SlideShare a Scribd company logo
1 of 4
Download to read offline
Page 1 of 4
Jagroop Singh Jagpal (Jag) 02085816262 / 07902296888| jagroop@smup.london | LinkedIn
Certified GDPR Practitioner; Lead Auditor Information Security Management (ISO 27001:2013
Certificate Number: 01195562); Lead Auditor in Quality Management (ISO 9001:2015 Certificate
Number: 01195562); IT Service Management (ISO 20000); Design, Implementation; Maintenance;
Auditing; Risk Management; Business Improvement; Business Continuity; Business Change and
Efficiency
Summary
A result driven, Information Security, Quality Management and Data Protection leader equipped with
international recognition as a certified auditor in Information Security Management ISO 27001 and
Quality Management ISO 9001as well as being a certified GDPR practitioner. I have leveraged analytical
and problem-solving strengths at senior management level, thriving in dynamic, high-pressure
environments. At the forefront of my skillset lies the ability to analyse and streamline systems, operations
and business processes to increase productivity, quality and efficiency.
I am now open to consulting opportunities with large and small organisations across industries and
sectors. In these contexts, I would be a multi-faceted asset, adept at ensuring regulatory compliance,
streamlining operations without losing customer focus, integrating management systems to decrease
costs and formalising internal policies and standards.
Profile
• Certified GDPR Practitioner, project management, implementation, DPIA, Record of Processing –
HR/Marketing, Subject Access Request, policy writing/amendment, advice and training
• Information Security expert, consultant and auditor with multiple implementation experience
• Quality Manager with a strong background in, and thorough understanding of, the project management
process along with IS0 9001:2015
• Risk Management consulting advice and development
• Organised, enthusiastic professional; willing to hear new ideas and go the extra mile to improve
performance
• Possess strong interpersonal skills; able to work effectively with individuals at all levels
• Demonstrated ability to develop and maintain sound employee relations
• Strong problem resolution skills; able to prioritise a broad range of responsibilities efficiently and
effectively
• Worked on international projects in Dubai, France and Ireland
• Catalyst for change, transformation and performance improvement
• Achieved reputation as a resource person, problem solver, trouble-shooter and creative turnaround
manager
Project/Achievements
• Obtaining external certification for ISO 27001, ISO 9001, ISO 20000
• GDPR Transition and Implementation Project x2
• Information Security Implementation
• Development of Audit Management on RSA Archer and ServiceNow
• Development of Risk Management on RSA Archer and ServiceNow
• Relationship Manager for two major six sigma projects involving credit and customer relations
department with a projected first year saving of £2m
• QA Lead on the project management planning of key multi-million-pound contracts across the business:
A5 Project in Ireland – £100m & Cooling the tube - £30m
• Lead for design & roll out of £3m company-wide document management system
• Lead for customer feedback and audit reporting tool
• Information Security Management certification achieved and maintained
• Successfully obtained and renewed ISO certification in ISO 9001, ISO 27001 and ISO 20000
• Established Central Document Management Systems bringing the organisations consistency, clarity
and control in all company documentation
Professional Experience
May 2018 – Current Smup Ltd
Director/Consultant
Self-employed, company director offering services in:
• Design, implementation and maintenance of Information Security, Quality and Service
Management Systems
Page 2 of 4
• Advice on implementing an Integrated Management System
• Advice on business requirements and impact of GDPR
• Internal auditing
• Readiness for external certification audits
• Assistance at client audits
• Supplier audits
• Contract audits
• Project status audits
• Risk management
• Analysis of business processes to recommend business improvement and development
• Design, implementation and maintenance of Document Management System
• Advice on increasing efficiency and reducing cost
May 2019 – Current Harneys LLP (Contract)
Information Risk & Security Consultant
ISO 27001 policy re-write and preparation for external certification audits across international
locations including GDPR implementation including conducting extensive internal audits in order
to uncover potential issues prior to the external audit and the planning for remediation of the audit
findings.
Tailoring the Information Security Management System to fit The Firm to ensure processes are fit-
for-purpose and specific to The Firm and not generic. Creating suitable training and embedding of
the ISMS and GDPR into everyday working life of the employees to ensure that information security
is practiced throughout The Firm reducing information leakage that would adversely effect The
Firm.
Working with department heads and senior managers from Global Partners, Chief Operations
Officer, Chief Technical Officer to the Chief Information Officer, in order to create an understanding
of the ISMS as well as GDPR and other business leading best practices for seamless working and
efficiency to reduce costs and increase assurance in the security of information and reduction of
risk threats while mitigating vulnerabilities.
Developed and transferred, audit management, risk management, legal and regulatory lists,
document library, supplier management and business impact assessment from excel to
ServiceNow.
Since late June I have been fulfilling the role of acting CISO which has increased the strategic
element of the role as well as dealing with incident and event tickets, client questionnaires, setting
the internal audit program, running Senior Management Review meetings, setting ISMS objectives
to ensure the ISMS is running to the needs of The Firm. Managing direct reports who were mostly
technical architects, setting up the structure of the document management system, advising on
Business Continuity Management as well as physical security.
Oct 2018 – Dec 2018 Diktamen (Contract)
ISO 27001 Implementation Consultant
ISO 27001 Implementation from scratch, initially starting with a gap analysis, interviews with Leadership,
following on to creation of documentation, training, auditing planning with preparation for external audit.
Oct 2018 – Oct 2018 telent Technology Services (Contract)
Auditor
ISO 20000 Internal Audit: Preparation of audit checklists in order to allow the internal audit process to
carry out a specific structure achieving better value from the audit. Carrying out internal audit in order to
provide status of the management system offering improvement in order to provide efficiencies in order
to reduce cost. Trained staff during the audit process in how to interact with the external auditor as well
as offered training and guidance to the telent internal auditors.
May 2018 – Oct 2018 Six Degrees Group (Contract)
GDPR Implementation Project Manager/Consultant
Overall Accountability for the GDPR implementation project
Policy Creation: Subject Access Request, DPIA, Legitimate Interests, Privacy Notice, International
Transfer of Personal Data, Security Incident Response
Page 3 of 4
Record of Processing advice and guidance: Organised and hosted workshops with all departments
identifying records containing personal information, advised and coached on how to determine the
correct lawful basis of processing information in order to comply with GDPR requirements
DPIA implementation and advice: Created the documentation, trained on how to complete a DPIA and
completed a mock DPIA
GDPR risk assessment development: Identified and scored risks related to information security
Training development and delivery: Produced and delivered training for staff awareness
Interpreted GDPR jargon into simple language: Used examples relevant to Six Degrees Group
Subject Access Request: Created the documentation, trained on implementation and ran a mock
Subject Access Request exercise to ensure all affected employees knew what to do
Project Management reporting and updates: Created project reporting documentation and chaired the
project review meetings to provide project status
GDPR integration: Integrated GDPR requirements into existing processes e.g. for ISO 27001 to ensure
a streamlined set of documentation and processes were kept simple for the business
GDPR process mapping: Created process maps in order to simplify the understanding of some GDPR
requirements such as the Subject Access Request process making the obligations easier to follow
Document classification: Advised on the correct document classification and labels to apply to
information and how to handle documents with a higher sensitive classification.
Dec 2010 – May 2018 T-Systems Limited
Country Quality Manager
Responsible for maintaining certification for established Integrated Management System:
Integral member of the GDPR Implementation project covering all aspects of GDPR starting with the
Record of Processing to final awareness training. Streamlined the business auditing regime by creating
and maintain audit schedules based on a risk-based approach, conducting audits touching on financial
performance, business processes, data protection, compliance, ISO standards and suppliers. Reduced
cost of auditing via a simple initiative of remote audits through use of conferencing technology as well
as implementing a risk and audit platform to reduce administration ensuring value of risk and audit
findings.
Initiated continual improvement exercises with the purpose of cost savings and waste reductions, with
key successes in new starter induction, buildings estate waste reduction through better use of space.
Implementation of a group-wide document management framework, including document classification
which ensured clarity and continuity of documentation as well as ensuring documents were easily
identifiable and retrievable which reduced time wasted looking for required documents.
Aug 2010 – Nov 2010 EDF Energy
Quality Assurance Lead
Responsible for implementation of Quality Management System for a Nuclear framework, internal &
supplier auditing for established Nuclear Licensing requirements. Internal Training of understanding to
the Quality and Document Management System
Mar 2010 – Jun 2010 British Gas Business (Contract)
Quality Manager
Responsible for developing and delivering an appropriate BGB QMS framework in accordance with ISO
9001:2008 to ensure costs are reduced and efficiency is increased to supply a better performance to
clients while increasing profits. Mitigation of organisational risks through leading the deployment of
corporate risk management. Improved end-to-end processes and general running of complaints
department to reduce escalation of complaints to ombudsmen level saving costs to a significant level.
Designed the framework of a new Document Management System to have a central place for
documents to avoid obsolete and consistency of document style and correct document classification
Communication link between Top-Management and the business
Dec 2006 – Feb 2010 Mouchel Group Plc
Senior Group Quality Advisor
Maintain and fulfil an internal audit programme across all UK offices via undertaking full system audits
to ensure ISO 9001:2008 registration was maintained due to this being a requirement to bid for work
and maintain existing contracts. Designed and implemented a new non-conformity and audit
management module for use across the business to ensure timely closure of audit actions in a consistent
manner to reduce audit findings going overdue and leading to potential major non-conformities.
Page 4 of 4
Designed and implemented an online document management system to ensure the easier retrieval and
identification key documentation in order to reduce administration time.
Accreditation/Professional Courses
QA
GDPR Foundation & Certified Practitioner Course
Lloyd’s Register Quality Assurance
Introduction to GDPR
ISO 9001:2015 Lead Auditor Transition
Quality Manager Training Course
ISO 27001:2013 Update and Appreciation Course
ISO 27001 Lead Auditor Conversion Course
ISO 20000 Interpretation & Appreciation Course
ISO 9001:2008 Update and Transfer Course
ISO 9001:2000 Lead Auditor Training Course
IS0 9001:2000 Appreciation Course
ISO 9001:2000 Internal Auditor Training Course
Education
The College of Law – Legal Practice Course
Kingston University - LLB (Hons) – Law
Lampton School – A Levels and GCSEs
Volunteer Work
Working with SGSS Hounslow (local Sikh Temple) as Chair of the Events Committee to plan,
innovate and evolve events including an annual procession through Hounslow which has up to
20,000 people.
Project management of events includes liaisons and influencing of the Executive Committee,
Metropolitan Police, London Fire Brigade, Transport for London, St John’s Ambulance, London
Ambulance Service and London Borough of Hounslow. Chairing the Gold Partners Meetings as
well as training and organising all volunteers.
Part of the SGSS Southall annual procession which is the largest of its kind in Europe with over
100,000 people.

