Principal Engineer & Security Leader

Secure by Design.
Resilient by Strategy.

I help enterprises translate cyber risk into business value. With 12+ years of experience, I architect scalable cloud security programs across Banking, FinTech, and Healthcare sectors that accelerate compliance and enable safe, rapid innovation.

Harish B C Profile
Audit Success
100% Record
12+
Years Experience
150+
AWS Accounts Secured
90 Days
To ISO 27001 Cert
10+
Team Size Mentored

Leadership Philosophy

My approach to building world-class security programs.

Business Enabler

Security shouldn't be a blocker. I design architectures that accelerate sales cycles (RFP response reduction) and enable rapid, safe product releases.

Data-Driven Defense

I believe in measurable security. From reducing MTTD by 50% to ingestion of 200GB/day logs, I build programs based on metrics, not guesswork.

Culture of Security

Technology alone fails. I mentor teams and embed security champions within engineering to create a proactive, security-first organizational DNA.

Strategic Impact & Career Milestones

Delivering measurable security outcomes through architectural leadership and technical innovation across critical domains.

Cloud Security Architecture

Infrastructure & Identity

Designed and secured the cloud foundation for a global ad-tech giant. Architected secure-by-design principles for 150+ AWS accounts, implementing Zero Trust IAM and automated guardrails to support rapid scalability.

Technology Used

AWS GuardDuty Security Hub Okta SSO/MFA AWS IAM Macie Inspector

SOC & Threat Defense

Detection Engineering

Built greenfield SIEM capabilities ingesting 200GB/day of log data. Developed custom parsers and SQL-based threat hunts to identify lateral movement, reducing Mean Time to Detect (MTTD) and Response (MTTR) by 50%.

Technology Used

Wazuh Elastic Stack CrowdStrike Falcon SentinelOne OSSEC

GRC & Strategy

Business Enablement - FinTech & Healthcare

Led strategic certification programs achieving ISO 27001 in just 90 days. Streamlined vendor risk management and reduced security RFP turnaround times by 40% across regulated Banking, FinTech and Healthcare domains.

Frameworks & Tools

ISO 27001 PCI DSS SOC 2 HIPAA Alyne TrustArc BitSight

AppSec & DevSecOps

Product Security & VAPT

Conducted extensive Web, API, and Network VAPT for critical banking applications. Embedded security checks into CI/CD pipelines and managed WAF operations to neutralize vulnerabilities before production.

Technology Used

Burp Suite Snyk Trivy SonarCloud WAF Ops CI/CD Integration

Professional Certifications

AWS
Certified Security - Specialty
Amazon Web Services
AWS
Certified Solutions Architect
Amazon Web Services
ISO
ISO/IEC 27001:2022 Lead Auditor
Governance & Compliance
CEH
Certified Ethical Hacker
EC-Council

Technical Arsenal

SIEM & Logging
Wazuh, Elastic, OSSEC
Cloud Native
GuardDuty, Macie, Hub
EDR / Endpoint
CrowdStrike, SentinelOne
Identity (IAM)
Okta, AWS IAM, PAM
AppSec & VAPT
Burp Suite, Snyk, Trivy
GRC Platforms
Alyne, TrustArc, BitSight

Ready to Secure Your Enterprise?

Whether you need a strategic roadmap for Zero Trust, a scalable SOC architecture, or rapid compliance certification, I am ready to lead the initiative.