

Accomplished Cybersecurity Strategist and Architect with over 10 years of leadership experience across aviation, critical infrastructure, and smart organizations. Former BISO at Delhi International Airport, where I led national-scale SOC operations, cyber crisis response, and regulatory compliance aligned with ISO 27001:2022, GDPR, and CERT-In.
Specialized in architecting cloud security controls (AWS, Azure), deploying deception technology, and implementing OT/ICS security frameworks in aviation and critical infrastructure environments. Adept in insider threat management, third-party risk governance, and securing IT-OT converged networks.
Extensive hands-on experience with SIEMs (Splunk, QRadar,Sentinel,Seceon,etc.), EDRs (SentinelOne, CrowdStrike), SOAR, and endpoint hardening.
Recognized for translating strategy into secure execution, building cross-functional cyber teams, and driving scalable security transformation. Pursuing CISSP and PMP with a long-term vision to lead global cybersecurity innovation and resilience.
Secure System Architecture & OT Security: Fortinet FortiGate, Cisco ASA, Cisco ISE, VMware for network security and secure OT architecture SOC Management & Incident Response: InsightIDR, QRadar, Splunk, CrowdStrike EDR, SentinelOne, SECEON XDR, Zscaler DLP for SOC operations, incident response, and endpoint protection Security Compliance & Risk Management: Nessus, Qualys Guard, InsightVM for vulnerability assessments ISO 27001, GDPR, PCI DSS, CIS, OWASP, HIPAA for compliance and risk management Vulnerability Management & Threat Assessment: Nessus, Qualys Guard, Metasploit, InsightVM for vulnerability scanning and risk assessment Threat intelligence via Cisco Talos, Trend Micro, MXToolbox, VirusTotal, Cuckoo Sandbox Endpoint Security & Network Defense: CrowdStrike EDR, SentinelOne for endpoint protection FortiGate, Palo Alto, Checkpoint Firewalls, Zscaler DLP, WAF, Anti-DDOS Protection for network defense Malware Analysis & Threat Intelligence: OSINT Tools: Shodan, Maltego, Censys, Passive DNS for open-source intelligence gathering MITRE ATT&CK Framework for comprehensive threat analysis and mapping of attack techniques Cuckoo Sandbox, VirusTotal, Encase, FTK, ProcMon, Wireshark, Metasploit, Burp Suite for malware analysis and threat identification Security Policy & Governance Development: Zscaler DLP, Indefend DLP for data loss prevention ISO 27001 tools for policy development and compliance Authentication, Access Control & Identity Management: Arcon PAM, Kerberos Authentication, Active Directory (AD), Cisco ISE, IAM Solutions, PIM for identity and access management Multi-factor authentication (MFA) for enhanced security Incident Forensics & Forensic Analysis: Encase, FTK, Splunk, QRadar, LogRhythm for forensic investigations, log analysis, and threat mitigation Cyber Crisis Management & Response Planning: Zscaler DLP, CrowdStrike EDR, Palo Alto Firewalls, WAF for crisis response management Cloud Security & Data Protection: AWS, Azure, Google Cloud Security for securing cloud environments AWZ guard duty, Cloudwatch, Azure sentinel, Azure WAF etc Zscaler DLP, Indefend DLP for cloud data protection Technical Skills & Network Security: Wireshark, Metasploit, Burp Suite, Nessus, Qualys Guard, Cisco Routers (881, 1760, 1841) for network analysis, testing, and configuration Linux, Windows environments, VLAN, RIP, EIGRP, OSPF, BGP for network and system administration Email security and awareness training: Email security tools: Mimecast, Proofpoint, Barracuda Email Security, Zix Email Security for protecting against phishing and malware in emails Awareness Training Platforms: KnowBe4, Cofense, Proofpoint Security Awareness Training for phishing simulations and employee security training