Keyur Dasarwar
Lead - Security & Compliance @ EnKash
About
🔒 Security Compliance Analyst | Cybersecurity Enthusiast | Risk Mitigation Strategist 🔐 🌐 About Me: Passionate about fortifying digital landscapes, I am a dedicated Security Compliance Analyst with a proven track record in ensuring robust cybersecurity frameworks. My expertise lies in navigating the ever-evolving threat landscape and implementing comprehensive strategies to safeguard sensitive information. 💼 Professional Experience: In my role as a Security Compliance Analyst, I've successfully designed, implemented, and managed security controls to ensure compliance with industry regulations and standards. My hands-on experience in conducting risk assessments, vulnerability assessments, and security audits has equipped me with a keen eye for identifying potential threats and vulnerabilities. 🚀 Key Skills: 🔐 Security Compliance & Auditing 🌐 Regulatory Compliance (e.g., PCI DSS, SOC 2, PPI, PAPG, ISO 27001) 🚨 Risk Management & Mitigation 🛡️ Security Controls Implementation 💻 Cybersecurity Policies & Procedures 📊 Security Awareness Training 🔬 Technical Proficiency: I possess a deep understanding of cybersecurity technologies, including but not limited to firewalls, intrusion detection/prevention systems, encryption, and security information and event management (SIEM) solutions. My ability to stay abreast of emerging technologies ensures that my approach to security compliance is both innovative and effective. 📈 Achievements: I take pride in driving successful compliance initiatives that not only meet regulatory requirements but also enhance overall security posture. Through collaborative efforts, I've played a pivotal role in achieving and maintaining compliance certifications, contributing to the establishment of a resilient security environment. 🤝 Collaborative Approach: I thrive in collaborative environments and am skilled in fostering cross-functional relationships. My communication skills extend beyond technical jargon, allowing me to effectively convey the importance of security compliance to diverse stakeholders. I believe that cybersecurity is a collective responsibility, and I am committed to building a security-conscious culture within organizations. 📚 Continuous Learning: The world of cybersecurity is dynamic, and I am dedicated to staying at the forefront of industry trends. I actively engage in continuous learning, certifications, and industry forums to ensure that my knowledge remains current and applicable to the evolving threat landscape.
India
Pune District
Financial Services
Cybersecurity, Information Security, Penetration Testing, Business Continuity, Disaster Recovery, Incident Response, Security Incident Response, Cybersecurity Incident Response, Access Control, Network Security, Security Operations, IT Security Operations, Security Operations Center, Internal Audits, IT Audit, Payment Card Industry Data Security Standard (PCI DSS), SOC 2, EDR, Python (Programming Language), IT Systems & Application Security
Experience

Senior Security Analyst
Pune, Maharashtra, India
▪️ Standards Implementation: Implementation of PCI DSS, and SOC2 standards, ensuring the organization's compliance with industry-leading security protocols. ▪️ Audit Management: Led and closed various audits for renowned firms such as Deloitte, Axis, AU, and Kotak. ▪️ Data Protection: Conducted Secure code reviews, Data purging activities, and Data localization (SAR) audits, to enhance data protection practices. ▪️ Policy Implementation: Implemented Information Security and Management System (ISMS) policies, along with password management policies, etc. ▪️ Risk Assessment: Conducted risk assessments, identifying potential threats and vulnerabilities, and implementing measures to mitigate risks effectively.

Security Analyst
Pune, Maharashtra, India
▪️ Patch Management: Executed monthly patch management activities. ▪️ Internal Audits: Led internal security audits covering both physical and technical aspects. ▪️ Physical Security Assessment: Conducted physical security assessments for all EnKash offices, identifying and mitigating potential vulnerabilities to enhance security measures. ▪️ Wi-Fi Security: Conducted Wi-Fi security assessments for EnKash offices, identifying and mitigating risks to ensure secure and reliable network connectivity. ▪️ Firewall Audit: Produced detailed firewall internal audit reports, contributing to the improvement of network security measures. ▪️ Email Security: Conducted email security assessments, and implemented SPF, DMARC, and DKIM records, along with antiphishing tools. ▪️ EDR Implementation: Implemented Sophos AV and EDR software. ▪️ Vulnerability Assessments: Conducted internal vulnerability assessments for web applications. ▪️ Cloud Security: Configured and submitted evidence for AWS IAM in various audits such as PCI DSS, SAR, PAPG, etc.. ▪️ PII Data Encryption: Implemented PII data encryption activities by reviewing production databases. ▪️ Security Awareness: Shared weekly InfoSec Tips with all office employees, promoting best practices in information security.

