About
Cybersecurity professional with 3+ years of experience across Governance, Risk & Compliance (GRC), Vulnerability Assessment & Penetration Testing (VAPT), and Information Security Operations. Experienced in ISO/IEC 27001 ISMS implementation, SEBI/NSE regulatory audits, cyber risk management, and enterprise security assessments. Proven ability to manage audits end-to-end, reduce risk exposure, and strengthen organizational security posture.
Skills & Expertise (25)
Work Experience
Cyber Security Consultant
NuSummit Cyber Security
Nov 2024 - Present
Supported ISO 27001–aligned GRC engagements including System, Cyber Security, Cyber Resilience, ALGO, VAPT. Supported Inspections of trading members/ stockbrokers to ensure cybersecurity and regulatory compliance. Managed end-to-end audit lifecycle including submissions, report reviews, ATR follow-ups, and non-compliance closure. Acted as liaison between Stock Brokers, NSE IT teams, and empanelled auditors. Managed the end-to-end submission process for System, Cyber, and VAPT audits, ensuring all technical queries were resolved and deadlines. Maintained and monitored audit submission trackers to ensure timely evidence delivery and regulatory compliance. Prepared SEBI quarterly annexures, risk dashboards, and cyber incident reports. Executed User Acceptance Testing (UAT) and managed the defect lifecycle by identifying, documenting, and tracking critical observations to ensure product alignment with business requirements.
Information & Cyber Security Analyst
SecMyIT Infosec Solutions Pvt. Ltd.
Feb 2022 - Nov 2024
Supported information security and cybersecurity audits for enterprise clients. Support in implementation of ISO/IEC 27001, establishing a robust Information Security Management System (ISMS) and strengthening the organization’s security. Support in Governance, Risk, and Compliance (GRC) initiatives by conducting risk assessments, identifying control gaps, and recommending effective risk mitigation strategies in alignment with business objectives. Supported internal and external audit engagements by preparing control evidence, tracking audit findings, and validating remediation closure. Performed Vulnerability Assessment and Penetration Testing on critical systems and applications. Identified and remediated vulnerabilities, ensuring the security posture met industry best practices. Developed and maintained documentation for security policies, procedures, and standards. Conducted regular training sessions to raise awareness about cyber security best practices among employees.
Education
Bachelors in Computer Science - Dr.D.Y. Patil Institute of Technology, Pimpri
- 2022 · Afghanistan
HSC - Pratibha Junior College
- 2019 · Afghanistan