Back to Developers
Mayur Aher

Mayur Aher

Cyber Security Consultant

Pune, Maharashtra, India
80
Profile Score

About

Cybersecurity professional with 3+ years of experience across Governance, Risk & Compliance (GRC), Vulnerability Assessment & Penetration Testing (VAPT), and Information Security Operations. Experienced in ISO/IEC 27001 ISMS implementation, SEBI/NSE regulatory audits, cyber risk management, and enterprise security assessments. Proven ability to manage audits end-to-end, reduce risk exposure, and strengthen organizational security posture.

Skills & Expertise (25)

ISO/IEC 27001 Advanced
8.1/10
2
Years Exp
VAPT Advanced
7.9/10
2
Years Exp
Compliance Assessments Advanced
7.8/10
2
Years Exp
Application Security Advanced
7.5/10
2
Years Exp
incident reporting Advanced
7.3/10
2
Years Exp
Infrastructure Security SQL map Metasploit WIRESHARK Burp Suite OWASP ZAP Nmap Nessus Audit & Regulatory Compliance Team Leadership Vendor Risk Management Enterprise Risk Assessment SEBI-CSCRF Security Solution Implementation Network & Data Centre Operations GDPR Frameworks ISO 27001 system audits RBI Cyber Security Framework for Banks NSE Circulars

Work Experience

Cyber Security Consultant

NuSummit Cyber Security

Nov 2024 - Present

Supported ISO 27001–aligned GRC engagements including System, Cyber Security, Cyber Resilience, ALGO, VAPT. Supported Inspections of trading members/ stockbrokers to ensure cybersecurity and regulatory compliance. Managed end-to-end audit lifecycle including submissions, report reviews, ATR follow-ups, and non-compliance closure. Acted as liaison between Stock Brokers, NSE IT teams, and empanelled auditors. Managed the end-to-end submission process for System, Cyber, and VAPT audits, ensuring all technical queries were resolved and deadlines. Maintained and monitored audit submission trackers to ensure timely evidence delivery and regulatory compliance. Prepared SEBI quarterly annexures, risk dashboards, and cyber incident reports. Executed User Acceptance Testing (UAT) and managed the defect lifecycle by identifying, documenting, and tracking critical observations to ensure product alignment with business requirements.

Information & Cyber Security Analyst

SecMyIT Infosec Solutions Pvt. Ltd.

Feb 2022 - Nov 2024

Supported information security and cybersecurity audits for enterprise clients. Support in implementation of ISO/IEC 27001, establishing a robust Information Security Management System (ISMS) and strengthening the organization’s security. Support in Governance, Risk, and Compliance (GRC) initiatives by conducting risk assessments, identifying control gaps, and recommending effective risk mitigation strategies in alignment with business objectives. Supported internal and external audit engagements by preparing control evidence, tracking audit findings, and validating remediation closure. Performed Vulnerability Assessment and Penetration Testing on critical systems and applications. Identified and remediated vulnerabilities, ensuring the security posture met industry best practices. Developed and maintained documentation for security policies, procedures, and standards. Conducted regular training sessions to raise awareness about cyber security best practices among employees.

Education

Bachelors in Computer Science - Dr.D.Y. Patil Institute of Technology, Pimpri

- 2022 · Afghanistan

HSC - Pratibha Junior College

- 2019 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceMar 2026

Skills (25)

ISO/IEC 27001 VAPT Compliance Assessments Application Security incident reporting Infrastructure Security SQL map Metasploit WIRESHARK Burp Suite +15 more