Summary
Overview
Work History
Education
Skills
Certification
Accomplishments
Skills
Timeline
Generic
Mayank Sahu

Mayank Sahu

Lead Security Consultant
Brentwood

Summary

Security professional prepared for role, bringing extensive experience in conducting thorough security assessments and implementing protective measures. Known for collaborative efforts and consistently achieving results, adapting to evolving security needs. Skilled in risk management, incident response, and maintaining high standards of operational security.

Overview

11
11
years of professional experience
3
3
Certifications

Work History

Lead Security Consultant

SecureIT
09.2019 - Current
  • Lead & Execute web Network and mobile app pentests to expose vulnerabilities, enhancing security with innovative solutions
  • Engage customers to recommend and guide best practices and approach to implement and review Security controls based on different frameworks Like NIST/ISO/PCI
  • Conduct comprehensive network assessments, improving infrastructure resilience
  • Engage with customer to implement best development practices
  • Perform Cloud Security Assessment to
  • Execute red team simulations, strengthening defences against advanced threats
  • Led strategic security initiatives, enhancing client protection
  • Mentored team, elevating overall expertise
  • Prepared and Reviewed Security Assessment Reports before final delivery

Information Security Analyst

Travelex
08.2017 - 09.2019
  • Managed and executed Web Mobile and Network projects, enhancing network and application security
  • Led annual Red Team assessments, identifying critical vulnerabilities
  • Worked with compliance team to implement
  • Implemented secure coding practices, improving software integrity
  • Developed security safeguards, ensuring compliance across teams
  • Conducted thorough security assessments, identifying vulnerabilities and implementing robust solutions to fortify Travelex's digital infrastructure
  • Spearheaded implementation of advanced threat detection systems, significantly reducing potential security breaches and enhancing overall data protection
  • Partnered with cross-functional teams to develop and enforce comprehensive security policies, ensuring compliance across all organizational levels

Security Consultant

ControlCase
05.2014 - 08.2017
  • Led VAPT projects, enhancing security for client Networks and Applications
  • Delivered tailored technical solutions, improving client satisfaction
  • Investigated processes, aiding PCI qualification and compliance
  • Managed global client relationships, ensuring audit readiness
  • Oversaw security assessments, achieving measurable improvements
  • Led comprehensive VAPT projects, encompassing network, web, and mobile applications
  • Delivered technical proposals and managed global client relationships
  • Spearheaded PCI qualification efforts, investigating client processes and ensuring compliance
  • Conducted onsite security assessments across multiple locations
  • Served as subject matter expert, coordinating audit requests and maintaining contractual compliance
  • Oversaw diverse projects including threat modeling and code reviews

Education

MS - Information Security

National Law Institute University

BE - Computer Science Engineering

Rajeev Gandhi technological University

Skills

  • Application & Network Security
  • Product Security Development and Practices Review
  • Network Security Review
  • Security Assessments & Vulnerability Management

  • Security Architecture & Threat Modelling
  • AI/LLM Security
  • Cloud Security
  • Security automation

Certification

OFFENSIVE SECURITY CERTIFIED PROFESSIONAL

Accomplishments

  • Published Security vulnerability a CVE 2017-11727
  • Published Security vulnerability a CVE 2015-6540
  • Automated Client Reporting for Security assessments in ControlCase 2016
  • Published Vulnerability Management Framework in OWASP 2025 Approved In progress
  • Presented in Supply Chain Issues in Crest Con Europe 2024 https://www.youtube.com/watch?v=V3rdQVK1WA4

Skills

  • Build Security Assessment Services for Organization
  • Product Security development and practices Review
  • Employee Security training program & Security Culture development
  • Application & Network Security: WAPT/ Network pentest
  • Vulnerability Management [prioritization & OCRC], Security Assessments
  • Architecture Modelling
  • AI Security: LLM scan & top 10
  • Cloud Security
  • Product Security Practices
  • Security automation using Python & Golang

Timeline

Lead Security Consultant

SecureIT
09.2019 - Current

Information Security Analyst

Travelex
08.2017 - 09.2019

Security Consultant

ControlCase
05.2014 - 08.2017

BE - Computer Science Engineering

Rajeev Gandhi technological University

MS - Information Security

National Law Institute University
Mayank SahuLead Security Consultant