing threats and business needs.

Education

MBA - Business Administration And Management

University of Suffolk
Malta
10-2022

Master of Computer Applications - Information Technology

APJ Abdul Kalam Technological University
India
06-2019

Bachelor of Computer Applications - Information Technology

Mahatma Gandhi University
India
05-2017

Skills

  • Team building: Proven ability to foster collaboration and cohesion among diverse teams to enhance productivity and morale
  • Team leadership: experienced in leading cross-functional teams, setting clear goals, and ensuring alignment with project objectives
  • Reliability and accountability: recognized for consistently meeting deadlines, maintaining high work standards, and being a dependable team member
  • Learning agility: strong commitment to continuous improvement and quickly adapting to new tools, technologies, and processes
  • Data management: skilled in organizing, analyzing, and maintaining large data sets with accuracy and attention to detail
  • Analytical thinking: capable of drawing insights from data to support decision-making and improve operational efficiency

Certification

  • ISO 27001 Lead Auditor
  • ISO 27001 Lead Implementer
  • Introduction to Cyber Security by Cisco
  • SWIFT Customer Security Controls Framework
  • SWIFT Independent Assessment Framework

Affiliations

  • Volunteer work
  • Sports
  • Hiking
  • Traveling

References

References available upon request.

Timeline

Executive Analyst

FM Core Ltd
08.2023 - 05.2025

Business Advisor

NOUV Tech
09.2022 - 07.2023

MBA - Business Administration And Management

University of Suffolk

Master of Computer Applications - Information Technology

APJ Abdul Kalam Technological University

Bachelor of Computer Applications - Information Technology

Mahatma Gandhi University
Divya Tomy