A career built across cloud security, governance, and delivery.
Scroll the track — the index on the left follows along and marks where you are.
Banyan Cloud Inc.
Senior Information Security Engineer
Leading cross-functional security initiatives across cloud detection, control engineering, and emerging compliance programs.
Leading cloud detection and response design using AWS CloudTrail telemetry and MITRE ATT&CK mapping for stronger cloud-native threat visibility.
Driving privacy and security control implementation for NDPR, Kenya Data Protection Act, and upcoming regional obligations with structured control mapping.
Embedding RBI, IRDAI, and SEBI-aligned requirements into architecture controls, IAM workflows, and audit-ready documentation.
Preparing an internal risk management framework to enable continuous validation of technical and administrative controls.
Banyan Cloud Inc.
Information Security Engineer
Ran enterprise security programs spanning multi-cloud control testing, regulatory alignment, product security review, and audit readiness.
Led security initiatives across AWS, Azure, and OCI using NIST, ISO, and CIS-aligned control testing and continuous compliance workflows.
Delivered regional and global compliance support across GDPR, HIPAA, PCI DSS, ISO 27001, NIST CSF, and EU DORA.
Partnered with platform and cloud SMEs on penetration testing, code review, IAM hardening, and RBAC improvements.
Mapped MITRE ATT&CK and CIS Benchmarks to cloud-native services to improve hardening, monitoring, and audit preparedness.
Banyan Cloud Inc.
Data Security Consultant
Focused on foundational data protection work, security testing, and internal control improvements.
Conducted security testing to identify vulnerabilities, assess exposure, and support remediation.
Worked with infrastructure teams to implement DLP-oriented safeguards for sensitive information.
Virtually Testing Foundation
Cyber Security Intern
Built hands-on practical experience through guided labs, vulnerability analysis, and security fundamentals.
Completed cybersecurity mini-projects covering secure configuration, vulnerability analysis, and access control.
Strengthened core understanding of modern security tooling, workflows, and defensive thinking.
Frameworks, clouds, and regulations in active use.
Brighter cells are day-to-day working knowledge; dimmer cells are regulations applied on specific programmes.
Let’s build a safer operating environment.
If you need a security partner who can move between architecture, compliance, and delivery execution, I’m always happy to talk.