Information Security Risk & Compliance Analyst
I am an Information Security Risk & Compliance Analyst with 4 years of experience at DCube Data Sciences. I successfully authored and updated incident response workbooks and playbooks, leading to a 30% reduction in operational risk and false-positive alert metrics. I'm expanding my expertise as a Cybersecurity Engineer, deepening my skills in threat monitoring and incident response to enhance organizational security.
Jan 2023 - Sep 2025
Evaluated inbound and outbound security alerts via Splunk Enterprise to identify operational control gaps and systemic vulnerabilities. Managed end-to-end incident tracking and risk lifecycle resolution using ServiceNow ticketing platforms. Collaborated with IT infrastructure groups to design, test, and enforce robust risk mitigation measures and security controls. Authored and updated incident response workbooks and playbooks, reducing operational risk and false-positive alert metrics. Analyzed phishing attack patterns to assess human-centric organizational risk and recommend email gateway control enhancements. Spearheaded cross-functional security awareness training sessions to improve risk culture and governance compliance across business units.
Dec 2021 - Sep 2022
Utilized the MITRE ATT&CK framework and cyber kill-chain modeling to build proactive threat scenarios and assess security posture risks. Monitored host and network-based endpoints across diverse customer environments to detect and log control deficiencies. Correlated security log data to provide comprehensive threat impact reporting for senior risk stakeholders. Assessed advanced threat detection system rules to optimize security baselines and control effectiveness.
Valid upto 2027
Bachelor of Technology (B.Tech) • 2017
Interested in collaboration or just want to say hello? Feel free to reach out!