harsh vardhan
Cybersecurity Specialist
About
Cybersecurity professional with 6+ years of experience in security operations, threat detection, and incident response across enterprise environments. Currently monitor and defend enterprise infrastructure at Dell Technologies using Splunk SIEM and CrowdStrike EDR, triaging security events in real time and leading investigations from detection through containment and root-cause analysis. Skilled in vulnerability management, endpoint threat remediation, and identity or access security like Active Directory, SailPoint with additional experience supporting IT compliance frameworks like ISO 27001, SOC 2, SOX to strengthen overall security.
Skills & Expertise (16)
Work Experience
Security Specialist
Dell Technologies
Feb 2026 - Present
Triage security alerts across endpoints, network, and cloud in Splunk SIEM, cutting average alert-triage time by 25% and flagging 15–20 genuine threats per month for escalation. Lead incident response end-to-end — investigation, containment, and root-cause analysis — closing 40+ incidents with an average containment time of 4 hours and zero repeat compromises. Detect, investigate, and remediate endpoint threats via CrowdStrike EDR; isolated 20–25 compromised hosts and lifted detection coverage to 95% of the environment. Run vulnerability management end-to-end — scanning, severity/asset-criticality prioritization, and remediation coordination — closing 90% of critical findings within SLA. Conduct periodic user access reviews and privileged access certifications across Active Directory and SailPoint covering 500+ accounts, cutting excess/stale access by 30%. Manage security tickets in ServiceNow, sustaining 95% SLA adherence across 150 tickets per month. Support ISO 27001 and SOC 2 compliance via Vanta and Drata, maintaining 98% continuous control coverage and cutting audit evidence-gathering time by 40%. Partner with cross-functional IT and business teams to close control gaps and strengthen security tooling.
Software Developer
Ziontech Solutions
Apr 2025 - Jan 2026
Evaluated and tested IT General Controls (ITGC) — access management, change management, and IT operations — across 15 systems, identifying 10–12 control gaps. Performed user access reviews (UAR) confirming role-based access and least-privilege compliance for 300 accounts. Tested logical access controls across ERP (Oracle) and Active Directory environments, verifying 90% of sampled controls operated effectively. Reviewed change management documentation for proper approvals, testing evidence, and segregation of duties (SoD), flagging 6–8 exceptions. Validated IT operational controls (backups, job monitoring, incident management), documenting results in audit-ready workpapers.
Security Analyst
Ta3s
Dec 2021 - Sep 2023
Executed ITGC engagements across 8–10 clients spanning multiple industries as part of external audit and compliance assignments. Tested controls over user access management, change management, and IT operations, closing 12–15 findings per engagement cycle. Reviewed user provisioning, role changes, and termination requests, catching 10–12 instances of delayed access removal. Evaluated privileged and shared accounts, resolving exceptions directly with client management. Identified control deficiencies and prepared detailed workpapers supporting year-end SOX audits, including sample selection and evidence validation. Tracked open findings across 5 simultaneous engagements, driving remediation to closure with clients.
Associate Information Security Consultant
Secureyes
Jul 2019 - Nov 2020
Developed and maintained cybersecurity policies and procedures aligned with ISO 27001, covering 6 business units. Assessed application security postures and drafted In-Principle Approvals (IPA) for 15–20 secure deployments. Conducted Digital Forensic Readiness Assessments (DFRA) to strengthen incident response preparedness. Executed internal ISO 27001 audits verifying control implementation and policy adherence across 8 departments. Supported the international expansion of the YONO SBI mobile banking application, enabling secure banking transactions for users outside India.
Security Analyst
Netconnect
Jan 2019 - Mar 2019
Drafted and maintained security policy frameworks supporting ISO 27001 certification across telecom infrastructure. Investigated security events, documented findings, and coordinated incident reporting with internal and external stakeholders. Contributed to compliance-readiness efforts for Jio's nationwide telecommunications network ahead of ISO 27001 certification.
Process Associate
Cognizant Technology Solutions
Jun 2017 - Aug 2018
Supported development and governance of enterprise-wide security policies meeting ISO and PCI DSS standards. Executed ISO 27001:2013 control assessments identifying 8–10 gaps ahead of certification audits. Facilitated cybersecurity awareness and training sessions for 150–200 employees, improving compliance posture. Mentored 3–4 junior team members in audit readiness, evidence collection, and compliance documentation.
Education
Master of Science, Data Science - Saint Peter's University
- 2025 · Afghanistan
Bachelor of Engineering, Computer Science and Engineering - AVN Institute of Engineering & Technology
- 2016 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Relocation
Open to Relocation
Skills (16)
Click a skill to find developers with the same skill