Cybersecurity and Information Security Leader with 20+ years of experience spanning cybersecurity governance, cyber risk management, cloud security, security architecture oversight, regulatory compliance, and enterprise security transformation. Proven track record of partnering with executive leadership to align cybersecurity strategy with business objectives, manage enterprise risk, strengthen cyber resilience, and drive security programs across global organizations.
Experienced in financial services, insurance, and technology environments with expertise in governance, risk and compliance (GRC), cloud security, third-party risk management, vulnerability management, and security operations.
LTIMindtree Limited
Bangalore
Lead cybersecurity governance, security architecture oversight, and cyber risk management initiatives for a leading insurance client in Bermuda, aligning security controls with business, regulatory, and operational requirements.
Drive enterprise security programs covering endpoint security, infrastructure security, identity and access management, vulnerability management, and cloud security across hybrid environments.
Provide strategic oversight for Microsoft Defender, Microsoft Intune, Qualys, and Privileged Access Management (PAM) platforms, strengthening the organization's security posture and operational resilience.
Collaborate with infrastructure, cloud, and application teams to integrate security-by-design principles into technology initiatives, secure SDLC practices, and digital transformation programs.
Conduct cyber risk assessments, security reviews, and control effectiveness evaluations, supporting compliance with industry standards and regulatory requirements.
Develop and monitor cybersecurity KPIs, KRIs, and executive dashboards, providing actionable insights to senior leadership and supporting risk-based decision making.
Lead incident response preparedness activities, cyber resilience initiatives, and tabletop exercises to improve organizational readiness against evolving cyber threats.
Recognized with the “Super Crew” Spot Award (September 2025) for leadership, client engagement, and successful delivery of cybersecurity transformation initiatives.
Nissan Digital India
Global
Served as the Business Information Security Officer (BISO) for seven global Sales Finance entities, providing cybersecurity governance, risk management, security oversight, and regulatory compliance leadership.
Directed cybersecurity strategy and security operations oversight for web applications, cloud platforms, infrastructure environments, and operational technology (OT) assets supporting business-critical financial services operations.
Established and managed cyber risk management processes, including security assessments, risk treatment planning, exception management, and remediation tracking across multiple geographies.
Led vulnerability management and security assurance programs, driving risk reduction through proactive identification, prioritization, and remediation of security weaknesses.
Governed cloud security initiatives across AWS and Azure environments, collaborating with technology teams to strengthen security architecture, identity management, and DevSecOps practices.
Partnered with executive leadership, business stakeholders, and technology teams to align cybersecurity initiatives with business objectives, regulatory obligations, and enterprise risk appetite.
Delivered cybersecurity metrics, board-level reporting, and risk insights to senior management, enabling informed decision making and strengthening cyber resilience across the Sales Finance organization.
Championed cybersecurity awareness, security culture, and continuous improvement initiatives, fostering a risk-aware and security-conscious operating environment.
IBM India Pvt. Ltd.
Led risk-based reviews of endpoint and infrastructure security controls, including policy management, patch management, and incident response.
Managed application security reviews, vulnerability assessments, and remediation planning.
Supported SOC operations, incident response, and compliance with SOX, ISO 27001, and PCI-DSS.
Various other roles:
GTS – Lead Process testing team and control testing and Risk and Compliance process architect for Build and Decommission Process.
Compliance & Controls Consultant - for Cloud Managed Service Deliver (CMSD)
Technical Services Professional – Lotus Domino Email messaging service & Infrastructure administration.
Professional Development Course
Expected to complete by July’2026.
Certified Cyber Warrior V 4.0
Master of Business Administration (MBA)
Bachelor of Computer Applications (BCA)
(C-DAC, CERT-In & NIC) - (Ministry of Electronics & Information Technology, GoI)