Atul N.

CLOUD SECURITY | CYBER SECURITY | AI AUGMENTED DEFENSES| 17+ years INFOSEC Experience

Mexico

About

★19 years of experience in cybersecurity and IT, with 17+ years specializing in Threat Intelligence, Vulnerability Management, Cloud Security, Incident Response, SOC operations and Governance, Risk & Compliance (GRC). ★Proven expertise in Identity & Access Management (IAM, PAM, IGA) and cloud-native security (CNAPP, DevSecOps, Kubernetes, CI/CD pipeline protection), addressing enterprise-scale risks. ★Bilingual (English/Spanish) with global consulting experience across regulated sectors including finance, government,travel, healthcare, and telecom. ★Adaptable to dynamic environments with strong leadership, team management, decision-making, analytical, and communication skills ★Led cross-functional cybersecurity teams across Mexico, India and US, driving unified security strategy, operations, and compliance while managing a diverse cultural and regulatory landscape. ★★ Looking for a new challenge where I can create business value through technology solutions and drive sustainable transformation ★★

Experience

  • IICYBERSECURITY (10 yrs 11 mos)
    • Cyber Security Lead
      Nov 2018 - Present · 7 yrs 9 mos

      ♦ Lead Azure cloud security programs, enhancing IAM, app protection & regulatory compliance. ♦ Direct AWS cloud security team, covering Governance/IAM, threat detection, network/app defense, data protection & incident response. ♦ Lead Google Cloud security engagements in identity, monitoring & governance controls. ♦ Manage ransomware incident management & negotiations. ♦ Directed AI-driven security programs, embedding transformer models (BERT, GPT, CyberBERT), cloud AI services (Azure OpenAI, Azure ML, AWS SageMaker, Google Vertex AI).Advanced threat detection, telemetry clustering, GenAI-enabled IR chatbots, & vulnerability prioritization using LLM-based summarization. ♦ Direct adversarial simulations & purple-team exercises. ♦ Lead audits, preparing evidence, addressing findings for compliance with ISO 27001, NIST, PCI DSS, SOC 2 & GDPR. ♦ Deliver Zero Trust principle, privileged access control, log standardization, SIEM-SOAR, secure code review, dynamic application testing projects, business continuity & disaster recovery exercises. ♦ Coordinate digital surveillance platforms & cyber warfare solutions. Technical Tools & Platforms ♦ Cloud Security: Rapid7 Insightcloudsec, Crowdstrike,Orca,Wiz, Cloud Security Posture Management (CSPM), Proofpoint App Security Broker CASB, Checkpoint CloudGuard, FireEye Cloudvisory, Microsoft Defender, Prisma Cloud ♦ AWS, Azure GCP, Linode, IaaS, PaaS, SaaS ♦ Threat Intelligence Platforms (TIP):ThreatConnect, Anomali ThreatStream, EclecticIQ Intelligence Center, ThreatQuotient ThreatQ, Falcon ♦ BOT Protection:Perimterx Bot Code Defender ♦ Identity, Zero Trust & PAM:CyberArk (PAM, EPM), Okta Identity Cloud, Ping Identity, SailPoint IdentityNow, Azure AD (Entra ID), Cisco ISE, SecureLink Enterprise Access, Cloudflare zero trust, Zscaler ♦ OT/ ICS Security(Industrial):Claroty, Tenable.ot, Dragos ♦SIEM-SOAR,EDR-XDR: IBM, Broadcom, Splunk, DataDog, Imperva, Paloalto, Sentinel ,Logscale, Chronical Security,Darktrace.

    • INCIDENT RESPONSE LEAD
      Sep 2015 - Oct 2018 · 3 yrs 2 mos

      ♦ Developed threat intelligence and detection tools to identify, respond to, and prevent APT attacks. ♦ Defined strategies for implementing SIEM, DLP, MITRE ATT&CK framework, and incident response workflows. ♦ Conducted cyber forensic investigations, supporting legal proceedings and collaborating with fraud teams, law enforcement, and regulatory agencies. ♦ Delivered corporate training programs on ethical hacking, forensics, cybersecurity awareness, and malware analysis. ♦ Performed threat hunting, malware reverse engineering, and offensive security assessments to proactively detect and mitigate threats ♦ Directed security intelligence and risk management initiatives, deploying solutions such as EDR, XDR, MDR, DDoS mitigation, NGFW, WAF/WAAP, IAM, Zero Trust, SIEM, and SOAR. ♦ Implemented intrusion prevention systems (NIPS, HIPS, WIPS) across network, host, and wireless layers. ♦ Conducted web application security testing and threat assessments using frameworks such as OWASP. Technical Tools & Platforms ♦SIEM - SOAR :IBM Q radar, Rapid7 Insightconnect, Crowdstrike Falcon, Splunk Enterprise Security SIEM, SOAR phantom,DataDog, Imperva Sonar, Fireeye Helix, Paloalto Cortex XSOAR, Microsoft Sentinel, Elastic Security, Logscale, FortiSIEM, Google Chronical Security ♦EDR / XDR / Endpoint Security :VmWare Carbon Black, Rapid7 Insightidr, Falcon Complete, Symantec endpoint security(SEP) - DLP, DARKTRACE Enterprise Immune System, Proofpoint Advanced Threat Protection, Check Point Harmony, Mcafee Mvision, Paloalto Cortex XDR, Kaspersky EDR XDR, Fireye XDR, SentinelOne, Microsoft Defender, Symantec Endpoint Security (Broadcom), Trend Micro Vision One ♦Digital Forensics:Crowdstrike Falcon Forensics, Paloalto Cortex XDR, Autopsy/SleuthKit, FTK imager, Volatility, CAINE, Cellebrite, Belkasoft X ♦Email Security & DLP: Proofpoint Email Security, Mimecast, Microsoft Defender for Office 365,Symantec (Broadcom) DLP, Forcepoint DLP, Microsoft Purview Information Protection & DLP

