Summary
Overview
Work History
Education
Skills
Certification
Custom Section
Websites
Personal Information
Websites, Portfolios and Profiles
Timeline
Generic
Vikas Arora

Vikas Arora

Delhi

Summary

Accomplished cybersecurity leader with over 22 years of diverse experience in IT management, risk mitigation, and security operations. Expert in driving enterprise-wide cybersecurity strategies, aligning security with business objectives, and leading transformational initiatives. Adept at advising C-suite executives and boards on risk-based decisions, fostering a culture of proactive security, and steering cross-functional teams to deliver robust security outcomes.

Overview

19
19
years of professional experience
1
1
Certification

Work History

Group Manager

HCL Technologies Limited
Noida
06.2023 - Current
  • Drive an enterprise-wide cybersecurity strategy that aligns with business objectives and adapts to emerging threats.
  • Develop, implement, and continually refine security policies, frameworks, and best practices to enhance the overall security posture.
  • Act as a trusted advisor to C-suite executives and board members, delivering risk-based recommendations that inform strategic decision-making.
  • Collaborate with legal, compliance, and product teams to ensure that all security initiatives integrate seamlessly with broader business goals.
  • Oversee the adoption and implementation of multi-cloud security best practices, ensuring secure configurations and robust Identity & Access Management (IAM) across platforms.
  • Lead initiatives to secure web applications, APIs, and microservices, mitigating risks, including the OWASP Top 10-and championing secure coding practices throughout the Software Development Life Cycle (SDLC).
  • Lead comprehensive Vulnerability Assessment & Penetration Testing (VAPT) programs across applications, APIs, cloud environments, and infrastructure.
  • Establish and manage robust threat intelligence and attack surface monitoring programs, prioritizing and coordinating remediation efforts in collaboration with engineering teams.
  • Develop and maintain detailed Incident Response plans and playbooks, while building and overseeing a high-performance Security Operations Center (SOC) to detect, investigate, and mitigate threats in real time.
  • Lead post-incident reviews to extract valuable insights and continuously enhance operational resilience.
  • Ensure adherence to regulatory and standards frameworks (ISO 27001, PCI DSS, SOX, GDPR, DPDP, SOC 1& 2, HIPAA, ITGC, ITAC, SOX) by conducting regular risk assessments, audits, and gap analyses.
  • Coordinate vendor security assessments and lead client security audit responses, effectively managing compliance documentation and procedures.
  • Spearhead organization-wide security awareness initiatives to foster a culture of proactive risk management.
  • Regularly assess and optimize the security architecture, integrating modern security technologies and best practices that support digital transformation.

Security Consultant / Information Security Officer / SOC Manager / Project Manager - Information Security

IBM
Gurgaon & Bengaluru
06.2019 - 06.2022
  • Directed a 24x7 SOC, streamlining incident detection and response to improve organizational resilience.
  • Drive significant improvements in threat intelligence and risk management strategies while overseeing high-impact security projects aligned with business priorities.
  • Provided executive-level guidance on compliance and risk mitigation, ensuring adherence to global security standards.

Technical Specialist / Security Operations Lead

Microland
Bengaluru
07.2017 - 01.2018
  • Optimized enterprise security operations maintained critical system uptime, and enhanced vulnerability management protocols.

Senior Specialist - Consulting

HCL Comnet
Noida
12.2006 - 07.2017
  • Implemented end-to-end IT security solutions across multiple domains, establishing best practices that improved security posture and operational continuity.
  • Mentored teams and managed client engagements, delivering tailored risk management solutions.

Education

High School - Science

J.D. Tytler
New Delhi, DL
03.1998

Master of Computer Applications - Computer Applications

Indira Gandhi National Open University
New Delhi, DL
01.2006

GNIIT - Software Development

NIIT
01.2003

Bachelor of Computer Applications - Computer Application

Indira Gandhi National Open University
New Delhi, DL
01.2003

Skills

  • Firewalls (Cisco ASA, Checkpoint, Palo Alto)
  • IDS/IPS
  • SIEM
  • Vulnerability management tools (Nessus, QualysGuard)
  • Cloud Security
  • IAM
  • VPN
  • ISO 27001
  • PCI DSS
  • SOX
  • GDPR
  • SOC 1& 2
  • ITGC
  • ITAC
  • HIPAA
  • Forensic analysis

Certification

  • Certified Information Security Manager (CISM)
  • ISO 27001:2012 Lead Auditor
  • Certified Ethical Hacker (CEH)
  • ITIL V3 Foundation

Custom Section

  • Strategic Vision & Execution
  • Executive Decision Making
  • Transformational Leadership
  • Cross-Functional Collaboration
  • Operational Excellence & Compliance

Personal Information

  • Title: Senior Cybersecurity & Risk Executive
  • Date of birth: 1980-01-30
  • Gender: Male
  • Nationality: Indian

Websites, Portfolios and Profiles

https://www.linkedin.com/in/n5213518/

Timeline

Group Manager

HCL Technologies Limited
06.2023 - Current

Security Consultant / Information Security Officer / SOC Manager / Project Manager - Information Security

IBM
06.2019 - 06.2022

Technical Specialist / Security Operations Lead

Microland
07.2017 - 01.2018

Senior Specialist - Consulting

HCL Comnet
12.2006 - 07.2017

High School - Science

J.D. Tytler

Master of Computer Applications - Computer Applications

Indira Gandhi National Open University

GNIIT - Software Development

NIIT

Bachelor of Computer Applications - Computer Application

Indira Gandhi National Open University
Vikas Arora