🏅 Cybersecurity Leader | Security Engineer
🔴 GSLC | GRTP | CRT-ID | RTO-I
☁️ GCSA | GCPN | AWS CSS | AWS SAA | AWS CCP | AZ-500 | AZ-900
"Security leader and engineer with 9+ years across Red Team, Security Operations, and Cloud Security. Designed and led CSPM, SIEM, and AI‑powered SOAR initiatives, reducing alert triage time and improving detection coverage. Adept at translating complex threats into actionable controls, with a focus on adversarial techniques, AI, and multi‑cloud environments
- Led implementation of various security initiatives including CSPM, SIEM and AI-powered SOAR to name a few resulting in improved security posture and operational efficiency
- Spearheaded Red Team initiatives to simulate Advanced Persistent Threat (APT) tactics, techniques, and procedures (TTPs) to fortify organizational defenses against sophisticated cyber threats.
- Conducted advanced vulnerability research and zero-day analysis to strengthen cybersecurity posture and develop effective mitigation strategies to safeguard organizations against emerging threats.
- Delivered high-impact security engagements for Fortune 500 companies, providing strategic guidance and technical expertise to enhance cybersecurity posture.
Undisclosed
A specialized multinational firm providing expert third-party verification and grading services for various collectible items ensuring authenticity while maintaining strict client confidentiality and privacy protocols.
Senior Security Engineer | Full-Time
Feb 2025 - Present
- Led Scrum and end‑to‑end project planning for a 10‑person team; built the strategic roadmap and security portfolio, increasing delivery velocity by 30% and generating $80K+ in savings
- Drove end‑to‑end vulnerability lifecycle modernization across cloud and SaaS, aligning to executive impact objectives; stood up 100% global visibility and executed in less than 2 months
- Coordinated exec‑level reporting on security initiatives, translating technical progress into KPIs that supported investment decisions across Security Architecture, Security Engineering and Security Operations.
- Led cloud security modernization across a large-scale, multi-cloud environment spanning AWS, GCP, Azure, and Oracle.
GIAC Advisory Board
The Global Information Assurance Certification (GIAC) Advisory Board is a prestigious panel of top cybersecurity professionals selected by invitation only for their extensive expertise in various domains of information security.
Board Member
Jul 2021 - Present
- Contributed expertise to tackle emerging problems in AI, Cloud, and Advanced Persistent Threats (APTs).
- Offered guidance on industry trends, emerging technologies, and evolving cybersecurity threats for certification development initiatives.
ISC2 - San Francisco Chapter
A organization with a mission is to help strengthen the safety of society by promoting information security awareness, thus providing its members and other information security professionals with the opportunity to share knowledge, grow professionally, educate others, and collaborate on security projects.
Chapter Member
Jan 2025 - Present
The Purple Book Community
A organization with a mission of uniting security professionals on a mission to democratize software security and solve its ever-evolving challenges with the power of Community.
AI Center of Excellence Contributor
Jun 2025 - Present
Ethos
Ethos is a technology-driven life insurance company that simplifies the process of obtaining coverage through a fully digital platform, leveraging data and modern underwriting to make life insurance more accessible and affordable.
Senior Security Engineer | Full-Time
Apr 2024 - Feb 2025
- Architected and Deployed CSPM in AWS 30% ahead of schedule; enabled continuous K8s posture alerting
- Designed and Implemented SIEM strategy and AI‑powered SOAR pipeline that cut alert triage time by 55% and automated Level 1 SOC analysis.
- Developed and implemented a comprehensive incident response plan from scratch, with a specialized focus on ransomware threats, enhancing organizational preparedness and resilience.
- Implemented and tuned CrowdStrike policies, decreasing noisy detections by 40% while preserving true‑positive rate.
Delta Dental
Delta Dental, one of the largest, dental insurance providers in the U.S., serves over 80 million Americans and manages their PHI data through 39 independent member companies. It has a network of more than 152,000 participating dentists and more than 2000 workers nationwide.