Cyber Security Associate
Bengaluru, Karnataka, India
▪️ Developed and implemented strategies for prioritizing and addressing identified vulnerabilities. ▪️ Played a key role in executing secure Active Directory projects for efficient user account management. ▪️ Proactively stayed updated on emerging cybersecurity threats and trends. ▪️ Contributed to the development of security policies and guidelines. ▪️ Conducted engaging bug bounty and cybersecurity training sessions for a team of 20+ members. ▪️ Conducted training sessions to enhance understanding of bug bounty hunting. ▪️ Received positive feedback for enhancing team members' knowledge and skills in bug hunting and cybersecurity practices. ▪️ Identified and addressed critical vulnerabilities using web security principles and OWASP Top 10. ▪️ Received official acknowledgment for enhancing the website's security posture.

Cyber Security Intern
Bangalore, Karnataka, India
▪️ Completed intensive cybersecurity internship program covering cloud security, web app security, threat intelligence, phishing analysis, OSINT tools, and network security. ▪️ Developed expertise in web app security, mitigating vulnerabilities like XSS, SQL injection, and session hijacking. ▪️ Acquired practical skills in threat intelligence, identifying and responding to emerging cyber threats. ▪️ Strengthened defense against social engineering attacks through phishing email analysis. ▪️ Collaborated with the cybersecurity team, actively participating in discussions and problem-solving exercises.

Security Analyst
Noida, Uttar Pradesh, India
▪️ Conducted comprehensive vulnerability assessments for the main product by entering website domains, and delivering detailed reports on identified vulnerabilities. ▪️ Implemented secure Software Development Life Cycle (SDLC) practices, integrating security considerations throughout the development process. ▪️ Utilized Bash scripting, GitHub, and Linux to automate tasks, manage code, and enhance security testing efficiency. ▪️ Tested and evaluated security tools for accuracy and effectiveness in vulnerability identification and analysis. ▪️ Collaborated with cross-functional teams to promote security awareness and implement necessary security measures. ▪️ Stayed updated on industry advancements and participated in knowledge-sharing sessions. Contributed to the enhancement of internal security policies, procedures, and documentation.

Penetration Testing Intern
California, United States
During my internship, I received comprehensive training in four important areas: OWASP Top 10, hands-on web application penetration testing, professional management, and networking. 1) OWASP Top 10: I learned about the top web application security risks identified by OWASP, such as injection attacks, broken authentication, and cross-site scripting. I studied real-world examples, analyzed code snippets, and implemented mitigation strategies to prevent these vulnerabilities. 2) Hands-on Web Application Penetration Testing: I learned about different phases of penetration testing, utilized tools like Burp Suite and Metasploit, and conducted tests on simulated web applications to identify and exploit vulnerabilities. 3) Professional Management: Training included developing professional skills such as effective communication, time management, teamwork, and problem-solving. 4) Networking: I received training in computer networking, covering TCP/IP protocols, network devices, and security. I gained hands-on experience in configuring and troubleshooting network devices, implementing security measures, and understanding common network vulnerabilities.
Keyur Dasarwar's Contact Information
Phone
Find the Right Leads
Find Verified Contact Data
What LeadContact does well
Find verified emails, phone numbers, and decision-makers with 98% accuracy.
Find Leads
Find the right people by company, role, industry, location, and more.
925M+ professional profiles

Find Emails
Access verified email addresses for your target contacts.
657M+ emails

Find Phone Numbers
Get cross-validated phone data from multiple top sources.
239M+ phone numbers

More Accurate. Lower Cost.
Find contact data in 1 tool with 98% accuracy
LeadContact integrates leading enrichment tools to deliver more accurate contact data—without paying for each one.
Great conversations start with the right contact.
It’s time to find yours.