More Related Content

What's hot

ISO 27001:2013 Implementation procedure
ISO 27001:2013 Implementation procedureISO 27001:2013 Implementation procedure
ISO 27001:2013 Implementation procedureUppala Anand
 
Project plan for ISO 27001
Project plan for ISO 27001Project plan for ISO 27001
Project plan for ISO 27001technakama
 
Top management role to implement ISO 27001
Top management role to implement ISO 27001Top management role to implement ISO 27001
Top management role to implement ISO 27001PECB
 
NQA Your Complete Guide to ISO 27001
NQA Your Complete Guide to ISO 27001NQA Your Complete Guide to ISO 27001
NQA Your Complete Guide to ISO 27001NQA
 
Project plan for ISO 9001 Implementation
Project plan for ISO 9001 ImplementationProject plan for ISO 9001 Implementation
Project plan for ISO 9001 Implementationtechnakama
 
Legal Register / Compliance Obligations ISO 14001
Legal Register / Compliance Obligations ISO 14001Legal Register / Compliance Obligations ISO 14001
Legal Register / Compliance Obligations ISO 14001Nimonik
 
Presentation on iso 27001-2013, Internal Auditing and BCM
Presentation on iso 27001-2013, Internal Auditing and BCMPresentation on iso 27001-2013, Internal Auditing and BCM
Presentation on iso 27001-2013, Internal Auditing and BCMShantanu Rai
 
ISO 27001 In The Age Of Privacy
ISO 27001 In The Age Of PrivacyISO 27001 In The Age Of Privacy
ISO 27001 In The Age Of PrivacyControlCase
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA
 
Iso 27001 certification
Iso 27001 certificationIso 27001 certification
Iso 27001 certificationramya119
 
COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)
COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)
COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)ISACA Riyadh
 
Iso 27001 transition to 2013 03202014
Iso 27001 transition to 2013   03202014Iso 27001 transition to 2013   03202014
Iso 27001 transition to 2013 03202014DQS Inc.
 
7 Key Problems to Avoid in ISO 27001 Implementation
7 Key Problems to Avoid in ISO 27001 Implementation7 Key Problems to Avoid in ISO 27001 Implementation
7 Key Problems to Avoid in ISO 27001 ImplementationPECB
 
Assessing the Impact of a Disruption: Building an Effective Business Impact A...
Assessing the Impact of a Disruption: Building an Effective Business Impact A...Assessing the Impact of a Disruption: Building an Effective Business Impact A...
Assessing the Impact of a Disruption: Building an Effective Business Impact A...PECB
 
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)PECB
 
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPRSolution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPRIceberg Networks Corporation
 
Use of the COBIT Security Baseline
Use of the COBIT Security BaselineUse of the COBIT Security Baseline
Use of the COBIT Security BaselineBarry Caplin
 
Privacy Trends: Key practical steps on ISO/IEC 27701:2019 implementation
Privacy Trends: Key practical steps on ISO/IEC 27701:2019 implementationPrivacy Trends: Key practical steps on ISO/IEC 27701:2019 implementation
Privacy Trends: Key practical steps on ISO/IEC 27701:2019 implementationPECB
 

What's hot (20)

ISO 27001:2013 Implementation procedure
ISO 27001:2013 Implementation procedureISO 27001:2013 Implementation procedure
ISO 27001:2013 Implementation procedure
 
