Memoji representation of Niranjan Ganesan, cloud security enthusiast

Niranjan Ganesan

Senior Director Global Security 🌎 eProductivity Software (ePS)
Cybersecurity Leader | Security, Risk & Compliance | GRC, Cloud & AI Governance

Summary

Security executive with 20+ years of experience leading enterprise wide information security, risk, compliance, and AI governance across global product and cloud organizations. Proven track record building and scaling CISO level functions from the ground up, delivering SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR, CPRA, and DPF certifications, standing up AI governance aligned with ISO 42001, and operationalizing security across hybrid AWS and on premises environments. Known for translating technical risk into business outcomes for executive leadership, unifying IT and security under a single governance model, and driving 60 to 70% efficiency gains through Python and no code automation. Deep experience securing Generative AI and Agentic AI systems, including LLM security, prompt injection mitigation, vendor AI assurance, and embedded product AI controls.Key Highlights* Audit ready certifications in months, not years: SOC 2, ISO 27001, PCI DSS, GDPR, and DPF
* Built AI Governance program aligned with ISO 42001, covering AI risk management, model governance, and data protection
* 60 to 70% efficiency gains across security and compliance through Python and no code automation
* Executive risk translation: turning technical posture into board level business decisions
* Strategic leader and hands on IC: builds, automates, and executes security work directly when needed

Certifications

AI Governance & Threat Intelligence- ISO 42001:2023 Lead Auditor - Artificial Intelligence Management Systems (AIMS)
- Certified ATT&CK Cyber Threat Intelligence
- Certified ATT&CK Security Operations Center Assessments
Governance, Risk & Audit- ISACA Certified Information Systems Auditor (CISA)
- ISACA Certified Information Security Manager (CISM)
- ISACA Certified in Risk and Information Systems Control (CRISC)
- ISACA Certified in the Governance of Enterprise IT (CGEIT)
- Certified Chief Information Security Officer (CCISO)
- Certified GCHQ Cyber Incident Planning & Response (CIPR)
Privacy- ISACA Certified Data Privacy Solutions Engineer (CDPSE)
- Certified Information Privacy Technologist (CIPT)
- Privacy Engineering Certification
Cloud Security- AWS Certified Security - Specialty
- AWS Certified Solutions Architect - Associate
- Certificate of Cloud Security Knowledge (CCSK)
- Certificate of Competence in Zero Trust (CCZT)
- Certified Advanced Cloud Security Auditing (CSA STAR)
ISO Standards- ISO 27001:2022 Lead Auditor - Information Security Management System
- ISO 27001:2013 Lead Auditor - Information Security Management System
Technical / Practitioner- CompTIA Security+
- CompTIA PenTest+
- CompTIA Network Vulnerability Assessment Professional
- Redis Security
- VMware Certified Associate - Data Center Virtualization
Service Management & Agile- Certified ITIL v4 Foundation - IT Service Management
- Certified Scrum Master
- Certified Agile Leader 1
- Certified Agile Leadership Essentials (CAL-E)
- Certified Agile Leadership for Teams (CAL-T)
- Certified Agile Leadership for Orgs (CAL-O)
- Cyber Supply Chain Management

Work experience

Company NameTitleDuration
eProductivity Software (ePS)Senior Director Global SecurityAugust 2025 - Present
Plivo Inc.Senior IT & Cloud Security ManagerApril 2021 - August 2025
Fiserv Inc.Senior Manager Information SecurityOct 2019 - April 2021
Reward360 Global Services Private LimitedAVP SecurityJul 2018 - Oct 2019
Skilworth Technologies Private LimitedCISO & IT HeadFeb 2016 - Jul 2018
RedBlackTree Technologies Private LimitedSenior Data Centre EngineerOct 2010 - Nov 2015
Alfie Software Private LimitedService EngineerMay 2009 - Aug 2010
RMP Infotech Private LimitedSystems AdministratorDec 2005 - Apr 2009

Core Competencies

AI Governance & Security

  • AI Governance Program Build (ISO 42001 AIMS) - AI use-case intake, AI risk assessment, model and data controls, and acceptable-use standards for internal and product-embedded AI.

  • GenAI & Agentic AI Security - LLM security, prompt-injection mitigation, model access controls, and secure integration patterns for AI products.

  • Vendor AI Assurance - AI vendor assessments, responsible-use controls, and emerging-tech risk evaluation for AI-enabled SaaS.

Strategic Leadership & Executive Management

  • Security Strategy & Vision – Proven ability to align enterprise security programs with business objectives, fostering a risk-aware culture.

  • C-Suite & Board Engagement – Experience in engaging executive leadership, translating security challenges into business impact, and driving compliance governance.

  • Global Security Program Leadership – Expertise in developing and managing enterprise-wide security programs, balancing risk, compliance, and operational needs.

Advanced Security Expertise & Technologies

  • Cloud Security Mastery – Deep expertise in AWS security and cloud-native security tools (AWS CloudHSM, AWS KMS, AWS Security Hub, etc.).

  • Security Architecture & Zero Trust – Extensive experience in designing security architectures, including Zero Trust frameworks, MITRE ATT&CK, and WAF security.

  • Critical Infrastructure Protection – Skilled in safeguarding critical infrastructures, ensuring business continuity and disaster recovery.

Innovation & Operational Excellence

  • Security Transformation Initiatives – Driving cybersecurity innovation, integrating security frameworks into business operations.

  • Security Operations & Incident Response – Deep expertise in SOC management, incident handling, vulnerability management, and threat intelligence.

Management & Strategy

  • Cross-Functional Team Leadership – Leading diverse teams to execute security initiatives, align strategies, and enhance operational effectiveness.

  • Project & IT Strategy Management – Overseeing large-scale security and IT projects, ensuring alignment with organizational objectives.

  • Internal & Third-Party Audits – Managing internal security audits and external regulatory compliance assessments.

  • Enterprise Risk & Resource Management – Identifying, assessing, and mitigating risks while optimizing security resource allocation.

  • Vendor & Stakeholder Management – Engaging with vendors, partners, and stakeholders to enhance security operations and compliance.

Organizational Development & Culture

  • Security Awareness & Culture Building – Leading security education programs, embedding security-first culture into organizational operations.

  • Team Leadership & Talent Development – Experience mentoring and managing security teams, fostering collaboration and growth.

Technical Proficiencies & Tools

  • Security Technologies & Practices – Expertise in container security, virtualization technologies, secure development practices, and cloud security frameworks.

  • Security Tools & Solutions - Hands-on experience with CrowdStrike, Sophos, AWS GuardDuty, AWS Security Hub, SIEM platforms, and modern EDR/XDR infrastructures.