Summary
Overview
Work History
Education
Skills
Certification
Technical Tools and Interests
Languages
Timeline
Generic

Daniyah Imran

Islamabad

Summary

Cybersecurity Auditor and Analyst with expertise in ISO 27001 and SOC 2 compliance. Proven ability to lead successful implementation projects and enhance security postures. Open to exploring opportunities in penetration testing to expand my skill set.

Overview

2
2
years of professional experience
1
1
Certification

Work History

Senior Security Analyst

Atoro
11.2023 - Current
  • Optimized the utilization of tools such as Vanta, Drata, and OneTrust to streamline compliance automation and monitoring processes for clients
  • Engaged with emerging industry standards and regulations, including DORA, NIS2 and EU AI Act, to ensure compliance readiness
  • Assisted clients in managing their compliance programs and maintaining certification status.
  • In a dynamic start-up environment, supported various teams, including sales, marketing, and HR, as needed; served as project manager, overseeing and leading all projects

Accomplishments:

  • Led Atoro in successfully obtaining ISO 27001 and ISO 42001 certifications
  • Conduct comprehensive security and risk assessments and 30+ audits to ensure adherence to ISO 27001 and SOC2 standards
  • Spearheaded 5+ ISO 27001 implementation projects, achieving certifications with zero non-conformances
  • Implemented advanced threat detection tools, enabling prompt identification of suspicious behavior before any damage was done.

Information Security Analyst

Atoro
02.2023 - 10.2023
  • Conducted ISO 27001 and SOC2 compliance audits for different SaaS Companies
  • Developed and implemented security policies and procedures to improve overall cybersecurity posture
  • Assisted in optimizing risk management strategies to protect organizational assets.
  • Developed employee training programs focused on increasing awareness of cybersecurity best practices throughout the company.

Education

Bachelors - Computer Science

SEECS, NUST
Islamabad, Pakistan
06.2023

Intermediate - Pre-Engineering

Army Public School - (APSACS)
Islamabad, Pakistan
06.2019

Skills

  • Data Leakage and Loss Prevention
  • Cyber Risk Management
  • Information Security Auditing
  • IT Governance and Compliance
  • Endpoint Protection
  • Vulnerability Scanning
  • Cybersecurity Incident Response Management
  • Continuous Improvement

Certification

  • ISO/IEC 27001:2022 Lead Implementer - PECB, 07/2024
  • ISO/IEC 27001:2022 Lead Auditor - CQI IRCA, 10/2023
  • Certified in Cybersecurity - ISC2, 02/2023
  • Project Management Essentials - Management & Strategy Institute, 10/2022

Technical Tools and Interests

  • Nmap
  • Wireshark
  • TrendMicro and Trend Vision One
  • Cisco Packet Tracer
  • Burp Suite
  • Linux (Administration and Security)
  • Vanta, Drata, and TugboatLogic
  • Understanding of GDPR
  • Penetration Testing and Ethical Hacking
  • Artificial Intelligence Security

Languages

English
Bilingual or Proficient (C2)
Turkish
Upper intermediate (B2)
Urdu
Bilingual or Proficient (C2)

Timeline

Senior Security Analyst

Atoro
11.2023 - Current

Information Security Analyst

Atoro
02.2023 - 10.2023

Intermediate - Pre-Engineering

Army Public School - (APSACS)

Bachelors - Computer Science

SEECS, NUST
Daniyah Imran