Project plan for ISO 27001
Project plan for ISO 27001Project plan for ISO 27001
Project plan for ISO 27001
 
Top management role to implement ISO 27001
Top management role to implement ISO 27001Top management role to implement ISO 27001
Top management role to implement ISO 27001
 
NQA Your Complete Guide to ISO 27001
NQA Your Complete Guide to ISO 27001NQA Your Complete Guide to ISO 27001
NQA Your Complete Guide to ISO 27001
 
Project plan for ISO 9001 Implementation
Project plan for ISO 9001 ImplementationProject plan for ISO 9001 Implementation
Project plan for ISO 9001 Implementation
 
Legal Register / Compliance Obligations ISO 14001
Legal Register / Compliance Obligations ISO 14001Legal Register / Compliance Obligations ISO 14001
Legal Register / Compliance Obligations ISO 14001
 
Presentation on iso 27001-2013, Internal Auditing and BCM
Presentation on iso 27001-2013, Internal Auditing and BCMPresentation on iso 27001-2013, Internal Auditing and BCM
Presentation on iso 27001-2013, Internal Auditing and BCM
 
ISO 27001 In The Age Of Privacy
ISO 27001 In The Age Of PrivacyISO 27001 In The Age Of Privacy
ISO 27001 In The Age Of Privacy
 
NQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity ChecklistNQA ISO 22301 Business Continuity Checklist
NQA ISO 22301 Business Continuity Checklist
 
Iso 27001 certification
Iso 27001 certificationIso 27001 certification
Iso 27001 certification
 
COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)
COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)
COBIT 5.0 Vs ISO / IEC 38500 (IT Governance)
 
Iso 27001 transition to 2013 03202014
Iso 27001 transition to 2013   03202014Iso 27001 transition to 2013   03202014
Iso 27001 transition to 2013 03202014
 
7 Key Problems to Avoid in ISO 27001 Implementation
7 Key Problems to Avoid in ISO 27001 Implementation7 Key Problems to Avoid in ISO 27001 Implementation
7 Key Problems to Avoid in ISO 27001 Implementation
 
Infosec Audit Lecture_4
Infosec Audit Lecture_4Infosec Audit Lecture_4
Infosec Audit Lecture_4
 
Assessing the Impact of a Disruption: Building an Effective Business Impact A...
Assessing the Impact of a Disruption: Building an Effective Business Impact A...Assessing the Impact of a Disruption: Building an Effective Business Impact A...
Assessing the Impact of a Disruption: Building an Effective Business Impact A...
 
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
PECB Webinar: Introduction to ISO 22317 – Business Impact Analysis (BIA)
 
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPRSolution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
 
Use of the COBIT Security Baseline
Use of the COBIT Security BaselineUse of the COBIT Security Baseline
Use of the COBIT Security Baseline
 
CobiT Foundation Free Training
CobiT Foundation Free TrainingCobiT Foundation Free Training
CobiT Foundation Free Training
 
Privacy Trends: Key practical steps on ISO/IEC 27701:2019 implementation
Privacy Trends: Key practical steps on ISO/IEC 27701:2019 implementationPrivacy Trends: Key practical steps on ISO/IEC 27701:2019 implementation
Privacy Trends: Key practical steps on ISO/IEC 27701:2019 implementation
 

Similar to CV jagroop jagpal

IT Governance & Leadership 17 - 20 November 2014 Dubai, UAE
IT Governance & Leadership 17 - 20 November 2014 Dubai, UAEIT Governance & Leadership 17 - 20 November 2014 Dubai, UAE
IT Governance & Leadership 17 - 20 November 2014 Dubai, UAE360 BSI
 
Maclear’s IT GRC Tools – Key Issues and Trends
Maclear’s  IT GRC Tools – Key Issues and TrendsMaclear’s  IT GRC Tools – Key Issues and Trends
Maclear’s IT GRC Tools – Key Issues and TrendsMaclear LLC
 
CV DAVID EDWARD FISHER
CV DAVID EDWARD FISHERCV DAVID EDWARD FISHER
CV DAVID EDWARD FISHERDavid Fisher
 
Mark Leslie Resum'e
Mark Leslie Resum'eMark Leslie Resum'e
Mark Leslie Resum'eMark Leslie
 
Gail Gillis Resume vMarch 2015
Gail Gillis Resume vMarch 2015Gail Gillis Resume vMarch 2015
Gail Gillis Resume vMarch 2015Gail Gillis
 
Info-Tech Research Group & Boardroom Events Value Prop Presentation
Info-Tech Research Group & Boardroom Events Value Prop PresentationInfo-Tech Research Group & Boardroom Events Value Prop Presentation
Info-Tech Research Group & Boardroom Events Value Prop PresentationHilary Carney Badoian
 
lcm cv 19042016 v01
lcm cv 19042016 v01lcm cv 19042016 v01
lcm cv 19042016 v01Lou Murphy
 
