Ashish M.

Head of Cyber Security @ Confidential | Cyber Security Leadership | CISM | CISSP | OSWE | OSEE

Delhi, India

About

I am a Strategic Cyber Security professional with nearly 10 years of extensive experience in Application, Infrastructure, Cloud, and Cyber Security Operations Management. My expertise lies in leading Security Operations Centers (SOC) and managing vulnerability assessments to ensure robust protection for enterprise IT ecosystems. I am passionate about implementing innovative security solutions that safeguard organizational infrastructure and data, and I thrive in dynamic environments where I can leverage my skills in risk management and compliance. Throughout my career, I have designed and implemented security strategies across various domains, including Application Security, Network Security, and Cloud Security (AWS, Azure, Google Cloud). I have a proven track record of leading teams and projects, conducting comprehensive penetration testing, and ensuring compliance with global standards such as ISO 27001:2013 and PCI-DSS. My goal is to drive continuous improvement in organizational security posture while fostering a culture of security awareness. Key Achievements: - Secured multiple high-impact bug bounties across leading platforms, showcasing advanced vulnerability detection and ethical hacking expertise. - Successfully secured critical assets of Nuclear Power Corporation of India Limited (NPCIL) under the Responsible Vulnerability Disclosure Program. - Acknowledged by the National Technical Research Organization (NTRO) for contributions to securing India's critical infrastructure. - Featured in the Hall of Fame and Bug Bounty Achievements of numerous renowned organizations, including Apple, Intel, and Google.

Experience

  • Head of Cyber Security at Confidentia Global
    Jul 2023 - Present · 3 yrs

  • Information Security Manager at Confidential
    May 2022 - Dec 2023 · 1 yr 8 mos

    Application Security Architecture · Container Security · Risk Assessment · Vulnerability Assessment - Penetration Testing · DevSecOps · Application Security · Cloud Security · Infrastructure Security · Endpoint Security · Threat Intelligence

  • Senior Cyber Security Engineer at Confidential
    Dec 2021 - Aug 2022 · 9 mos

  • Confidential (Full-time · 2 yrs 2 mos)
    • Senior Information Security Engineer
      Jan 2021 - Oct 2021 · 10 mos

    • Sr. Developer
      Sep 2019 - Jan 2021 · 1 yr 5 mos

  • Network Security Administrator at Confidential
    Oct 2017 - Sep 2018 · 1 yr