Rahul Kumar

Technical Program Manager

Bengaluru, Karnataka, India8 yrs 11 mos experience
Highly StableAI Enabled

Key Highlights

  • Expert in risk management and compliance frameworks.
  • Proven track record in leading security assurance engagements.
  • Skilled in vendor risk management and security audits.
Stackforce AI infers this person is a Cyber Security expert with extensive experience in compliance and risk management across various industries.

Contact

Skills

Core Skills

Risk ManagementCompliance ManagementRisk AssessmentVendor Risk ManagementSecurity Management

Other Skills

ISO 27001SOC 2NIST CSFAI governanceGRC program enhancementsrisk assessmentsbusiness continuity planningvendor security programTPRMrisk auditssecurity strategycompliance frameworksNIST 800-53Security ControlsRisk Reporting

About

Experienced offensive security and security testing program manager. Threat hunter, Intel researcher. Experienced Analyst with a demonstrated history of working in the information security industry. Skilled in IT Risk Management, Information security, vendor isk management, DLP, BCP, Cloud security, Governance risk and compliance, IT audit, ISO 27001. Strong business development professional with a Bachelor's degree focused in Information Security.

Experience

8 yrs 11 mos
Total Experience
2 yrs
Average Tenure
11 mos
Current Experience

Confluent

Trust And Assurance Program Manager

May 2025Present · 11 mos

  • ​ Lead customer trust and security assurance engagements; negotiate security contractual terms leveraging deep knowledge of ISO 27001, SOC 2 Type II, and NIST CSF compliance frameworks.
  • ​ Design and implement AI governance controls and compliance frameworks aligned to emerging AI risk standards, serving as the organization's internal SME on AI security and regulatory compliance.
  • ​ Develop points-of-view (POVs) on emerging regulations and cloud risk posture; advise internal stakeholders on GRC program enhancements and security policy development.
  • ​ Scale internal risk management programs to reduce friction in security reviews; partner with Sales, Legal, and Engineering to align product roadmap with external IT compliance mandates.
  • ​ Enable field staff and GTM teams by coaching on security posture communication, Threat Intel capabilities, and third-party risk management strategies to accelerate deal cycles.
  • ​ Serve as pre-sales security advisor responding to RFPs, RFIs, and customer security questionnaires; reduce time-to-close by providing accurate, audit-ready security documentation.
ISO 27001SOC 2NIST CSFAI governanceGRC program enhancementsRisk Management+1

Google

Security Engineer

Jul 2021May 2025 · 3 yrs 10 mos

  • ​ Managed end-to-end compliance lifecycle for customer audits, SOC processes, and certifications across Google Cloud Services (ISO 27001, SOC 2, CREST, ISMAP), ensuring zero audit findings.
  • ​ Conducted enterprise-wide risk assessments across Google Cloud Providers; developed risk treatment plans and mapped controls to CSA CCM, NIST CSF, and ISO 27001/27002 frameworks.
  • ​ Served as strategic OT/ICS cybersecurity consultant advising enterprise clients on security posture improvements, NIS2, and CAF regulatory compliance programs.
  • ​ Successfully handled high-profile customer IT audits including SEBI Cloud Adaptation Framework, Bank of America, Saudi Aramco, K-FSI, Taiwan Bank, and TruSight assessments.
  • ​ Led business continuity planning (BCP) and disaster recovery (DR) exercises ensuring ISO 22301 compliance across critical product lines.
  • ​ Developed and delivered monthly and quarterly compliance KPI reports to senior stakeholders; collaborated with Legal, IT, and product teams on data privacy policy implementation.
  • ​ Validated internal security controls (design and operational effectiveness) across Information Security Management Systems (ISMS) to ensure continuous regulatory compliance.
ISO 27001SOC 2NIST CSFrisk assessmentsbusiness continuity planningCompliance Management+1

Mandiant, inc.

Compliance Engineer

Jun 2020Jul 2021 · 1 yr 1 mo

  • ​ Designed and implemented a technology-first vendor security program using Mandiant, Veracode, and Snyk platforms to assess and mitigate vendor ecosystem risks at scale.
  • ​ Managed end-to-end vendor information security risk management (TPRM) including onboarding, ongoing monitoring, and offboarding risk processes.
  • ​ Conducted comprehensive risk and security audits across diverse IT domains; managed end-to-end customer audits and regulatory audits.
  • ​ Established and maintained ISO 27001-aligned Information Security Management Systems (ISMS), Quality Management Systems (QMS), and Learning Management Systems.
  • ​ Contributed to SOC operations, threat intelligence programs, and security consulting engagements as part of cross-functional security initiatives.
vendor security programTPRMISO 27001risk auditsVendor Risk ManagementCompliance Management

Alpha serve

Compliance Associate

Sep 2019Jun 2020 · 9 mos

  • ​ Delivered full-spectrum virtual CISO (vCISO) services to SME clients: security strategy, risk management, security architecture design, incident response planning, compliance, and policy development.
  • ​ Implemented information security governance frameworks and vulnerability management programs tailored to client risk profiles and regulatory requirements.
  • ​ Performed vendor risk assessments and security training programs; authored information security policies and procedures aligned to ISO 27001 and industry best practices.
security strategyrisk managementcompliance frameworksSecurity ManagementRisk Management

Ey

Information Security Analyst

May 2017Sep 2019 · 2 yrs 4 mos · Bengaluru, Karnataka, India

NIST 800-53Security Controls

Education

B. M. S. College of Engineering

Bachelor's degree — Information Technology

Jan 2013Jan 2017

Birla Institute of Technology and Science, Pilani

M.Tech — cyber security

Jan 2020Jan 2022

BITS-PILANI

Master of Technology

B. M. S. College of Engineering

Master of Information Systems

Stackforce found 100+ more professionals with Risk Management & Compliance Management

Explore similar profiles based on matching skills and experience