IT Risk assessment and Audit Planning
IT Risk assessment and Audit PlanningIT Risk assessment and Audit Planning
IT Risk assessment and Audit Planninggoreankush1
 
Resume-Amit 1.0
Resume-Amit 1.0Resume-Amit 1.0
Resume-Amit 1.0Amit Verma
 
Latest CV/resume - Nick Broom
Latest CV/resume - Nick BroomLatest CV/resume - Nick Broom
Latest CV/resume - Nick BroomAviva
 
ISO 27001 ISMS MEASUREMENT
ISO 27001 ISMS MEASUREMENTISO 27001 ISMS MEASUREMENT
ISO 27001 ISMS MEASUREMENTGaffri Johnson
 
CV of Mohan M
CV of Mohan MCV of Mohan M
CV of Mohan MMohan M
 
AMIT_YADAV_-CV-IT
AMIT_YADAV_-CV-ITAMIT_YADAV_-CV-IT
AMIT_YADAV_-CV-ITAmit Yadav
 
Integrating sms and isms
Integrating sms and ismsIntegrating sms and isms
Integrating sms and ismsSeptafiansyah P
 
Bill_Haase_Resume Dec 2015
Bill_Haase_Resume Dec 2015Bill_Haase_Resume Dec 2015
Bill_Haase_Resume Dec 2015Bill Haase
 

Similar to CV jagroop jagpal (20)

IT Governance & Leadership 17 - 20 November 2014 Dubai, UAE
IT Governance & Leadership 17 - 20 November 2014 Dubai, UAEIT Governance & Leadership 17 - 20 November 2014 Dubai, UAE
IT Governance & Leadership 17 - 20 November 2014 Dubai, UAE
 
Mahalakshmi_Profile
Mahalakshmi_ProfileMahalakshmi_Profile
Mahalakshmi_Profile
 
Maclear’s IT GRC Tools – Key Issues and Trends
Maclear’s  IT GRC Tools – Key Issues and TrendsMaclear’s  IT GRC Tools – Key Issues and Trends
Maclear’s IT GRC Tools – Key Issues and Trends
 
CV DAVID EDWARD FISHER
CV DAVID EDWARD FISHERCV DAVID EDWARD FISHER
CV DAVID EDWARD FISHER
 
Mark Leslie Resum'e
Mark Leslie Resum'eMark Leslie Resum'e
Mark Leslie Resum'e
 
Introduction_Kishore Sundararaman
Introduction_Kishore SundararamanIntroduction_Kishore Sundararaman
Introduction_Kishore Sundararaman
 
CV 2.4 18/06/2016
CV 2.4 18/06/2016CV 2.4 18/06/2016
CV 2.4 18/06/2016
 
Gail Gillis Resume vMarch 2015
Gail Gillis Resume vMarch 2015Gail Gillis Resume vMarch 2015
Gail Gillis Resume vMarch 2015
 
Info-Tech Research Group & Boardroom Events Value Prop Presentation
Info-Tech Research Group & Boardroom Events Value Prop PresentationInfo-Tech Research Group & Boardroom Events Value Prop Presentation
Info-Tech Research Group & Boardroom Events Value Prop Presentation
 
lcm cv 19042016 v01
lcm cv 19042016 v01lcm cv 19042016 v01
lcm cv 19042016 v01
 
IT Risk assessment and Audit Planning
IT Risk assessment and Audit PlanningIT Risk assessment and Audit Planning
IT Risk assessment and Audit Planning
 
Resume-Amit 1.0
Resume-Amit 1.0Resume-Amit 1.0
Resume-Amit 1.0
 
Latest CV/resume - Nick Broom
Latest CV/resume - Nick BroomLatest CV/resume - Nick Broom
Latest CV/resume - Nick Broom
 
ISO 27001 ISMS MEASUREMENT
ISO 27001 ISMS MEASUREMENTISO 27001 ISMS MEASUREMENT
ISO 27001 ISMS MEASUREMENT
 
CV of Mohan M
CV of Mohan MCV of Mohan M
CV of Mohan M
 
AMIT_YADAV_-CV-IT
AMIT_YADAV_-CV-ITAMIT_YADAV_-CV-IT
AMIT_YADAV_-CV-IT
 
S Rod Simpson Resume
S Rod Simpson ResumeS Rod Simpson Resume
S Rod Simpson Resume
 
Integrating sms and isms
Integrating sms and ismsIntegrating sms and isms
Integrating sms and isms
 
Bill_Haase_Resume Dec 2015
Bill_Haase_Resume Dec 2015Bill_Haase_Resume Dec 2015
Bill_Haase_Resume Dec 2015
 
