Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Awards
Personal Information
Activities
Timeline
Generic
Abhishek Chandraprakash Singh

Abhishek Chandraprakash Singh

Bhandup (W)

Summary

I’m a cybersecurity professional with strong real-world experience in building and deploying secure systems for financial institutions, stock exchanges, and other critical infrastructure organizations. Starting as a Cyber Security Associate, I quickly proved myself by taking ownership of technical tasks, supporting live projects, and consistently delivering high-quality work. This performance earned me a promotion to Senior Security Analyst, where I now lead production-level deployments and manage client engagements directly.

My core work involves implementing cybersecurity platforms in completely offline environments — where every configuration, integration, and update needs to be managed without internet access. I’ve led full deployments from start to finish: understanding the client’s network, preparing the architecture, integrating it with their existing tools, training their teams, and ensuring everything runs smoothly even in the most restricted environments.

I’ve worked with some of the most high-impact clients in the financial sector, often managing multiple system integrations per project and aligning our solution with strict regulatory and audit requirements. Over time, I’ve developed strong skills in documentation, team leadership, risk understanding, and post-deployment support — all while keeping security, performance, and compliance at the center.

I enjoy solving complex problems, especially in challenging environments. Whether it's a deployment issue, a training session, or an integration bug — I approach each task with focus, accountability, and a goal to deliver something stable and secure. My strength lies not just in technical execution, but in thinking ahead, communicating clearly, and always being reliable when it matters most.

Overview

5
5
years of professional experience
1
1
Certification

Work History

Senior Security Analyst

ZERON
Mumbai
03.2025 - Current
  • I initially joined ZERON as a Cyber Security Associate, where my primary responsibilities included supporting senior engineers in configuring and testing our core cybersecurity platforms, especially CRPM and VRM. I worked closely with the engineering team to write automation scripts, test features, develop custom log decoders, and prepare internal documentation used across deployments.
  • I was actively involved in several client-facing tasks, including small-scale deployments, data simulation for dashboards, integration testing in staging environments, and performing system validations before go-live. I also provided backend support during pre-sales demos, where I assisted with environment setup and dummy data configuration.
  • I quickly gained hands-on experience with tools like EDR, PAM, VPN, and firewall rules during integration pilots. My focus on understanding the deployment flow, along with consistent delivery of assigned tasks and strong communication with cross-functional teams, helped me stand out.
  • As a result of my consistent performance, I was trusted with larger responsibilities — including independently managing integration tasks, training internal juniors, and client coordination for certain stages of deployment.
  • Within a few months, I was officially promoted to Senior Security Analyst, where I transitioned into leading full production deployments. I began handling the entire project cycle — from client requirement analysis, system design, actual deployment, testing, and training, all the way to final documentation and audit support.
  • Led mission-critical deployments of ZERON’s proprietary cybersecurity platforms — Cyber Risk Posture Management (CRPM), Governance, Risk & Compliance (GRC), and Vendor Risk Management (VRM) — across diverse financial institutions and regulatory bodies.
  • Successfully executed highly sensitive deployments in fully offline, air-gapped environments, customized per client’s infrastructure architecture, firewall segmentation, and compliance policies.
  • Designed end-to-end deployment architecture from scratch:
    Backend: Hardened PostgreSQL databases, API security, token/session management
    Frontend: React UI deployment via Nginx reverse proxy with layered access controls and SSL integration
    Middleware: Integrated Valkey for session handling, caching, and resilience; LDAP/AD for user authentication
  • Integrated Zeron’s stack with 10+ enterprise security tools per client, including:
    Endpoint Detection & Response (EDR) – for real-time detection
    Privileged Access Management (PAM) – for secure access control
    VPN – for network segmentation and secure communications
    Next-gen Firewalls & WAFs – (Fortinet, Cisco ASA, Cloudflare)
    SIEM Platforms – (Splunk, ELK Stack) for advanced log correlation and alerting
  • Conducted pre- and post-deployment audits, designed technical SOPs, ISMS-aligned documentation, and contributed to ISO 27001:2022 and SOC2 audit preparations.
  • Delivered tailored workshops and training programs to client SOC teams, InfoSec departments, and auditors.
  • Supported optimization and tuning: firewall rule sets, WAF logic, patch orchestration pipelines, incident response simulation workflows.
Key Projects Worked On

1. National Stock Exchange (NSE)

  • Led the deployment of Zeron’s CRPM platform inside NSE’s fully air-gapped critical infrastructure zone.
  • Integrated 7+ security tools, including SIEM (Splunk), PAM vaults, EDR, Fortinet WAF, and VPN tunnels.
  • Automated control posture scoring, SEBI CCI compliance alignment, and implemented log flow parsing and decoder tuning.
  • Delivered analyst-level dashboards enabling incident traceability and audit logging.

