
Manager at KPMG
Bombay Area, India

Manager at KPMG
Bombay Area, India
Sandip is presently Manager in KPMG’s IT Advisory Services in India. Sandip is expert in SIEM (Security Information & Event Management) solutions / service and is responsible for driving this in India and globally. Sandip has participated in SIEM engagements for Fortune 500 clients of KPMG in US and Europe. Sandip participates actively in many global initiatives within the IPBR (Information Protection and Business Resilience) practice of KPMG. Apart from developing service offering around SIEM, he has contributed significantly in developing content / strategy for IT Security Framework and Software Asset Management service offerings. Sandip has also managed numerous IT Audit projects for KPMG in India.
Sandip was previously with JPMorganChase where he was part of core team, which deployed Security Operation Center for Asia Pacific in Bangalore. Prior to JPMC, Sandip was with Deloitte, Nevis Networks and STPI. Sandip likes working on new areas; developing new service offerings, which have been consistently demonstrated through his previous work experience.
Sandip has worked and traveled to various locations in India, US and Europe across all industry segments as a part of his engagements. Within IT security Sandips areas of interest are SIEM solutions, End points solutions, Log Management and IT security frameworks.
He likes reading biographies and management books. He also manages Voice of India and STPI (Alumni) group on Linked In.
He is always open for new ideas, connections and any help required in above areas. You can contact him at wadje dot sandip at gmail dot com or +91 9967966137.
Specialties:
Project Management, Information Security, Business Continuity Planning, Security Information and Event Management, Log Management, Software Asset Management (SAM), Software Licensing, ISO 19770, Sarbanes-Oxley (SOX), IT Governance, ITIL, COBIT, IT Audit, IT Strategy, Vulnerability Assessments.
Certifications: CISA, CISSP
Persuing: PMP and ITIL V3 Certification
(Partnership; 10,001 or more employees; Accounting industry)
January 2007 — Present (2 years 11 months)
I am involved in managing and executing IT Advisory engagements in KPMG India. I also very actively involved in client, business & new service offering development.
(Public Company; 10,001 or more employees; JPM; Investment Banking industry)
May 2006 — January 2007 (9 months)
Experience Summary:
Singificant contribution in setting up Security Operation Center for the company. Key responsibilities as mentiobed below:
• End to end SIM feed on boarding, defining report requirements, determining escalation process & documentation of standard operating procedures.
• All process and tools improvement and standardization, demand management, project coordination, business management, and training for the SOC.
• Provide consulting and operational support for the SOC activities and programs with a focus on process engineering and metrics.
• Work with other Line of Businesses and Audit teams to provide innovative metrics, process, and procedural solutions.
• Develop & submit key performance indicators(KPI) and service level measurement reports for SOC.
• BCP coordinator for the SOC.
• Information risk assessment for the SOC. Coordinate with internal / external auditors. Schedule & perform audit self assessments.
(Privately Held; 10,001 or more employees; Management Consulting industry)
November 2005 — May 2006 (7 months)
Experience Summary:
Identify and evaluate complex business and technology risks, internal controls which mitigate risks, and related opportunities for internal control improvement.
Contributed significantly to RACK (Risk and Control Knowledgebase) project. RACK is a centralized repository of financial, operational and regulatory risks, control objectives and controls.
(Privately Held; 51-200 employees; Computer & Network Security industry)
June 2005 — November 2005 (6 months)
Organization Information:
Nevis Networks is a LAN security company based in SC, California with its R&D operations at Pune. Nevis is leader in endpoint access control products which delivers comprehensive solution for enterprise LAN security.
Website: www.nevisnetworks.com
Experience Summary:
Incharge of NAC (Network Admission Control) protocol testing environment comprising of 200 servers, virtual operating systems, NAC devices & traffic generators.
(Telecommunications industry)
January 2001 — June 2005 (4 years 6 months)
Organization Information:
Software Technology Parks of India(STPI) is an autonomous society under Ministry of Communications & Information Technology, Government of India. The major focus of STPI is to establish and manage infrastructure resources such as data communication and core computer facilities for IT industry.
Website: www.mumbai.stpi.in / www.stpi.in
Experience Summary:
As in charge of IT and network infrastructure setup at Aurangabad, contributed significantly to plan and build the data communication setup (earth stations, wan links, network operation center) to launch internet and incubation services. Built a strong business from internet, incubation and software export services. Software export from the region reached new heights during my tenure. As officer in charge managed following teams :
1. Operations and planning
2. Infrastructure planning and business solutions
3. Process automation and improvements
4. Legal and compliance
(Electrical/Electronic Manufacturing industry)
March 2000 — June 2000 (4 months)
Organization Information- The Videocon group is a USD 2.5 Billion global conglomerate with primary focus on electronics and oil & gas indistry.
Experience Summary- As a member of product development group worked on Microcontroller (8051) based turn table project. Submitted a paper on using Microcontroller based solutions for cutting costs involved in PLC based solutions.
Advance Diploma in Web & e-Commerce , 2000 — 2001
Bachelor of Engineering (Electronics & Telecommunication) , 1996 — 2000
Reading Management Books and Autobiographies of leading business personalities.
Member Information Systems Audit & Control Association(ISACA)