It governance & cobit 5
It governance & cobit 5It governance & cobit 5
It governance & cobit 5
 

Recently uploaded

Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...soniya singh
 
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证0622mpom
 
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCRsoniya singh
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...aditipandeya
 
Product Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design FurnitureProduct Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design Furniturem3resolve
 
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCRsoniya singh
 
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝soniya singh
 
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...gurkirankumar98700
 
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCRsoniya singh
 
Viet Nam Inclusive Business Accreditation System
Viet Nam Inclusive Business Accreditation SystemViet Nam Inclusive Business Accreditation System
Viet Nam Inclusive Business Accreditation SystemTri Dung, Tran
 
(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCRsoniya singh
 
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7dollysharma2066
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...aditipandeya
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...
VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...
VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...aditipandeya
 
Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...
Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...
Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...LHelferty
 
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCRsoniya singh
 

Recently uploaded (20)

Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
Gurgaon Rajiv Chowk 🔝 Call Girls Service 🔝 ( 8264348440 ) unlimited hard sex ...
 
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
办昆士兰大学UQ毕业证书/成绩单GPA修改 - 留学买假毕业证
 
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Babarpur 🔝 Delhi NCR
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
VIP 7001035870 Find & Meet Hyderabad Call Girls Jubilee Hills high-profile Ca...
 
Product Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design FurnitureProduct Catalog Bandung Home Decor Design Furniture
Product Catalog Bandung Home Decor Design Furniture
 
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Siri Fort 🔝 Delhi NCR
 
🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...
🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...
🔝9953056974🔝!!-YOUNG BOOK model Call Girls In New friends colony Delhi Escort...
 
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
Model Call Girl in Bawana Delhi reach out to us at 🔝8264348440🔝
 
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
High Profile Call Girls in Lucknow | Whatsapp No 🧑🏼‍❤️‍💋‍🧑🏽 8923113531 𓀇 VIP ...
 
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Tikri Kalan 🔝 Delhi NCR
 
Cheap Rate ➥8448380779 ▻Call Girls In Sector 55 Gurgaon
Cheap Rate ➥8448380779 ▻Call Girls In Sector 55 GurgaonCheap Rate ➥8448380779 ▻Call Girls In Sector 55 Gurgaon
Cheap Rate ➥8448380779 ▻Call Girls In Sector 55 Gurgaon
 
Viet Nam Inclusive Business Accreditation System
Viet Nam Inclusive Business Accreditation SystemViet Nam Inclusive Business Accreditation System
Viet Nam Inclusive Business Accreditation System
 
Hot Sexy call girls in Rajouri Garden🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in  Rajouri Garden🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in  Rajouri Garden🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Rajouri Garden🔝 9953056974 🔝 Delhi escort Service
 
(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Green Park 🔝 Delhi NCR
 
Cheap Rate ➥8448380779 ▻Call Girls In Sector 54 Gurgaon
Cheap Rate ➥8448380779 ▻Call Girls In Sector 54 GurgaonCheap Rate ➥8448380779 ▻Call Girls In Sector 54 Gurgaon
Cheap Rate ➥8448380779 ▻Call Girls In Sector 54 Gurgaon
 
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
Call Girls At-( Nearby )-Bhikaji Cama Place, Delhi | ⑧③77⓿⑧76⓿7
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
VIP 7001035870 Find & Meet Hyderabad Call Girls Secunderabad high-profile Cal...
 
VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...
VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...
VIP 7001035870 Find & Meet Hyderabad Call Girls Gachibowli high-profile Call ...
 
Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...
Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...
Report about the AHIABGA-UnityNet UNDRIPDay / Earth-Day 2024 Gathering in Mar...
 
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
(8264348440) 🔝 Call Girls In Safdarjung Enclave 🔝 Delhi NCR
 