2. Multi Commodity Exchange (MCX)

  • Designed and implemented Zeron’s GRC solution tailored to MCX’s compliance-heavy infrastructure.
  • Integrated with 10+ tools, including internal ticketing systems, SIEM alerts, firewall control interfaces, and asset management platforms.
  • Built governance dashboards, custom controls mapping matrix, and exception handling workflows.
  • Facilitated continuous compliance validation and generated evidence-ready audit packs.

3. CDSL (Central Depository Services Limited)

  • Architected and deployed both CRPM and VRM in a multi-network, segmented environment.
  • Integrated with 10+ security tools: SIEM, PAM, EDR, WAF, AD, LDAP, ticketing tools, and compliance tracking solutions.
  • Developed layered access dashboards, vendor risk lifecycle modules, and alert thresholds for third-party risk exposure.

4. CVL (CDSL Ventures Ltd)

  • Extended CRPM integration with LDAP-based authentication, and enforced RBAC across backend services.
  • Enabled VPN-secured monitoring, built tailored dashboards for InfoSec team.

5. HDFC Securities

  • Executed a CRPM deployment in a segregated DMZ network.
  • Worked closely with client firewall teams to integrate Fortinet stack, configure SSL terminations, and activate endpoint posture validation.

6. Dhan

  • Delivered full-stack CRPM deployment: backend, frontend, infrastructure mapping.
  • Integrated with Cisco network switches, log pipelines, and developed custom parser and decoder rules.
  • Implemented alert-to-remediation workflows and audit reporting pipelines.

7. Bureau of Immigration, Philippines

  • Delivered remote training, solution demo, and basic configuration guidance to international client.
  • Supported localized product configuration and deployment documentation.

8. Finneva, Profectus Capital, Affin Bank

  • Conducted Red Team assessments, black-box and grey-box VAPT, source code audit of critical applications.
  • Simulated breach paths, designed lateral movement maps, and compiled CVSS-scored remediation reports.

Note: In addition to the above, I have worked on numerous other deployments and cybersecurity engagements involving regulatory institutions, large private banks, stock brokerages, and cloud-native enterprises. Many of these projects remain confidential due to NDAs and regulatory restrictions, but they have collectively contributed to my deep hands-on knowledge of compliance-driven security architecture, secure deployment methodologies, and enterprise security integration frameworks.

Cyber Security Associate

ZERON
Mumbai
08.2023 - 03.2025
  • Designed and deployed advanced log decoder to enhance system analysis and data interpretation capabilities.
  • Conducted comprehensive Red Team Security Assessment for Profectus Capital, identifying critical vulnerabilities.
  • Executed extensive Vulnerability Assessment and Penetration Testing (VAPT) for Affin Bank, strengthening security posture.
  • Facilitated impactful client meetings, driving engagement and generating new business opportunities.
  • Crafted compelling marketing content to boost brand visibility and communication effectiveness.
  • Developed automated script for generating dummy data, streamlining backend processes and improving data visualization.
  • Collaborated with backend team to ensure accurate integration of dummy data per client specifications.
  • Delivered product demonstrations and training to clients, enhancing understanding and satisfaction with Zeron product.

Security Analyst

Veracity Info Parks Pvt. Ltd.
11.2022 - 05.2023
  • Served as a pivotal member of the cyber security team at Veracity Info Parks Pvt. Ltd., where I conducted rigorous security assessments with a focus on Web Security, Cloud Security, and OS hardening.
  • Exercised meticulous attention to detail and technical expertise to document findings meticulously, ensuring full compliance with CERT-IN standards and regulatory requirements.

Sales Executive

Kotak Mahindra Bank
09.2021 - 02.2022
  • Distinguished myself as a Sales Executive at Kotak Mahindra Bank, showcasing unparalleled expertise in promoting Equated Monthly Installments (EMI) on credit cards and facilitating effortless transactions for personal loans.
  • Exemplified exceptional sales acumen and client relationship management skills, consistently exceeding targets and delivering exceptional results.

Virtual Relationship Manager

Tele Performance
03.2020 - 06.2020
  • Demonstrated exceptional proficiency as a Virtual Relationship Manager at Yes Bank, where I meticulously managed a portfolio of esteemed merchants.
  • Provided unparalleled service and support for their Point of Sale (POS) machines, ensuring seamless operations and fostering long-lasting relationships.

Education

Post- Graduation Program - Cyber security

BSE Institute Ltd
Mumbai
01.2023

BSC - Computer Science

NES RATNAM COLLEGE
Bhandup (W), Mumbai
01.2022

Class XII - Science

ST. XAVIER'S HIGH COLLEGE
Bhandup (W), Mumbai
01.2019

Class X -

ST. XAVIER'S HIGH COLLEGE
Bhandup (W), Mumbai
01.2017

Skills

  • Professional Networking & Development: Proven ability to build strong working relationships with cross-functional teams, clients, and partners Actively participate in industry events, maintain technical forums, and engage in continuous learning for professional growth
  • Leadership in Team Dynamics: Experienced in leading small and mid-size technical teams during critical deployments Mentored junior analysts, delegated tasks based on strengths, and encouraged open communication and collaboration to ensure successful project delivery
  • Cloud Compliance Frameworks: Familiar with regulatory and best-practice security frameworks applicable to cloud environments including ISO 27001, SOC2, RBI, and SEBI CCI Supported hybrid and on-premise audit readiness through documentation and evidence management
  • Source Code & Configuration Auditing: Hands-on experience using tools like CIS-CAT for benchmarking OS and configuration hardening, along with manual source code reviews in Django, Python, and JavaScript environments
  • Database Administration & Security: Skilled in managing and securing PostgreSQL environments Experience includes indexing, access control, performance tuning, and backup/recovery planning
  • Training & Communication: Delivered technical training and walkthroughs to client teams, SOC analysts, and internal juniors Created user manuals, SOPs, and quick-reference guides tailored to various technical backgrounds
  • Deployment Automation: Developed custom shell scripts and automation logic to speed up deployment of Zeron platforms across air-gapped infrastructure Automated SSL setup, user provisioning, and cron-based service checks
  • Risk Management Strategies: Supported clients in identifying risks across people, process, and technology layers Helped draft risk registers and implemented control mechanisms in tools like GRC and VRM
  • Penetration Testing & Red Teaming: Hands-on experience performing VAPT using tools like Nmap, Burp Suite, Metasploit, and custom scripts Conducted Red Team exercises involving phishing simulation and internal recon
  • OS Hardening: Applied hardening practices to RHEL and Ubuntu systems using CIS benchmarks Disabled unused services, configured firewall rules, and implemented logging/monitoring modules
  • Firewall Configuration: Automated configuration of Fortinet and Cisco ASA firewalls Built rules for port forwarding, packet inspection, and security zone segregation
  • SIEM Engagement & Tuning: Worked with clients to integrate SIEM tools like Splunk and ELK Customized dashboards, alert rules, and conducted regular tuning exercises to reduce false positives
  • Tool Integration & Testing: Collaborated with client-side teams to ensure Zeron products integrate with their EDR, VPN, PAM, and ticketing systems Developed and validated test cases before production rollout
  • Problem-Solving Skills: Ability to troubleshoot issues quickly under pressure, whether related to backend API bugs, system latency, or integration mismatches Take a methodical and calm approach to diagnostics
  • Training & Mentorship: Designed structured onboarding plans for new interns and junior team members Conducted mock client sessions, reviewed deliverables, and ensured consistent learning pace
  • Configuration Management: Maintained systematic version control, rollback plans, and server snapshot strategies during large-scale deployments Aligned config baselines with compliance and audit expectations

Certification

  • Certified Ethical Hacking Essentials
  • Android Bug Bounty Hunting
  • Cisco Certified Network Associate

Languages

  • English
  • Hindi
  • Marathi

Awards

  • National Karate Champion: Achieved the title of National Level Karate Champion, earning the gold medal.
  • Zeron Collaborator Award Recipient: Honored with the Zeron Collaborator Award for outstanding contributions to teamwork and collaboration.
  • NASA Recognition: Received an acknowledgment letter from NASA for identifying a critical P3-level vulnerability on their website.

Personal Information

  • Date of Birth: 01/24/02
  • Nationality: Indian
  • Marital Status: Single

Activities

  • Log Decoder Development: Developed a Python-based Log Decoder tool, enhancing log file analysis capabilities.
  • Agent Decoder and Rules Development: Created decoder and rules for security agent using Python, improving monitoring and response processes.
  • Automated Dummy Data Generator Tool: Developed an automated Python tool for generating dummy data based on user prompts and sample data.

Timeline

Senior Security Analyst

ZERON
03.2025 - Current

Cyber Security Associate

ZERON
08.2023 - 03.2025

Security Analyst

Veracity Info Parks Pvt. Ltd.
11.2022 - 05.2023

Sales Executive

Kotak Mahindra Bank
09.2021 - 02.2022

Virtual Relationship Manager

Tele Performance
03.2020 - 06.2020

Post- Graduation Program - Cyber security

BSE Institute Ltd

BSC - Computer Science

NES RATNAM COLLEGE

Class XII - Science

ST. XAVIER'S HIGH COLLEGE

Class X -

ST. XAVIER'S HIGH COLLEGE
Abhishek Chandraprakash Singh