Parth Pandya

Operations Associate

Bengaluru, Karnataka, India10 yrs 8 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Proven success in driving cybersecurity strategies.
  • Established and led multiple security practices.
  • Expert in cybersecurity transformation and risk management.
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in risk management and security operations across various industries.

Contact

Skills

Core Skills

CybersecurityRisk Management

Other Skills

Application SecurityBig DataBlue teamBreach and Attack SimulationBusiness ContinuityBusiness DevelopmentClient relationship managementConsultative sellingConsultingCyber AssuranceCyber DefenseCyber Law and Cyber ForensicsCyber Risk ManagementCyber Security RiskCyber defense strategies

About

Enthusiastic and results-oriented leader with proven success in driving cybersecurity and risk management strategies for enterprise clients across various industries (BFSI, Infrastructure, IT & Manufacturer) and specialized professional of the financial sector. Proven track record of leading teams in developing and implementing successful strategies for SOC operations, information security, incident response, and enterprise security solutions. Leveraging an M.Tech in Cybersecurity and extensive certifications (CISSP, CEH v11, CCIO, etc.), I possess deep expertise in: - Cyber Risk & Technology Risk Management: Strategic planning, threat assessment, and vulnerability management. - Security Operations: Building and leading SOC teams, incident response, and threat hunting programs. - Security Architecture & Consulting: Designing, implementing, and optimizing security solutions for enterprise environments (cloud, application, identity & access management). - Cybersecurity Transformation: Helping organizations establish best practices, improve security posture, and respond to cyberattacks effectively. Key Achievements: - Established and led numerous security practices (SOAR, SOC, Defense Centers) for improved cyber defense and threat intelligence. - Delivered successful engagements in security service design, transition & transformation, managed services, and research & development. - Successfully designed and deployed information security solutions including Single Digital Identity and Data Classification & Rights Management systems. - Passionate about innovation in IT security and committed to staying ahead of the evolving threat landscape. Skilled in consultative selling and collaborating with clients to achieve their security goals. Seeking new opportunities to leverage extensive experience and leadership skills to guide organizations in their below cyber security journey. - Risk/ Cyber Transformation, - Cyber Program Management, - Governance Risk & Compliance, - Security Architecture Consulting - CISO as a Service, - Next Gen Security Operations Center. - Cyber Threat Management, - Cloud & Application Security, - Identity & Access Management, - Operational Resilience & Privacy Degree and Certification: - M.Tech in Cyber Security - PGDCLCF (post-graduate diploma in cyber law & cyber forensics ) - Defense Institute of Advanced Technology & DRDO - Certified Information Assurance Professional - Certified Ethical Hacker ( CEH V11 ) - Cyber Crime Intervention Officer ( CCIO ) - CISSP (Review)

Experience

Ey

2 roles

Manager - Cyber Security & Risk Advisory

Promoted

Apr 2024Present · 1 yr 11 mos

  • Led a team of cyber security professionals in conducting comprehensive cyber security assessments, penetration testing, and vulnerability management engagements.
  • Developed and implemented tailored cyber defense strategies aligned with industry best practices and regulatory frameworks (e.g., NIST, ISO 27001, PCI-DSS).
  • Managed project budgets, timelines, and resources to ensure successful project delivery within scope and on time.
  • Cultivated strong client relationships, effectively communicating complex cyber security concepts and recommendations to stakeholders at all levels.
  • Mentored and coached junior team members, fostering their growth and development in the cyber security field.
  • Stayed abreast of emerging cyber threats and industry trends, continuously refining the team's approach to address evolving risks.
  • Successfully identified and mitigated a critical vulnerability that could have resulted in a major data breach for a leading financial services client.
  • Implemented a comprehensive security awareness program for a large FS organization, significantly reducing the risk of phishing attacks.
  • Developed a cost-effective cyber security roadmap for a manufacturing company, optimizing their security posture while meeting budgetary constraints.
  • Actively participate in industry conferences and workshops to stay abreast of the latest cyber security threats and trends.
Cybersecurity assessmentsPenetration testingVulnerability managementCyber defense strategiesClient relationship managementSecurity awareness programs+2

Assistant Manager - Cyber Security

Jun 2022Mar 2024 · 1 yr 9 mos

  • Working on Cyber Risk and Technology Risk Strategic planning. Specialist in developing and implementing SOC strategy, IT Information Security and Incident management, effective in leading consultative selling approach, architecting and implementing infrastructure security solutions for enterprise customers.
  • Parth is Energetic,visionary strategist in successfully delivering Information & Cyber Security services. Working heavily on Enterprise Security Risk, Technology Risk.
  • Working on Risk management, Data Protection,NIST Frameworks ,SANS Essentials and Major Global Cyber and Risk Frameworks.
  • Have set up numerous Practices, Services, and Operations like SOAR ,SOC and Defence Centres , Vulnerability Intelligence Setup with Cyber Security defense and Fusion centers, CIRT, Malware & Forensics analysis, Threat Hunting Programs.
  • A key contributor in Cyber Security Management level strategy to various enterprises to uplift cyber security posture and better respond to cyber attacks.
  • Adapt at leading enterprise-level functions such as Information Security, Business Continuity, IT Risk & Governance and Information Services, for large organizations across the broad spectrum of Insurance, Infrastructure and IT (Software & Services) domains. Design & deployment solutions in Information security as well as core IT domains.
  • Risk/ Cyber Transformation,
  • Cyber Program Management,
  • Governance Risk & Compliance,
  • Security Architecture Consulting
  • Next Gen Security Operations Center.
  • Cyber Threat Management
Cyber Risk ManagementSOC strategy developmentIncident managementConsultative sellingInfrastructure security solutionsCybersecurity+1

M.tech

2 roles

Senior Technical Advisor - Risk & Compliance

Nov 2021Jun 2022 · 7 mos

  • Adapt at leading enterprise-level functions such as Information Security, Business Continuity, IT Risk & Governance and Information Services, for large organizations across the broad spectrum of Insurance, Infrastructure and IT (Software & Services) domains
  • Hands-on experience in defining functional strategy and implementing objective-based information security program
  • Security operations (SOC) mgmt consisting of various security technologies & processes such as SIEM, DLP, CASB, DRM, VA/PT, AV, IPS/IDS, Firewalls, Application & Cloud Security, Exception Mgmt, Information Security Assessments & Audits
  • Design & deployment of solutions in Information security as well as core IT domains. Few notable examples include Single Digital Identity & Access Management System, Audit, Risk & Compliance Automation, Data Classification & Rights Mgmt across data life cycle, Site Resilient Enterprise Messaging Service, Unified Communication Platform, Cloud Migrations etc.
  • Specialized in the delivery of high-value-cross-functional projects such as org-wide implementation of ISO 27001/ 22301/ PCI-DSS standards, NIST and Data Privacy framework
  • Effective in defining and enforcing policies, controls, standards, and processes towards efficient IT and risk mgmt
  • Led successful compliance against regulatory requirements such as IRDAI Cyber Security Guidelines, IT Act
  • Cyber Liability assessment to obtain adequate Cyber Insurance cover against cyber crisis events
  • Creating robust IT & Security infrastructure; Skilled in streamlining operations, defining continuous process improvement and proven ability to bring the benefits of IT to solve business issues while managing cost & risks
  • Handling IT risk and InfoSec transition during merger and acquisition scenario
Information SecurityBusiness ContinuityIT Risk ManagementSecurity operations managementISO standards implementationCybersecurity+1

Senior Consultant

May 2019Nov 2021 · 2 yrs 6 mos

  • Developing and implementing strategy, IT Information Security and Incident management, effective in leading consultative selling approach, architecture and implementing infrastructure security solutions for enterprise customers.
  • Wide exposure in designing Infrastructure Security in the Services industries catering to customer requirements enables in delivering strong leadership, architecting and consulting skills to the Professional Services organization.
  • Enabling to help clients attain mature IT Security by Advisory and Consulting around Cyber Security, Threat Intelligence, Information Security governance, Network Security, ICS, IoT Security, Data Protection and Loss Prevention, Intelligent Security Operations, and security posture review across Various Industry Sectors. Catered to Broad range of Security consulting
  • Designing Infrastructure Security in the Services industries catering to customer requirements. Delivering strong leadership, architecting and consulting skills to the Professional Services organization. Meeting channels/customers to understand their current technical environment, key business issues/drivers, and future technology requirements Presentations and demonstrations for Cyber Security solutions. Pre-Sales Activity for entire Security Products Portfolio as well as Managed Security Services. Leading Team of SMEs. Support with technical qualification of sales opportunities. Support at external and internal customer facing events. Provide answers to (technical) questions in a Request for Information(RFI) or a Request for Proposal(RFP) Create internal product requests and POC implementation plans and monitor the approval process.Position and present the company products offerings
  • Compare the company products offering at a technical level with competitive products
  • Build technical relationship with prospects or existing customers
IT Information SecurityIncident managementCybersecurity consultingThreat intelligenceNetwork securityCybersecurity+1