CV jagroop jagpal

  • 1. Page 1 of 4 Jagroop Singh Jagpal (Jag) 02085816262 / 07902296888| jagroop@smup.london | LinkedIn Certified GDPR Practitioner; Lead Auditor Information Security Management (ISO 27001:2013 Certificate Number: 01195562); Lead Auditor in Quality Management (ISO 9001:2015 Certificate Number: 01195562); IT Service Management (ISO 20000); Design, Implementation; Maintenance; Auditing; Risk Management; Business Improvement; Business Continuity; Business Change and Efficiency Summary A result driven, Information Security, Quality Management and Data Protection leader equipped with international recognition as a certified auditor in Information Security Management ISO 27001 and Quality Management ISO 9001as well as being a certified GDPR practitioner. I have leveraged analytical and problem-solving strengths at senior management level, thriving in dynamic, high-pressure environments. At the forefront of my skillset lies the ability to analyse and streamline systems, operations and business processes to increase productivity, quality and efficiency. I am now open to consulting opportunities with large and small organisations across industries and sectors. In these contexts, I would be a multi-faceted asset, adept at ensuring regulatory compliance, streamlining operations without losing customer focus, integrating management systems to decrease costs and formalising internal policies and standards. Profile • Certified GDPR Practitioner, project management, implementation, DPIA, Record of Processing – HR/Marketing, Subject Access Request, policy writing/amendment, advice and training • Information Security expert, consultant and auditor with multiple implementation experience • Quality Manager with a strong background in, and thorough understanding of, the project management process along with IS0 9001:2015 • Risk Management consulting advice and development • Organised, enthusiastic professional; willing to hear new ideas and go the extra mile to improve performance • Possess strong interpersonal skills; able to work effectively with individuals at all levels • Demonstrated ability to develop and maintain sound employee relations • Strong problem resolution skills; able to prioritise a broad range of responsibilities efficiently and effectively • Worked on international projects in Dubai, France and Ireland • Catalyst for change, transformation and performance improvement • Achieved reputation as a resource person, problem solver, trouble-shooter and creative turnaround manager Project/Achievements • Obtaining external certification for ISO 27001, ISO 9001, ISO 20000 • GDPR Transition and Implementation Project x2 • Information Security Implementation • Development of Audit Management on RSA Archer and ServiceNow • Development of Risk Management on RSA Archer and ServiceNow • Relationship Manager for two major six sigma projects involving credit and customer relations department with a projected first year saving of £2m • QA Lead on the project management planning of key multi-million-pound contracts across the business: A5 Project in Ireland – £100m & Cooling the tube - £30m • Lead for design & roll out of £3m company-wide document management system • Lead for customer feedback and audit reporting tool • Information Security Management certification achieved and maintained • Successfully obtained and renewed ISO certification in ISO 9001, ISO 27001 and ISO 20000 • Established Central Document Management Systems bringing the organisations consistency, clarity and control in all company documentation Professional Experience May 2018 – Current Smup Ltd Director/Consultant Self-employed, company director offering services in: • Design, implementation and maintenance of Information Security, Quality and Service Management Systems
  • 2. Page 2 of 4 • Advice on implementing an Integrated Management System • Advice on business requirements and impact of GDPR • Internal auditing • Readiness for external certification audits • Assistance at client audits • Supplier audits • Contract audits • Project status audits • Risk management • Analysis of business processes to recommend business improvement and development • Design, implementation and maintenance of Document Management System • Advice on increasing efficiency and reducing cost May 2019 – Current Harneys LLP (Contract) Information Risk & Security Consultant ISO 27001 policy re-write and preparation for external certification audits across international locations including GDPR implementation including conducting extensive internal audits in order to uncover potential issues prior to the external audit and the planning for remediation of the audit findings. Tailoring the Information Security Management System to fit The Firm to ensure processes are fit- for-purpose and specific to The Firm and not generic. Creating suitable training and embedding of the ISMS and GDPR into everyday working life of the employees to ensure that information security is practiced throughout The Firm reducing information leakage that would adversely effect The Firm. Working with department heads and senior managers from Global Partners, Chief Operations Officer, Chief Technical Officer to the Chief Information Officer, in order to create an understanding of the ISMS as well as GDPR and other business leading best practices for seamless working and efficiency to reduce costs and increase assurance in the security of information and reduction of risk threats while mitigating vulnerabilities. Developed and transferred, audit management, risk management, legal and regulatory lists, document library, supplier management and business impact assessment from excel to ServiceNow. Since late June I have been fulfilling the role of acting CISO which has increased the strategic element of the role as well as dealing with incident and event tickets, client questionnaires, setting the internal audit program, running Senior Management Review meetings, setting ISMS objectives to ensure the ISMS is running to the needs of The Firm. Managing direct reports who were mostly technical architects, setting up the structure of the document management system, advising on Business Continuity Management as well as physical security. Oct 2018 – Dec 2018 Diktamen (Contract) ISO 27001 Implementation Consultant ISO 27001 Implementation from scratch, initially starting with a gap analysis, interviews with Leadership, following on to creation of documentation, training, auditing planning with preparation for external audit. Oct 2018 – Oct 2018 telent Technology Services (Contract) Auditor ISO 20000 Internal Audit: Preparation of audit checklists in order to allow the internal audit process to carry out a specific structure achieving better value from the audit. Carrying out internal audit in order to provide status of the management system offering improvement in order to provide efficiencies in order to reduce cost. Trained staff during the audit process in how to interact with the external auditor as well as offered training and guidance to the telent internal auditors. May 2018 – Oct 2018 Six Degrees Group (Contract) GDPR Implementation Project Manager/Consultant Overall Accountability for the GDPR implementation project Policy Creation: Subject Access Request, DPIA, Legitimate Interests, Privacy Notice, International Transfer of Personal Data, Security Incident Response
