
Niranjan Ganesan
Senior Director Global Security 🌎 eProductivity Software (ePS)
Cybersecurity Leader | Security, Risk & Compliance | GRC, Cloud & AI Governance
Summary
Security executive with 20+ years of experience leading enterprise wide information security, risk, compliance, and AI governance across global product and cloud organizations. Proven track record building and scaling CISO level functions from the ground up, delivering SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR, CPRA, and DPF certifications, standing up AI governance aligned with ISO 42001, and operationalizing security across hybrid AWS and on premises environments. Known for translating technical risk into business outcomes for executive leadership, unifying IT and security under a single governance model, and driving 60 to 70% efficiency gains through Python and no code automation. Deep experience securing Generative AI and Agentic AI systems, including LLM security, prompt injection mitigation, vendor AI assurance, and embedded product AI controls.Key Highlights* Audit ready certifications in months, not years: SOC 2, ISO 27001, PCI DSS, GDPR, and DPF
* Built AI Governance program aligned with ISO 42001, covering AI risk management, model governance, and data protection
* 60 to 70% efficiency gains across security and compliance through Python and no code automation
* Executive risk translation: turning technical posture into board level business decisions
* Strategic leader and hands on IC: builds, automates, and executes security work directly when needed
Certifications
AI Governance & Threat Intelligence- ISO 42001:2023 Lead Auditor - Artificial Intelligence Management Systems (AIMS)
- Certified ATT&CK Cyber Threat Intelligence
- Certified ATT&CK Security Operations Center AssessmentsGovernance, Risk & Audit- ISACA Certified Information Systems Auditor (CISA)
- ISACA Certified Information Security Manager (CISM)
- ISACA Certified in Risk and Information Systems Control (CRISC)
- ISACA Certified in the Governance of Enterprise IT (CGEIT)
- Certified Chief Information Security Officer (CCISO)
- Certified GCHQ Cyber Incident Planning & Response (CIPR)Privacy- ISACA Certified Data Privacy Solutions Engineer (CDPSE)
- Certified Information Privacy Technologist (CIPT)
- Privacy Engineering CertificationCloud Security- AWS Certified Security - Specialty
- AWS Certified Solutions Architect - Associate
- Certificate of Cloud Security Knowledge (CCSK)
- Certificate of Competence in Zero Trust (CCZT)
- Certified Advanced Cloud Security Auditing (CSA STAR)ISO Standards- ISO 27001:2022 Lead Auditor - Information Security Management System
- ISO 27001:2013 Lead Auditor - Information Security Management SystemTechnical / Practitioner- CompTIA Security+
- CompTIA PenTest+
- CompTIA Network Vulnerability Assessment Professional
- Redis Security
- VMware Certified Associate - Data Center VirtualizationService Management & Agile- Certified ITIL v4 Foundation - IT Service Management
- Certified Scrum Master
- Certified Agile Leader 1
- Certified Agile Leadership Essentials (CAL-E)
- Certified Agile Leadership for Teams (CAL-T)
- Certified Agile Leadership for Orgs (CAL-O)
- Cyber Supply Chain Management
Work experience
| Company Name | Title | Duration |
|---|---|---|
| eProductivity Software (ePS) | Senior Director Global Security | August 2025 - Present |
| Plivo Inc. | Senior IT & Cloud Security Manager | April 2021 - August 2025 |
| Fiserv Inc. | Senior Manager Information Security | Oct 2019 - April 2021 |
| Reward360 Global Services Private Limited | AVP Security | Jul 2018 - Oct 2019 |
| Skilworth Technologies Private Limited | CISO & IT Head | Feb 2016 - Jul 2018 |
| RedBlackTree Technologies Private Limited | Senior Data Centre Engineer | Oct 2010 - Nov 2015 |
| Alfie Software Private Limited | Service Engineer | May 2009 - Aug 2010 |
| RMP Infotech Private Limited | Systems Administrator | Dec 2005 - Apr 2009 |
Core Competencies
AI Governance & Security
AI Governance Program Build (ISO 42001 AIMS) - AI use-case intake, AI risk assessment, model and data controls, and acceptable-use standards for internal and product-embedded AI.
GenAI & Agentic AI Security - LLM security, prompt-injection mitigation, model access controls, and secure integration patterns for AI products.
Vendor AI Assurance - AI vendor assessments, responsible-use controls, and emerging-tech risk evaluation for AI-enabled SaaS.
Strategic Leadership & Executive Management
Security Strategy & Vision – Proven ability to align enterprise security programs with business objectives, fostering a risk-aware culture.
C-Suite & Board Engagement – Experience in engaging executive leadership, translating security challenges into business impact, and driving compliance governance.
Global Security Program Leadership – Expertise in developing and managing enterprise-wide security programs, balancing risk, compliance, and operational needs.
Advanced Security Expertise & Technologies
Cloud Security Mastery – Deep expertise in AWS security and cloud-native security tools (AWS CloudHSM, AWS KMS, AWS Security Hub, etc.).
Security Architecture & Zero Trust – Extensive experience in designing security architectures, including Zero Trust frameworks, MITRE ATT&CK, and WAF security.
Critical Infrastructure Protection – Skilled in safeguarding critical infrastructures, ensuring business continuity and disaster recovery.
Innovation & Operational Excellence
Security Transformation Initiatives – Driving cybersecurity innovation, integrating security frameworks into business operations.
Security Operations & Incident Response – Deep expertise in SOC management, incident handling, vulnerability management, and threat intelligence.
Management & Strategy
Cross-Functional Team Leadership – Leading diverse teams to execute security initiatives, align strategies, and enhance operational effectiveness.
Project & IT Strategy Management – Overseeing large-scale security and IT projects, ensuring alignment with organizational objectives.
Internal & Third-Party Audits – Managing internal security audits and external regulatory compliance assessments.
Enterprise Risk & Resource Management – Identifying, assessing, and mitigating risks while optimizing security resource allocation.
Vendor & Stakeholder Management – Engaging with vendors, partners, and stakeholders to enhance security operations and compliance.
Organizational Development & Culture
Security Awareness & Culture Building – Leading security education programs, embedding security-first culture into organizational operations.
Team Leadership & Talent Development – Experience mentoring and managing security teams, fostering collaboration and growth.
Technical Proficiencies & Tools
Security Technologies & Practices – Expertise in container security, virtualization technologies, secure development practices, and cloud security frameworks.
Security Tools & Solutions - Hands-on experience with CrowdStrike, Sophos, AWS GuardDuty, AWS Security Hub, SIEM platforms, and modern EDR/XDR infrastructures.