  • Cyber Security Architect at WebImprints
    Aug 2013 - Sep 2015 · 2 yrs 2 mos

    ♦ Architected and delivered enterprise-wide cybersecurity training programs covering data protection, threat management, malware reverse engineering, digital forensics, and ethical hacking. ♦ Designed and integrated security solutions such as firewall clusters, DLP systems, and resilient IT infrastructure for data centers, disaster recovery sites, and SMB environments. ♦ Developed and enforced security architectures and controls aligned with compliance frameworks, supporting regulatory audits and industry best practices. ♦ Defined and documented enterprise-wide information security, disaster recovery, and business continuity architectures to ensure data confidentiality, integrity, and availability. ♦ Researched and assessed emerging vulnerabilities, exploits, and penetration techniques, translating findings into defensive architectures and mitigation strategies. ♦ Performed penetration testing and vulnerability management with industry-leading tools. ♦ Established and operationalized client security awareness architectures, including phishing simulation platforms and structured training programs, to embed security culture across organizations. Technical Tools & Platforms ♦ Firewall- NGFW - IDS -IPS- Networking - WAF - DDOS: Checkpoint Quantum , Imperva Web Application and API Protection (WAAP), F5 BIG-IP Access Policy Manager, Advanced Web Application Firewall (WAF), Palo Alto Networks (PA Series, VM Series, Prisma Access), Fortinet FortiGate, Cisco Firepower, Cloudflare, Sucuri WAF, F5 DDoS Hybrid Defender, Kaspersky DDoS Mitigation ♦ Vulnerability Management & AppSec:Wireshark, Metasploit, Ollydbg, Hping, Win Hex, Rapid7 InsightvM, Nikto2, OpenVAS, Nmap, OpenSCAP, WebScarab, Zed Attack Proxy ZAP, Android Debug Bridge (adb),Qualys VMDR, Rapid7 Nexpose, Rapid7 Insightappsec, Nessus, Tenable.io, Tenable.sc, Tenable.ad,Tenable.ot, Veracode, Checkmarx, SonarQube, Burp Suite Pro, OWASP ZAP, Acunetix, Netsparker, Prisma Cloud, Aqua Security, Sysdig Secure, Falco

  • Consultant & Senior Software Engineer at Accenture
    Aug 2010 - Aug 2013 · 3 yrs 1 mo

    ♦ Analyzed client business requirements and aligned technology solutions by evaluating and selecting appropriate platforms, including information security methodologies and web application frameworks, for legacy system migrations. ♦ Implemented governance and security processes across application development, data warehousing, BI, and financial CRM, ensuring compliance with regional IT security policies. ♦ Applied Scrum,STLC (Software testing life cycle), and ITIL (Information Technology Infrastructure Library) practices to manage delivery, improve service quality, and align with client maturity levels. ♦ Configured, tested, and deployed Callidus Sales Performance Management (SPM) / Incentive Compensation systems for Telcel and América Móvil. ♦ Authored SOPs, technical documentation, and security testing protocols, while delivering training to project staff to embed client policies and best practices. ♦ Conducted IT risk analyses and supported incident response/service delivery, ensuring effective handling of security incidents and knowledge transfer.

  • Consultant withn Hexaware Technologies at Unisys
    Jul 2008 - Aug 2010 · 2 yrs 2 mos

    ♦ Implementation of automated sales commission management system, data warehousing, business intelligence & cyber security projects. ♦ Implementation of Callidus Sales Performance Management/Sales Compensation/ Incentive Compensation systems for Unisys. ♦ Oracle, SQL, MYSQL database management and migration.

  • Analyst & Software Engineer at Hexaware Technologies
    Jun 2006 - Aug 2010 · 4 yrs 3 mos

    ♦ Software Development using C,C++,Java, .Net, PHP, Python, Microprocessor Programming, DB2 ♦ Worked as a consultant for clients on cyber security testing, IT audit and software testing projects. Managed end to end transition and delivery, from technical perspective along with coordinating response to the client’s team. ♦ Mentor and educate new team members and stakeholders with regard to the project’s technological vision, opportunities, and challenges. ♦ Programmed Departure and Reservation system for Air Canada. ♦ Performed integration testing with codeshare and star alliance partners. ♦ Managed mainframe system and data migrations of legacy systems for Northern Trust.