About

Engineering first. Architecture second. In that order, deliberately.

I started in security operations at HCL — IAM policy administration, least privilege, secure baselines. Then Azure infrastructure and access governance at Accenture, and DevSecOps at Adobe, where security had to fit inside a delivery pipeline rather than sit beside it. Those years decide how I design now: a control that cannot be operated is not a control.

From July 2022 the work became architectural. As principal cloud security architect for Ahli United Bank I owned multi-cloud security architecture across Azure, AWS and GCP, the cloud security posture management programme, Zero Trust across identity, data and workloads, and product ownership for HSM and Microsoft Purview. That programme also covered cloud and AI/ML risk assessment — model governance and GenAI vendor evaluation for data protection, access control and compliance risk before enterprise adoption. Reference architectures were built to SABSA and TOGAF so the bank could show intent, not just configuration.

At International Turnkey Systems I lead cloud and AI security architecture — the Microsoft Defender estate, identity-first Zero Trust with Entra ID, and governance for enterprise LLM and agentic AI: securing GenAI and RAG deployments, prompt injection and adversarial ML defences, AI copilot governance, and security controls embedded in vendor onboarding and procurement. I authored the bank's Emerging Technology and AI Security Standard, aligned to NIST AI RMF and ISO/IEC 42001, as the baseline for its enterprise AI rollout.

I hold CISM, ISC2 CC, CCSK and the Microsoft Azure security and DevOps certifications, and an M.Tech in Data Science from BITS Pilani with a specialisation in neural networks — which is why AI risk reads to me as an engineering problem rather than a headline.

Education

  • 2019 — 2022
    M.Tech, Data Science
    BITS Pilani · Specialization: Neural Networks
  • 2011 — 2015
    B.Tech, Computer Science
    Meerut Institute of Technology

Frameworks I work in

SABSA · TOGAF · NIST CSF · ISO/IEC 27001 · CIS Controls · Zero Trust