Cyber Security Operator
~/profile/anurag :: live
Security engineering that turns risk into evidence, action, and resilience.
I help teams test what matters, contain what breaks, and harden what must stay online, with clear reporting and automation that turns fixes into repeatable controls.
anurag@secops:~
$ whoami
security-engineer / incident-responder / automation-builder$ load_capabilities --priority critical
- Penetration testing and vulnerability assessment
- Incident response, forensics, and malware triage
- ISO 27001, Essential Eight, PCI-DSS, NIST alignment
- Python, Bash, PowerShell, Docker, cloud hardening
signal: trusted | posture: hardened | noise: filtered
-
SecOps
Banking security operations, SIEM tuning, threat intelligence, and Tier II incident reporting.
-
Hall of Fame
Recognized in Microsoft's security acknowledgement program for responsibly reporting a flaw.
-
Governance
Led Essential Eight and ISO 27001-aligned security programs as Head of Security in Melbourne.
I'm a Security Engineer with over 8 years of experience across penetration testing, incident response, digital forensics, environment hardening, automation, and compliance. I like work that is technical, evidence-led, and practical: find the risk, prove it clearly, fix it cleanly, then make the fix repeatable.
My background spans banking security operations, managed security leadership, freelance incident recovery, application testing, server hardening, and governance programs including PCI-DSS and ISO 27001. I hold certifications across ethical hacking, penetration testing, appsec, malware analysis, and cybersecurity operations, and I bring that mix of offensive thinking and defensive discipline into every engagement.
Core operations
-
Offensive Security
Penetration testing, vulnerability assessment, exploit validation, and clear reporting that helps teams prioritize the fixes that actually reduce risk.
-
Hardening & Automation
Server deployment, containerized workloads, backup workflows, and repeatable security automation with Python, Bash, PowerShell, Docker, and cloud platforms.
-
Governance & Compliance
Practical alignment with ISO 27001, NIST, Essential Eight, COBIT, and PCI-DSS so policy, controls, evidence, and operations stay connected.
-
Incident Response & Forensics
Calm containment, forensic analysis, malware triage, log review, and recovery guidance when the situation is noisy and the evidence needs to be precise.
client signal
Testimonials