Security Professional (Jan, 2005
–Present) at ***Confidential, Bangalore
⭐ Security Architecture & Engineering
Designed and implemented end-to-end cybersecurity architectures for hybrid and multi-cloud environments.
Integrated advanced security controls including WAF, ZTNA/Zero Trust, EDR, IAM, and DLP.
Automated security deployments using Terraform, PowerShell, and Python.
Defined security requirements, conducted technical reviews, and guided strategic security initiatives.
⭐ SOC Leadership & Cyber Defense Operations
Managed and matured Security Operations Centers (SOC), driving improvements in detection, monitoring, and response workflows.
Led teams responsible for SIEM operations (Splunk, QRadar, LogRhythm, ArcSight, Helix).
Developed incident response processes, use cases, alert triage models, and threat detection mechanisms.
Performed deep analysis of incidents, malware, and threat vectors to strengthen defense capabilities.
⭐ Incident Response & Threat Management
Directed IR teams in handling high-severity incidents, conducting root cause analysis, and developing remediation strategies.
Performed forensic assessments, threat intelligence correlation, and incident reconstruction for L2/L3 escalations.
Improved SOC maturity through tuning, automation, and process optimization.
⭐ Identity & Access Management (IAM)
Implemented secure IAM solutions with MFA, SSO, ADFS, and privileged access tools.
Worked with leading IAM and NAC platforms like Azure AD, Cisco DUO, CyberArk, and Forescout.
Strengthened enterprise authentication, access governance, and policy enforcement.
⭐ Risk, Governance & Compliance
Conducted risk assessments, policy reviews, and compliance checks aligned with ISO 27002, GDPR, SOX, and internal standards.
Developed policies, procedures, standards, and security guidelines to enhance enterprise governance.
Supported internal and external audits, ensuring zero deviations through proactive remediation.
⭐ Cloud & Network Security
Secured multi-cloud environments (Azure) through strong identity, network, and application controls.
Implemented secure network architectures including firewalls, IDS/IPS, segmentation, and DDoS protections.
Strengthened application and data security through modern security frameworks and controls.