Netpoleon solutions india

Senior Technical Consultant

Aug 2018May 2019 · 9 mos · Bangalore

  • Designing Infrastructure Security in the Services industries catering to customer requirements. Delivering strong leadership, architecting and consulting skills to the Professional Services organization. Meeting channels/customers to understand their current technical environment, key business issues/drivers, and future technology requirements Presentations and demonstrations for Cyber Security solutions. Pre-Sales Activity for entire Security Products Portfolio as well as Managed Security Services. Leading Team of SMEs. Support with technical qualification of sales opportunities. Support at external and internal customer facing events. Provide answers to (technical) questions in a Request for Information(RFI) or a Request for Proposal(RFP) Create internal product requests and POC implementation plans and monitor the approval process.Position and present the company products offerings
  • Compare the company products offering at a technical level with competitive products
  • Build technical relationship with prospects or existing customers
  • Assists with the qualification of the opportunities and/or identification of target accounts
  • Assists with the creation of a sales cycle plan; Assists customer, prospect and Sales Representative to build a compelling and competitive business case and ROI (Return of Investment)
  • Manages hand-over to the Services Functions (Post-Sales Support and Professional Services) for live project implementation
  • Working closely with customers on the technical requirements to provide technical solutions – Identifying requirements, including technical details sufficient for product definition.
  • Developing and establishing strong relationships with strategic clients and industry partners.
  • Presenting products to clients – Showcasing drivers and value that supports the business case for total cost of ownership to the customer.
Infrastructure SecurityPre-sales activitiesTechnical solutionsClient relationship managementCybersecurityRisk Management

Aforecybersec technology private limited

Cyber security consultant

Jun 2017Aug 2018 · 1 yr 2 mos · Bangalore

  • Developing and implementing SOC strategy, IT Information Security and Incident management, effective in leading consultative selling approach, architecture and implementing infrastructure security solutions for enterprise customers.
  • Wide exposure in designing Infrastructure Security in the Services industries catering to customer requirements enables in delivering strong leadership, architecting and consulting skills to the Professional Services organization.
  • Enabling to help clients attain mature IT Security by Advisory and Consulting around Cyber Security, Threat Intelligence, Information Security governance, Network Security, ICS, IoT Security, Data Protection and Loss Prevention, Intelligent Security Operations, and security posture review across Various Industry Sectors. Catered to Broad range of Security consulting
  • Responsible for suggesting the appropriate solution to the customer based on their queries or tenders
  • Maintain overall understanding of the security threat landscape to become advisor of senior executives as well as other key influencers and recommenders within large enterprise accounts
  • Facilitate Solution Planning workshops to help further discover, plan, and sell customer specific solutions
  • Proactively create and share best practices, customer metrics, and other collateral on tools and processes throughout the Sales, Pre-Sales and Delivery organization
  • Identifying business development opportunities, maintaining customer relationship and generating revenue, with experience in building Security Analytics practice, supporting Pre-sales, acquiring new clients and increasing business with major clients worldwide.
Infrastructure SecurityTechnical solutionsClient relationship managementPre-sales activitiesCybersecurityRisk Management

M.tech

2 roles

Senior Information Security Engineer

Promoted

Dec 2016Jun 2017 · 6 mos

  • Preparing tenders for clients
  • Preparing quotes for clients
  • Providing L3 Technical support to customers
  • Attending customer meeting to understand their pain areas and pitch appropriate solutions
  • Deliver Proof of Concepts (POC) for a set of Cyber Security Solutions
  • Responsible for suggesting the appropriate solution to the customer based on their queries or tenders
  • Responsible for handling solution deployments
  • Responsible for sending reports and performance report to the customer based on the demos
  • Meeting channels/customers to understand their current technical environment, key business issues/drivers, and future technology requirements.
  • Providing product updates and technical advice to clients – Explaining technical capabilities and business benefits of solutions to the customer from engineering level to senior executives.
  • Supporting presales activities - researching, creating and managing responses to RFPs/ RFIs/ RFQs.
  • Presenting products to clients – Showcasing drivers and value that supports the business case for total cost of ownership to the customer.
  • Designing multifaceted solutions using latest technologies in the field.
  • Initiating pre-sales activities, consulting services and products – Developing projects’ scopes (SOW, scope of work) and preparing proposals.
  • Performing competitive analyses
SOC strategy developmentIT Information SecurityIncident managementCybersecurity consultingCybersecurityRisk Management

Information Security Engineer

Jun 2015Nov 2016 · 1 yr 5 mos

Education

Defence Institute of Advanced Technology (DIAT), DU, DRDO

Certified Information Assurance Professional (CIAP) — Cyber Security

Feb 2021Jul 2021

NATIONAL INSTITUTE OF ELECTRONICS & INFORMATION TECHNOLOGY (NIELIT)

Cyber Security Tools

Jun 2021Aug 2021

National Law School of India University

post-graduate diploma in cyber law & cyber forensics (PGDCLCF) — cyber law & cyber forensics

Jan 2020Jan 2021

REVA University

M.Tech — Cyber Security

Jan 2018Jan 2021

CHARUSAT

B.Tech — Electrical Engineering

Jan 2011Jan 2015

Stackforce found 100+ more professionals with Cybersecurity & Risk Management

Explore similar profiles based on matching skills and experience