Cybersecurity Portfolio Available

Designing secure cloud environments, compliance systems, and risk programs with clarity.

I work at the intersection of security architecture, governance, and delivery execution, helping teams turn complex requirements into systems that are practical, measurable, and resilient.

Elsewhere
Snapshot

The operating picture at a glance.

Signals a hiring team can read in ten seconds — depth, breadth, and where I create the most leverage.

01

Primary Focus

Cloud Security + GRC

Connecting technical controls, compliance requirements, and delivery decisions into one operating model.

Years in Security

0

Framework Families

0

Certifications

0

Regions Supported

0

02

Working Style

Technical + Strategic

Comfortable moving from architecture detail to leadership-facing security framing without losing depth.

03

Operating Base

Bengaluru, India

Open to remote, hybrid, and global cybersecurity opportunities.

Open to work

Let's talk about your security roadmap.

Open to cybersecurity leadership, cloud security, and GRC-focused opportunities.

Capabilities

Where I create the most leverage.

Four practice areas that carry most of my work — select one to see how I approach it.

01

Cloud Security Engineering

Designing control-aligned cloud environments, permission boundaries, IAM flows, and posture hardening across AWS, Azure, OCI, and GCP.

IAMPostureHardeningDetection
02

Compliance Operations

Translating global regulations and audit expectations into implementable requirements, evidence models, and control testing programs.

ISO 27001PCI DSSGDPRDORA
03

Security Architecture Review

Reviewing solution designs early, surfacing control gaps, and guiding product teams toward secure-by-design delivery paths.

ArchitectureThreat ReviewDesignControls
04

Risk and Detection Programs

Building repeatable ways to track exposure, map events to threat models, and strengthen response readiness with operational telemetry.

MITRE ATT&CKCloudTrailRiskResponse
Trajectory

Roles that show execution depth and range.

Scroll the track — the index on the left follows along and marks where you are.

Banyan Cloud Inc.

Senior Information Security Engineer

May 2024 - Present Bengaluru, India

Leading cross-functional security initiatives across cloud detection, control engineering, and emerging compliance programs.

Leading cloud detection and response design using AWS CloudTrail telemetry and MITRE ATT&CK mapping for stronger cloud-native threat visibility.

Driving privacy and security control implementation for NDPR, Kenya Data Protection Act, and upcoming regional obligations with structured control mapping.

Embedding RBI, IRDAI, and SEBI-aligned requirements into architecture controls, IAM workflows, and audit-ready documentation.

Preparing an internal risk management framework to enable continuous validation of technical and administrative controls.

AWS CloudTrailMITRE ATT&CKIAMControl MappingRisk Frameworks

Banyan Cloud Inc.

Information Security Engineer

August 2021 - April 2024 Bangalore, India

Ran enterprise security programs spanning multi-cloud control testing, regulatory alignment, product security review, and audit readiness.

Led security initiatives across AWS, Azure, and OCI using NIST, ISO, and CIS-aligned control testing and continuous compliance workflows.

Delivered regional and global compliance support across GDPR, HIPAA, PCI DSS, ISO 27001, NIST CSF, and EU DORA.

Partnered with platform and cloud SMEs on penetration testing, code review, IAM hardening, and RBAC improvements.

Mapped MITRE ATT&CK and CIS Benchmarks to cloud-native services to improve hardening, monitoring, and audit preparedness.

AWSAzureOCIRBACNIST CSFISO 27001
Selected work

Security thinking, shipped.

Context and ownership first, stack second. Open any brief for the full record.

Product Security

Custom CVE Alert Intelligence Pipeline

01

Automated CVE monitoring pipeline that mapped NVD advisories to customer technology stacks and triggered actionable alerts.

Improved customer vulnerability awareness and reduced time-to-triage for emerging exposures.

AutomationThreat IntelSecurity Product
Productionized

Governance and Compliance

GRC Framework Mapping and Compliance Automation

02

Structured methodology for aligning internal security controls with global regulations and standards.

Reduced manual mapping effort and improved audit readiness across multiple teams and regions.

GRCComplianceFramework Design
Operational