Cybersecurity • CTEM • Exposure Management

Turn technical exposure into business action.

Cybersecurity leader with 13+ years across Vulnerability Management, Continuous Threat Exposure Management (CTEM), application security, security testing, and security program delivery. Experienced in enterprise-scale exposure management across on-premises, cloud, and hybrid environments, with visibility across 60K+ global assets. Strong across CTEM lifecycle execution, risk-based prioritization, remediation mobilization, continuous monitoring, GRC and executive reporting.

13+ YearsExperience
60K+ AssetsEnterprise visibility
5-StageCTEM lifecycle
Best Performer ×3Recognition
01 / DISCOVER

Attack Surface Visibility

Continuous asset and exposure visibility across on-prem, cloud and hybrid estates.

02 / PRIORITIZE

Risk-based Decisioning

CVSS, exploitability, threat intelligence, MITRE ATT&CK and business criticality.

03 / MOBILIZE

Remediation Governance

SLA-driven coordination with infrastructure, applications, patching and compliance teams.

Profile

Cybersecurity leadership with an operator mindset.

I combine enterprise vulnerability operations, exposure analysis, security testing, GRC coordination and executive reporting to help teams reduce meaningful cyber risk—not just close tickets.

Leadership snapshot
Global stakeholder managementProgram & governanceExecutive dashboardsAudit readinessRisk registerOnsite / offshore delivery
Continuous Threat Exposure Management

A five-stage operating model.

The portfolio is designed around the CTEM lifecycle used in the current resume: discover, validate, prioritize, mobilize and monitor.

01

Discover

Maintain continuous visibility of assets, attack surfaces and exposure.

02

Validate

Run targeted scans and manually validate findings to reduce false positives.

03

Prioritize

Correlate CVSS, exploitability, threat intel, MITRE ATT&CK and business criticality.

04

Mobilize

Drive SLA-based remediation with infrastructure, application and patching owners.

05

Monitor

Track risk trends, remediation progress, exposure reduction and executive metrics.

Career

Selected experience.

Manager — Capgemini

Feb 2022 — Present · Global CTEM / Vulnerability Management
  • Lead enterprise-wide vulnerability and exposure management across 60K+ global assets spanning on-prem, cloud and hybrid environments.
  • Own the CTEM lifecycle and risk-based prioritization using CVSS, exploitability, threat intelligence, MITRE ATT&CK and business criticality.
  • Design and execute customized assessments with Qualys VMDR, Tenable Nessus, Rapid7 InsightVM and Microsoft Defender.
  • Coordinate remediation with infrastructure, applications, patching and compliance stakeholders and provide executive dashboards in Power BI and Excel.
  • Support risk registers, policy updates and ISO 27001-aligned audit readiness while acting as a primary client and leadership interface.

Senior Associate — Cognizant

Dec 2020 — Feb 2022 · Application Security & Vulnerability
  • Performed web application assessments aligned with OWASP Top 10 using Rapid7 and Burp Suite.
  • Ran corporate and production vulnerability scans, supported remediation tracking and risk discussions, and performed basic network penetration testing.
  • Managed a 5-member team with onsite/offshore coordination, daily reporting and issue/risk escalation.

Senior Software Quality Assurance Engineer — Bioclinica

Nov 2016 — Oct 2020 · Application Security & Secure SDLC
  • Performed application security checks during QA audits with Burp Suite and Nessus and supported vulnerability identification, validation, remediation verification and regression testing.
  • Managed a 5-member team and coordinated customer, onsite/offshore and audit stakeholders; strengthened secure SDLC practices.
Toolbox

Security capabilities & platforms.

Qualys VMDRTenable NessusRapid7 InsightVMMicrosoft DefenderDefender for CloudBurp SuiteCVSSMITRE ATT&CKThreat IntelligenceRisk-Based PrioritizationExposure ManagementSecurity HardeningPower BIAdvanced ExcelISO 27001GRC / Risk RegisterAudit ReadinessRemediation GovernanceStakeholder ManagementAgile / ITIL
Recruiter contact

Let’s talk about exposure management.

Open to senior opportunities across CTEM, Vulnerability Management, Threat & Exposure Management, RBVM and Cybersecurity Risk.