Sangram Dash
Details
Business Administration and Management, General
University of California, Los Angeles - The Anderson School of Management
2023 : Present
Sisense
Chief Information Security Officer
Vision - To build a purpose-driven, trusted, and safe community that equips people with the expertise to embrace secure development practices, connect with other practitioners to solve the ever-evolving challenges, and ultimately democratize software security.
https : //www.thepurplebook.club/#vision
https : //www.thepurplebook.club/appseccon
https : //www.youtube.com/watch?v=j_Hoj9c-JMs&ab_channel=ThePurpleBookCommunity
2021 :
Purple Book Community
The Purple Book Community Leader
+ Corporate identity program
+ Business resiliency capability assessment
+ SIEM to an MDR provider Transformation
+ Optimized the Customer Compliance Program
+ Board, Executive, Risk Committee Reporting
+ Led a team of security experts and managed the supporting budget
+ Mentor and motivate team members to deliver by focusing on what matters to the business
2022 : 2023
CDK Global
Head of Cyber Security (CISO)
Built an Identity Service for 9000+ people organization and maturing a Cyber Security Governance function. Accountable for :
+ Identity and Access Management (IAM)
+ Identity Governance and Administration (IGA)
+ Privileged Access Management (PAM)
+ Cloud Privileged Access Management (CPAM)
+ Customer Compliance Program (CCP)
+ Integrated Information Risk Management (IIRM)
+ Information Security Strategy and Governance
+ Information Security Policy Management
+ Data Security and Governance
+ Third-Party Risk Management
+ Cyber Security Incident Response
2021 : 2023
CDK Global
Sr. Director, Cyber Security and IAM
Fast is a platform that enables you to easily and securely access the world without passwords. I wore multiple hats, and being customer-obsessed, I pivoted to deliver what my business wanted. I was a builder and enabler in my current role. I built :
+ Data Security
+ Product Risk (Threat Modeling and Privacy by Design)
+ Third-Party Risk Management
+ Cloud Security
+ Security and Privacy Incident Management
+ Vulnerability Management
+ PCI DSS, PSD2, 3DS, SOC, ISO, NIST, CIS
+ Sales Enablement
+ Vulnerability Management
+ PCI DSS, SOC 1/2, ISO
+ Cyber Security GRC
+ Privacy GRC
2020 : 2021
Fast
Director - Cyber Security and Privacy Engineering
Skills
Business Intelligence, Business Intelligence (BI), Business Process, Business Transformation, Business Valuation, Change Management, Corporate Governance, Cross-functional Team Leadership, Cybersecurity, DCF Valuation, Enterprise Resource Planning (ERP), Enterprise Risk Management, Entrepreneurship, FinTech Product Management, Governance, Information Security, Information Technology, Internal Controls, IT Audit, IT Security Assessments, IT Strategy, Large Systems Integration, Leadership, Mergers & Acquisitions, Mobile Devices, Outsourcing, PMO, Pricing Strategy, Program Management, Project Management, Project Portfolio Management, Risk Management, Security, Software Development, Software Project Management, Solution Architecture, Strategic Leadership, Team Leadership, Team Management, Technical Leadership, Technology Change Management, Vendor Management
About
Sangram is an information security leader with expertise in mitigating Identity, Product Security, Cyber Security, Security Compliance, and Privacy risks. He has successfully built bank-grade cyber security programs as well as implemented security and privacy programs for series A payments start-ups. He has worked for CDK Global, Fast.Co, Silicon Valley Bank, Square (Block), PayPal (Venmo and Braintree), and KPMG. He holds an MBA from UCLA Anderson School of Management and professional certifications in CISSP, CDPSE, and CISM.
Sangram is a frequent speaker at industry events and has been featured at AppSecCon, HMG Strategy, and SINET events. He is also a member of PupleBookClub with a vision to build a purpose-driven, trusted, and safe community that equips people with the expertise to embrace secure development practices. Outside of work, he mentors an all-girls VEX IQ robotics team, Asteria, which has received 20+ awards at the state and national levels in the last six years.
Cyber Security | Mobile Security | Web Security | Vulnerability Management | API Security | IRM | GRC | ERM | IAM | IGA | PAM | TPRM | PCI | PSD2 | SOC | GDPR | CCPA | Square | PayPal | Venmo | Braintree | KPMG | FinTech | UCLA Anderson | MBA | CISM | PMP | Application Security | Zscaler | Splunk | NetSkope | Demisto | Rapid 7 Nexpose | LaceWork | BridgeCrew | Orca Security | LogicHub | AWS CloudWatch | OneTrust | ASPM | DSPM | CSPM |