š Hi, Iām Manojit¶
Senior Consultant ā Cyber Risk, Strategy & Transformation
10+ years of experience driving cyber risk, strategy, and security architecture initiatives across diverse environments, with a background in cybersecurity program development, ISMS implementation and audit, NIST aligned assessments, cyber risk management, and cyber maturity evaluations across global standards and regulatory frameworks.
I am currently expanding my focus onto cloud security architecture, DevSecOps, and AI Security, applying risk-based judgment to cloud-native system design, trust boundaries, and security controls aligned with modern engineering and delivery practices.
š Certifications¶
š Featured Security Projects¶
Projects that reflect my approach to designing secure architectures and risk-informed systems.
- Risk-to-Control Mapping
ISO 27001, NIST CSF, Risk Management ā Mapping business and technical risks to security controls to identify coverage gaps and support risk-informed decision-making. - Security Architecture Reviews
Security Architecture, Risk Assessment ā Risk-focused reviews of system and vendor architectures evaluating trust boundaries, control adequacy, and alignment to security objectives. - Cybersecurity Maturity Assessments
NIST CSF, Maturity Models ā Cyber maturity assessments highlighting current-state gaps and priority improvement areas across people, process, and technology.
š Recent Writing¶
- Risk-Based Thinking in Cloud Security Architecture
Applying risk management principles to cloud-native system design and trust boundaries. - Bridging GRC and DevSecOps: A Practitioner's View
How governance, risk, and compliance integrate with modern DevSecOps workflows. - Threat Modeling for Enterprise Security Programs
Practical approaches to integrating threat modeling into existing security programs. - Third-Party Risk Management Beyond Questionnaires
Moving from checkbox compliance to risk-informed vendor assessments.
š Elsewhere¶
Disclaimer - All opinions and work shared here are my own and do not represent any past, current, or future employer.



