Please give us some details about the role you want to fill and let us know why you think our client might be the perfect candidate for you.
What happens next?
Our Job Search Specialist Mark Beltran will facilitate the next steps:
Mark will let our client know that you have shown an interest in their professional skills.
You will receive a full job application from our client and might want to offer them a formal job interview if you see the right potential in this candidate.
If you decide that you would like to offer the role to our client, we will help to make the next steps as smooth as possible.
You will be supported by our Licensed Immigration Advisers, who will take care of all visa related aspects of the process of offering our client a job.
Offering a job to our client will be straight forward.
CISSP-certified cybersecurity professional with 17 years of experience in investment banking and enterprise consulting. Specialise in security architecture, threat modelling, and building high-performing consulting teams. Proven track record leading security reviews across 1,000+ initiatives, including greenfield deployments. Currently advising on AI security risks and secure-by-design principles.
KEY SKILLS
• Threat Modelling (STRIDE)
• Technical Security Risk Assessment
• Secure by Design
• Security Architecture
• Team Leadership & Mentoring
• Stakeholder Advisory (CTO/CISO)
Security & Risk Frameworks: Threat modelling, technical risk assessment, secure by design, NIST CSF, NIST AI RMF
Cloud & Infrastructure: AWS (EC2, S3, KMS, ElastiCache, Security Groups/NACLs), Kubernetes, Docker
Network & Application Security: Network segmentation, DMZ, SIP-TLS, IPSec VPNs, OWASP Top 10 (API & LLM), CORS, SOP, CSP
AI / LLM Security: MCP (Model Context Protocol), RAG, Agentic AI, OWASP Top 10 for AI/LLM
Investment Banking Systems: FIX gateways, Solace Pub-Sub, IBM MQ
Tools: Veracode, SonarQube, Jira, Confluence
Vice President – Lead Security Consultant — Barclays Bank PLC, India
February 2025 – Present
Lead a team of 6 security consultants delivering architecture reviews across 1,000+ change initiatives. Spearheaded a greenfield data centre security programme in the Middle East. Built the consulting team from 1 to 7 members, establishing hiring criteria and mentoring frameworks.
• Authored a geopolitical cyber risk assessment informing senior leadership decisions on PRC operations exposure (published internally)
• Led an investigation of branch office security across APAC, identifying and driving remediation of nation-state threat vectors
• Authored the Product Owner Guide on elevated security control requirements for targeted third-party solutions
Assistant Vice President – Security Consultant — Barclays Bank PLC, India
June 2023 – February 2025
Advised the CTO and CISO on cyber threat evolution. Developed STRIDE-based threat models driving architectural decisions. Delivered cybersecurity awareness training to Markets teams across APAC, and launched the EAPAC Security Clinic for dedicated consultation.
• Produced threat models that directly influenced key architectural decisions and risk mitigation strategies
• Increased threat literacy across front-office and technology teams through targeted awareness sessions
Senior Advisory Consultant — IBM (client: Barclays), India
September 2021 – June 2023
Embedded threat modelling into the SDLC with Application Architecture teams. Completed 600+ security assessments over two years. Contributed to pre-sales activities and proposal development.
Advisory Consultant — IBM (client: Nationwide Building Society), UK/India
February 2017 – August 2021
Led a 3-member security engineering team. Identified, assessed and mitigated security risks across client environments. Conducted technical interviews strengthening the talent pipeline.
Senior Security Consultant — Adecco (client: ABB), India
November 2015 – February 2017
Advised Product Owners on the cybersecurity posture of 10 critical applications. Recognised by the CISO for remediating Crown Jewel findings.
IT Analyst — Tata Consultancy Services, India
June 2012 – November 2014
Represented TCS at an industry cybersecurity conference, delivering a presentation on VoIP security. Led a network penetration testing engagement.
Systems Engineer — Tata Consultancy Services, India
March 2010 – June 2012
Led a 22-engineer team to achieve CY 2011–2012 quality assurance targets on schedule.
Software Engineer — Alcatel-Lucent R&D, India
October 2008 – March 2010
Performed quality assurance for Alcatel-Lucent's enterprise IP PBX platform.
• MBA – Strategy & Marketing, IIM Bangalore — 2023
• B.Eng. Electrical & Electronics, Anna University — 2008
• SANS SEC 411 – AI Security Principles and Practices: GenAI and LLM Defense (in progress)
• CISSP (#556611)
• ISO 27001 Lead Auditor
• ISO 27001 Lead Implementer
• CCNA
• CEH
Trekking/Hiking | Reading Books | Cycling
REFERENCES Available upon request.