Senior Security Engineer - Red Team | Full-Time
Jan 2021 – Mar 2024
- Orchestrated adversary emulation exercises by planning, executing, and analyzing complex attack scenarios and helped develop and refine adversaries' tactics, techniques, and procedures (TTPs).
- Delivered comprehensive reports and KPIs to senior leadership, guiding strategic decision-making.
- Developed and implemented infrastructure and tools in AWS, Azure, Python, and Terraform to augment red teaming capabilities, increasing TTP coverage and efficiency.
- Collaborated with cross-functional teams to develop and execute tailored red-teaming strategies, helping improve Blue Team detection metrics.
Senior Security Engineer - Vulnerability Research | Full-Time
Jun 2020 – Jan 2021
- Spearheaded vulnerability research initiatives, leading to discovering and remedying high-risk security flaws in hybrid cloud environments.
- Developed custom exploits and mitigation techniques to address zero-day threats, safeguarding organizations against cyber-attacks.
- Conducted penetration testing and vulnerability assessments on systems, networks, and applications to identify security weaknesses and provide recommendations for remediation.
- Researched the latest security threats, vulnerabilities, and attack techniques while experimenting with new tools and methodologies to improve the offensive testing capabilities.
HackerOne & Bug Crowd
HackerOne and Bugcrowd are pioneering platforms in the cybersecurity field, offering crowdsourced security testing through bug bounty programs and vulnerability disclosure initiatives.
Bug Bounty Hunter | Security Researcher | Freelance
Jan 2019 – Aug 2023
- Independently identified and reported security vulnerabilities across various platforms and technologies.
- Regularly participated in bug bounty programs and security challenges, honing skills and staying abreast of emerging threats and attack vectors.
- Cultivated relationships with security researchers and industry professionals, contributing to collective knowledge and advancement of cybersecurity practices.
Synopsys
Synopsys, valued at over $70 billion, is a global frontrunner in Electronic Design Automation (EDA), Semiconductor IP, application security solutions, and security consulting for Fortune 500 companies and international market leaders.
Security Consultant | Full-Time
Jan 2018 – Jun 2020
- Led security assessments for Fortune 500 companies, providing actionable recommendations to enhance resilience against cyber threats.
- Developed and implemented customized security strategies to address specific threats and vulnerabilities, enhancing resilience and reducing risk exposure.
- Collaborated with cross-functional teams to develop and implement tailored vulnerability remediations aligned with business objectives and regulatory requirements.
Associate Security Consultant | Full-Time
Dec 2016 – Jan 2018
- Participated in diverse security engagements, identifying vulnerabilities and creating actionable remediation plans for clients across multiple industries.
- Earned client commendations for delivering precise, actionable security recommendations that strengthened their security posture and cyber resilience.
Cigital
Cigital Inc. is a renowned leader in the cybersecurity market, specializing in software security consulting, training, and application security products across various domains, including but not limited to banking, finance, healthcare, and credit unions.
Associate Security Consultant | Full-Time
Jul 2016 – Dec 2016
- Independently identify and report security vulnerabilities across various platforms and technologies.
- Regularly participate in bug bounty programs and security challenges, honing skills and staying abreast of emerging threats and attack vectors.
- Cultivate relationships with security researchers and industry professionals, contributing to collective knowledge and advancement of cybersecurity practices.
Security Operations Center (SOC) of UMD
University of Maryland - College Park (UMD) is a leading research institute that partners with government and businesses to address global challenges. It is also the largest university in both the state and the Washington metropolitan area.
UMPD Security Analyst | Part-Time
- Monitored security alerts and events to identify potential incidents and promptly initiate incident response procedures.
- Collaborated with law enforcement to effectively handle and mitigate security incidents at the University of Maryland - College Park.
Education
University of Maryland, College Park
Master of Cybersecurity Engineering
University of Mumbai
Bachelor of Information Technology