s
sehrish_ish

Sehrish

@sehrish_ish

Information Security Professional

Pakistan
English
About me
I am an Information Security professional with experience in Information Security Governance, Risk, Compliance, ISO 27001, security and risk assessments, audit support, and security awareness. My key areas of expertise include: • ISO/IEC 27001:2022 – Gap Assessments & ISMS Support • Information Security Policies & Procedures • Risk Assessments & Risk Registers • Internal & External Audit Support • Documentation & Evidence Preparation • Information Security Awareness & Training Content (advisories template, Presentations, and other documentation) If you need support, I would be happy to help.... Read more

Skills

s
sehrish_ish
Sehrish
Offline • 

See my services

Programming & Tech
I will help with iso 27001 implementation and isms documentation

Work experience

Aga_Khan University

Analyst

Aga Khan University • Full-time

Mar 2025 - Present • 1 yr 7 mos

Overseeing Global Information Security policies, procedures, and ISMS documentation to ensure alignment with organizational and regulatory requirements. Developing and delivering IS awareness training and security advisories for AKU staff and, circulating them globally. Performing risk assessments and coordinating with risk owners to eliminate risks and ensure their timely mitigation. Managing both internal and external audits, collaborating with cross-functional teams throughout the audit cycle, and ensuring timely resolution of non-conformities. Managing the ISO 27001:2022 audit and ensuring continuous compliance with ICT inline with the ISO standard.