  • 3. Page 3 of 4 Record of Processing advice and guidance: Organised and hosted workshops with all departments identifying records containing personal information, advised and coached on how to determine the correct lawful basis of processing information in order to comply with GDPR requirements DPIA implementation and advice: Created the documentation, trained on how to complete a DPIA and completed a mock DPIA GDPR risk assessment development: Identified and scored risks related to information security Training development and delivery: Produced and delivered training for staff awareness Interpreted GDPR jargon into simple language: Used examples relevant to Six Degrees Group Subject Access Request: Created the documentation, trained on implementation and ran a mock Subject Access Request exercise to ensure all affected employees knew what to do Project Management reporting and updates: Created project reporting documentation and chaired the project review meetings to provide project status GDPR integration: Integrated GDPR requirements into existing processes e.g. for ISO 27001 to ensure a streamlined set of documentation and processes were kept simple for the business GDPR process mapping: Created process maps in order to simplify the understanding of some GDPR requirements such as the Subject Access Request process making the obligations easier to follow Document classification: Advised on the correct document classification and labels to apply to information and how to handle documents with a higher sensitive classification. Dec 2010 – May 2018 T-Systems Limited Country Quality Manager Responsible for maintaining certification for established Integrated Management System: Integral member of the GDPR Implementation project covering all aspects of GDPR starting with the Record of Processing to final awareness training. Streamlined the business auditing regime by creating and maintain audit schedules based on a risk-based approach, conducting audits touching on financial performance, business processes, data protection, compliance, ISO standards and suppliers. Reduced cost of auditing via a simple initiative of remote audits through use of conferencing technology as well as implementing a risk and audit platform to reduce administration ensuring value of risk and audit findings. Initiated continual improvement exercises with the purpose of cost savings and waste reductions, with key successes in new starter induction, buildings estate waste reduction through better use of space. Implementation of a group-wide document management framework, including document classification which ensured clarity and continuity of documentation as well as ensuring documents were easily identifiable and retrievable which reduced time wasted looking for required documents. Aug 2010 – Nov 2010 EDF Energy Quality Assurance Lead Responsible for implementation of Quality Management System for a Nuclear framework, internal & supplier auditing for established Nuclear Licensing requirements. Internal Training of understanding to the Quality and Document Management System Mar 2010 – Jun 2010 British Gas Business (Contract) Quality Manager Responsible for developing and delivering an appropriate BGB QMS framework in accordance with ISO 9001:2008 to ensure costs are reduced and efficiency is increased to supply a better performance to clients while increasing profits. Mitigation of organisational risks through leading the deployment of corporate risk management. Improved end-to-end processes and general running of complaints department to reduce escalation of complaints to ombudsmen level saving costs to a significant level. Designed the framework of a new Document Management System to have a central place for documents to avoid obsolete and consistency of document style and correct document classification Communication link between Top-Management and the business Dec 2006 – Feb 2010 Mouchel Group Plc Senior Group Quality Advisor Maintain and fulfil an internal audit programme across all UK offices via undertaking full system audits to ensure ISO 9001:2008 registration was maintained due to this being a requirement to bid for work and maintain existing contracts. Designed and implemented a new non-conformity and audit management module for use across the business to ensure timely closure of audit actions in a consistent manner to reduce audit findings going overdue and leading to potential major non-conformities.
  • 4. Page 4 of 4 Designed and implemented an online document management system to ensure the easier retrieval and identification key documentation in order to reduce administration time. Accreditation/Professional Courses QA GDPR Foundation & Certified Practitioner Course Lloyd’s Register Quality Assurance Introduction to GDPR ISO 9001:2015 Lead Auditor Transition Quality Manager Training Course ISO 27001:2013 Update and Appreciation Course ISO 27001 Lead Auditor Conversion Course ISO 20000 Interpretation & Appreciation Course ISO 9001:2008 Update and Transfer Course ISO 9001:2000 Lead Auditor Training Course IS0 9001:2000 Appreciation Course ISO 9001:2000 Internal Auditor Training Course Education The College of Law – Legal Practice Course Kingston University - LLB (Hons) – Law Lampton School – A Levels and GCSEs Volunteer Work Working with SGSS Hounslow (local Sikh Temple) as Chair of the Events Committee to plan, innovate and evolve events including an annual procession through Hounslow which has up to 20,000 people. Project management of events includes liaisons and influencing of the Executive Committee, Metropolitan Police, London Fire Brigade, Transport for London, St John’s Ambulance, London Ambulance Service and London Borough of Hounslow. Chairing the Gold Partners Meetings as well as training and organising all volunteers. Part of the SGSS Southall annual procession which is the largest of its kind in Europe with over 100,000 people.