s
samtathakkar

Samta Thakkar

@samtathakkar

Cloud Security and Compliance Engineer

Inde
Anglais
Certaines informations sont présentées en anglais.
À propos de moi
“I am a Security & Compliance Documentation Specialist with 10+ years of experience in cloud security, audit readiness, vulnerability management, and IT governance. I create professional, audit-ready documentation including SOC 2 & ISO templates, security policies, SOPs, runbooks, compliance trackers, and evidence sheets. My documentation is clear, structured, and designed to help organizations meet security requirements with confidence.” Services I offer: - SOC2 / ISO audit documentation - Security policies & procedures - SOPs & runbooks - Compliance & evidence templates - Vulnerability Mgt... Plus d’infos

Compétences

s
samtathakkar
Samta Thakkar
hors ligne • 

Voir mes services

Gestion du cloud
I will create security compliance documentation, runbooks and sops
Consultation sur le cloud
I will do security monitoring and monthly security reports

Expérience professionnelle

IBM

Lead Engineer, Security and Compliance

IBM • Temps plein

Aug 2023 - Present2 yrs 9 mos

- Managed vulnerability assessments, ticketing, and tracking using tools like spreadsheets and Monday board. - Configured and administered jump servers, onboarded users, and set up MFA accounts for secure employee access. - Performed onboarding tasks by adding new users to jump servers and providing appropriate access permissions. - Added devices to IPVS inventory, Nessus, and Git repositories during data center expansions to ensure streamlined operations. - Monitored QRadar logs to identify and address security gaps, ensuring log completeness for accurate event monitoring. - Conducted regular compliance checks (monthly, quarterly, yearly) and supported audits by gathering and presenting evidence. - Performed security assessments and maintained technical documentation for compliance and vulnerability management. - Collaborated with the compute team to enforce security best practices and enhance the overall security posture.

GENESIS INFOCOM PVT. LTD

Temps plein • 3 yrs 4 mos

CLOUD SECURITY ANALYST

Nov 2021 - Aug 20231 yr 9 mos

- Hands-on experience with Security and Identity and Compliance services such as IAM, Security Hub, CloudTrail, CloudWatch, Guard Duty and Inspector. - Having good knowledge on SIEM, FIM, IPS, IDS, Network devices and TCP/IP model, Ports and Incident analysis. - Provide technical support and evidence for the different teams to take actions. Participate in weekly meetings with peers to provide projects updates and risk status reports. - Monitored AWS resources for security incidents, implemented necessary controls and performed incident response. - Developed and maintained security incident response plans, and conducted investigations of security incidents.

CLOUD SECURITY ASSOCIATE

Apr 2020 - Nov 20211 yr 7 mos

- Implemented encryption mechanisms for data at rest and in transit using AWS Key Management Service (KMS). - Implemented IAM policies and roles to manage user access and enforce security best practices. Implemented and maintained effective identity and access management controls, following the principle of least privilege. - Conduct Analysis on the alerts and elaborate the reports. Conducted security assessments, including risk analysis and vulnerability assessments, to identify potential weaknesses. - Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks in AWS. - Configured and maintained network security controls, including firewalls, security groups, and network access control list.