Aarushi Koolwal

Security Engineer

Bengaluru, Karnataka, India3 yrs 7 mos experience
Most Likely To Switch

Key Highlights

  • Proven track record in delivering high-quality security reports.
  • Distinguished speaker at major cybersecurity conferences.
  • Expertise in third-party risk management and threat analysis.
Stackforce AI infers this person is a Cybersecurity professional with expertise in risk management and threat analysis in the Fintech and SaaS sectors.

Contact

Skills

Core Skills

Third Party Risk Management (tprm)Web Application Security AssessmentThreat AnalysisCyber Threat Intelligence (cti)

Other Skills

Burp SuiteCustomer Relationship Management (CRM)GRCNetwork SecurityPublic SpeakingThreat DetectionVirtual Machines

About

Cybersecurity professional with close to 3 years of work experience in diverse sectors in global threat research, leading third-party risk management (attack surface management) initiatives, and driving security enhancements for top-tier clients. Proven track record of delivering high-quality reports on security incidents with exceptional analytical skills and knowledge of industry standards. Distinguished speaker at prominent cybersecurity conferences (Bsides Ahmedabad, C0C0N) with excellent communication skills.

Experience

Phonepe

2 roles

Security Engineer

Promoted

Jul 2025Present · 8 mos · Bengaluru, Karnataka, India

Risk Analyst (Security Engineering)

May 2024Jul 2025 · 1 yr 2 mos · Bengaluru, Karnataka, India

Cloudsek

4 roles

Cyber Security Consultant SVigil (Third Party Risk Management & Attack Surface Management)

Promoted

Aug 2023May 2024 · 9 mos

  • Forefronted the delivery team to serve as the primary point of contact for key clients, including the largest private Indian bank and a leading health insurance firm in the UAE.
  • Conducted thorough evaluations of vendor portals, meticulously pinpointing critical/high findings and constructing comprehensive reports with a strong focus on technical analysis and their profound business implications.
  • Fostered strong client-vendor relationships, collaborating closely with both parties to ensure timely threat mitigation.
  • Distinguished as a thought leader through on vendor risk-related compliance requirements mandated by regulatory authorities such as RBI, SEBI, CERT, and ADDA.
  • Responsible for creating detailed reports that communicated critical findings to customers' vendors and their subsidiaries.
  • Effectively disseminated reports with clear context to clients, ensuring a prompt understanding of identified threats and necessary actions.
  • Ensured a seamless client experience within the portal and provided valuable feedback to the product team for continuous improvement.
  • Developed and implemented streamlined processes for the new product and a dynamic team.
  • Collaborated closely with CISOs and high-level security executives, driving enhancements in security policies and fortifying overall organizational cybersecurity
Burp SuiteThird Party Risk Management (TPRM)Web Application Security AssessmentCustomer Relationship Management (CRM)

Security Analyst

Jul 2022Jul 2023 · 1 yr

  • Worked on reports for 42 different clients, and produced 17 advisories that were published on my CloudSEK’s website.
  • Proactively and extensively focused on customer value realization for our product, resulting in a remarkable achievement of 100% retention among my assigned clients.
  • Monitored Xvigil(Digital Risk Protection) for various clients and highlighted the critical threats.
  • Coordinated with multiple other teams like AI and Data acquisition team, Engineering team, Prospect/BDR team for suggesting improvements on the product and overall efficiency.
Threat AnalysisBurp SuiteWeb Application Security AssessmentCyber Threat Intelligence (CTI)

Security Analyst Intern

Dec 2021Jul 2022 · 7 mos

  • Conducted OSINT investigations on client requests and client research team's assignments for phishing scams.
  • Monitored and reported threats on CloudSEK's XVigil (Digital Risk Protection Platform) for various clients.
  • Compiled informative reports on phishing campaigns for clients and conducted investigations on threats affecting client brand image.
  • Worked on ID printing scam and Fake cryptocurrency phishing scam investigations.
Threat AnalysisCyber Threat Intelligence (CTI)

Cyber Threat Researcher- Intern

Sep 2021Dec 2021 · 3 mos

  • Contributed to the global threat research team by triaging Russian and English cyber crime forums.
  • Developed an understanding of adversary behavior by observing and reporting them to the concerned clients.
  • Conducted threat actor profiling and research on different TTPs for the evolving ransomwares.
Threat AnalysisCyber Threat Intelligence (CTI)

Notsosecure | part of claranet cyber security

Intern Cybersecurity

Apr 2021Aug 2021 · 4 mos

  • Developed penetration test case studies for specific clients based on the reports.
  • Wrote white paper and reference guides for NotSoSecure’s Basic Infrastructure Hacking and Basic Web Hacking courses.

Education

Vellore Institute of Technology

Bachelor of Technology - BTech — CSE- specialisation in cyber security and digital forensics

Jan 2019Jan 2023

St. Raphael's School

2019

Jan 2019Present

Stackforce found 100+ more professionals with Third Party Risk Management (tprm) & Web Application Security Assessment

Explore similar profiles based on matching skills and experience