About
IT professional with 9 years of experience, including 4.5 years in cybersecurity and GRC, currently working as a Consultant at EY LLP, with strong hands-on experience in ISO/IEC 27001 ISMS implementation, control alignment, asset management, and risk assessment and treatment. Actively involved in maintaining asset and risk registers, supporting compliance audits, and contributing to third-party risk management (TPRM) activities such as vendor risk assessments and control reviews. Additional exposure to security monitoring, phishing and malware analysis, EDR-based detections, and enterprise security log analysis across large environments.
Skills & Expertise (18)
Work Experience
Network Engineer
Corporate Infotech Private Limited
Mar 2017 - Aug 2021
Provided L1 support for Palo Alto Firewalls and network security devices, including traffic log analysis, connectivity troubleshooting, and escalation of high-severity security incidents. Monitored network and security devices using SolarWinds, supported change management processes, and ensured timely issue resolution and operational stability.
Consultant
EY LLP
Jun 2024 - Present
Supported ISMS governance and GRC compliance for government and large financial security projects by aligning controls with ISO/IEC 27001:2022, maintaining ISMS asset registers and risk registers, performing information asset identification, risk assessments, threat and impact analysis, facilitating cross-functional risk workshops, and supporting ISO 27001 internal audits, including evidence collection, control testing, non-conformity tracking, and remediation closure. Supported regulatory, contractual, and third-party risk compliance by reviewing information security policies, procedures, data privacy controls, and risk treatment plans, and by contributing to government RFP pre-qualification (PQ) and technical qualification (TQ) evaluations, mapping ISO 27001 certifications, security controls, and organizational security capabilities against tender requirements.
Support Analyst
Rackspace Technology
Jun 2022 - Jun 2024
Performed continuous security monitoring and alert analysis using SIEM (Splunk) and EDR (Microsoft Defender), including triage, false-positive reduction, incident validation, and escalation through ServiceNow. Conducted phishing investigations, threat intelligence analysis (domains, IPs, URLs), incident response support, root cause analysis, remediation follow-ups, and vulnerability scanning using Nessus.
ITMS Senior Engineer
British Telecom
Aug 2021 - May 2022
Monitored enterprise infrastructure using SolarWinds to ensure service availability, performance, and proactive issue detection; created dashboards, reports, and alerts to provide operational visibility and SLA tracking. Managed incidents and service requests through ITSM tools (ServiceNow, BMC Remedy), supporting major incident management and performing root cause analysis (RCA) to ensure timely resolution and service continuity.
Education
Masters in Electrical - Hindustan University
2014 - 2016 · India
Bachelor in Electrical - Annamalai University
2010 - 2014 · India
Certifications
Identity and Access Administrator Associate
Microsoft · 2026
Information Security Administrator Associate
Microsoft · 2025
Security, Compliance and Identity Fundamentals
Microsoft · 2025
ISO 27001:2022 Lead Auditor
BSI · 2024
CEH
EC-Council · 2024
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation