Summary
Overview
Work History
Education
Skills
Software
Certification
Training
Timeline
Hi, I’m

Minhaz Shaikh

Director Cyber Security @ quatrrobss| MBA | CISM |Trend Micro IDS/IPS | Qualys VM | ISO 27001 isms LE | Agile Scrum master | P2P | ITIL
Bengaluru,KA
Minhaz Shaikh

Summary

Insightful and results-driven IT professional with extensive expertise in servers, web technologies, GRC, and web security, aligned with the ISO 27001:2013 ISMS framework. Strong communication and interpersonal skills, coupled with hands-on experience in project management, security tools (Qualys, TrendMicro, SentinelOne EDR, Tenable Nessus), audits, process optimization, and documentation. Proven ability to manage stakeholders, oversee end-to-end project implementation, and drive strategic improvements. Adept at leading and mentoring teams, fostering innovation, and enhancing operational efficiency. Skilled in problem-solving and decision-making, contributing to a high-performance security posture.

Overview

21
years of professional experience
18
years of post-secondary education
7
Certifications

Work History

Quatrro Business Support Solutions
Bangalore, Karnataka

Director Cyber Security
10.2024 - Current

Job overview

• Handling multiple clients with different requirements such as security policies assessment, reporting and maintaining GRC topics, VM/ WAS scan.
• Led Vulnerability Management, Patch Management, and remediation tracking to mitigate cyber threats.
• Established and enforced corporate policies, security controls, and compliance procedures to enhance data protection and regulatory adherence.
• Identified, assessed, and mitigated cybersecurity risks, ensuring proactive security measures running permanent supervision controls and getting risk identified and accepted, documented.
• Having good experience into banking domain and healthcare Infra security and compliance.
• Ensured IT infrastructure compliance with respect to ISO27001 ISMS.
• Managed security controls implementation (Firewalls, SIEM, IAM, EDR, DLP, WAF) to meet compliance mandates.
• Implemented Zero Trust Security Model to enhance infrastructure protection.
• Governance on internal access management to practice (RBAC role-based access control)
• Handling governance on SOC VM report to be vigilant on remediation as per company policy which help in keeping open vulnerabilities to aging.

Deloitte Touche Tohmatsu Limited
Bangalore, KA

Associate Director VAPT
2021.01 - 2024.10 (3 years & 9 months)

Job overview

• Developed and implemented IT security governance frameworks aligned with industry standards example ISO 27001.
• Maintained compliance with industry regulations while adapting best practices as needed.
• Engage with Pentesters for POC on SEC patches related to critical CVE has available exploits and has direct impact to business and control it ahead of time.
• Managed Third-Party Risk Assessments (TPRM) and vendor security evaluations to ensure compliance with security frameworks.
• Work closely with SEC heads and directors to foresee upcoming issues and fixing it with help of NIST, SOC tools like Qualys/ Trend Micro, SIEM for secure banking operations.
• Designed Security Policies, Standard Operating Procedures (SOPs), and compliance checklists for regulatory adherence.
• Managed quality assurance program, including on-site evaluations, internal audits and customer surveys.
• Work closely with Regulators like as per clients region and local authorities following IT standards and best practice guidelines.
• Managing Large Team with Large clients to implement, delivery on security space majorly on GRC, Penetration Testing, IDS/IPS for Infra SOC, SIEM.
• Projecting KPI , KRI to CISO and business Heads and as having hands on experience on IT infrastructure domain guide to technical teams with solutioning for fix as per MAITRE ATT$CK.

Societe Generale Global Market Investment Banking
Bangalore, Karnataka

Lead Cyber Security
01.2012 - 01.2021

Job overview

  • Responsible for managing SOC team dealing with Threat detection using Qualys for Global servers and communicating for permanent fix.
  • Handling Infra about 50K assets globally Includes all OS, Application Middleware security using virtual security patches from TrendMicro as 1st step of remediation and work with teams for permanent fix.
  • Monitored systems for intrusions or denial of service attacks and reported security breaches to appropriate personnel.
  • Working on Risk Control using Internal tools as part of PS Controls for Bank.
  • Managing SEC Product as SOE for Global 1st phase patching solution and strictly monitor for compliance through out year and also regularly do 3rd party tool assessment.
  • Work closely with Regulators like GDPR, NYDFS, HARIBO and submits compliance and audit report related to SEC on applications/ servers with help of NIST framework tools to help reporting.
  • Created and yearly updates Mitre ATT&CK frame work to understand an activities and task related to SEC tools would cover which areas and which areas are Grey to be address in future.
  • Responsible for Scanning of vulnerabilities producing /publishing dashboard to respective business lines for fix and following up.
  • Resolved problems, improved operations and provided exceptional service.
  • Cross learning with other security teams and sharing the findings on zero day vulnerabilities for fix
  • Work closely with SEC heads and directors to foresee upcoming issues and fixing it with help of NIST, SOC tools like Qualys/ Trend Micro , SIEM for secure banking operations
  • Managed quality assurance program, including on-site evaluations, internal audits and customer surveys.

RealSoft inc
Bangalore, karnataka

Sr Software Engineer
02.2011 - 01.2012

Job overview

  • Collaborated with cross-functional development team members to analyze potential system solutions based on evolving client requirements.
  • Tested troubleshooting methods, devised innovative solutions, and documented resolutions for inclusion in knowledge base for support team use.
  • Worked closely with global stakeholders to understand and deliver as per their requirements.
  • Resolved issues and escalated problems with knowledgeable support and quality service.
  • Standardized job tasks and trained junior team members on industry best practices and standards.

Monsanto Holdings
Bangalore, karnataka

Web Administrator
07.2007 - 01.2011

Job overview

  • Maintained websites for branches of global intranet applications and web clients through digital platform
  • Configured and purchased domains for websites.
  • Troubleshot issues with websites and fixed scripting and use issues.
  • Designed graphics for website decoration and layout.
  • Participated in continuous improvement by generating suggestions, engaging in problem-solving activities to support teamwork.
  • Reduced unplanned outages and maintained 99% of availability of web sites and web applications by identifying issues and resolving it during first time monitoring provided strategic solutions for implementing redundant systems and clustering for high availability

Aress Software
Nashik, Maharashtra

Project Lead Linux Admin
01.2004 - 02.2007

Job overview

  • Quickly learned new skills and applied them to daily tasks, improving efficiency and productivity.
  • Resolved problems, improved operations and provided exceptional service.
  • Tuned system performance to optimize efficacy of new and existing hardware components.
  • Installed system-wide hardware components, confirming interoperation and compatibility with Linux-based software distros.
  • Conducted testing and troubleshooting for various software remotely and onsite for server sets to maintain operational readiness.

Education

ISBM
Bangalore

MBA from Information Technology
07.2009 - 07.2012

NIIT
Nasik

Diploma from Computer And Information Sciences
01.2002 - 01.2004

BYK
Nasik

High School Diploma
06.1997 - 10.2000

ST Francis High School
Nasik

Schooling from Schooling
06.1987 - 06.1997

Skills

    Cybersecurity

undefined

Software

Qualys

TrendMicro Deep Security

Linux

Windows

Middleware

Load Balancer

Jira

CyberArk

ServiceNow

Certification

Qualys VM

Training

Qualys Web Application Scan

CISM Training Completed

PMP

Timeline

Director Cyber Security

Quatrro Business Support Solutions
10.2024 - Current

Associate Director VAPT

Deloitte Touche Tohmatsu Limited
2021.01 - 2024.10 (3 years & 9 months)

Qualys VM

08-2020

TrendMicro Deep Security

10-2019

Agile Scrum Master

06-2017

Prince2 Practitioner

06-2015

ISO 27K:2013 ISMS Lead Implementer

11-2014

Lean Six Sigma Yellow Belt Internal Certificate

06-2013

Lead Cyber Security

Societe Generale Global Market Investment Banking
01.2012 - 01.2021

ITILv3 Foundation

05-2011

Sr Software Engineer

RealSoft inc
02.2011 - 01.2012

ISBM

MBA from Information Technology
07.2009 - 07.2012

Web Administrator

Monsanto Holdings
07.2007 - 01.2011

Project Lead Linux Admin

Aress Software
01.2004 - 02.2007

NIIT

Diploma from Computer And Information Sciences
01.2002 - 01.2004

BYK

High School Diploma
06.1997 - 10.2000

ST Francis High School

Schooling from Schooling
06.1987 - 06.1997
Minhaz ShaikhDirector Cyber Security @ quatrrobss| MBA | CISM |Trend Micro IDS/IPS | Qualys VM | ISO 27001 isms LE | Agile Scrum master | P2P | ITIL