Akshay Suryawanshi

Lead Information Security Engineer

Acting Team Lead · SOC, DFIR, Cloud Security, Threat Intelligence, Vulnerability Management & GRC

Security leader with 8+ years of experience protecting global organizations, building and maturing enterprise security programs grounded in hands-on infrastructure and end-user operations, reducing risk, strengthening compliance, and enabling sustainable business growth.

Currently based in Mumbai, India

Open to opportunities in India · European Union · United States · United Kingdom · Canada

Open to Remote · Hybrid · Onsite roles

Key Security Initiatives Led

  • Led global SOC & Incident Response operations supporting 3,000+ employees across 22 countries
  • Designed and executed phishing awareness & simulation programs, reducing click-through rates by 65%
  • Built and operationalized IR playbooks & DFIR workflows for P1/P2 incidents
  • Implemented AI-assisted SOC triage and alert enrichment, improving MTTD/MTTR by ~50%
  • Owned enterprise vulnerability management lifecycle across cloud, infrastructure, and applications
  • Drove cloud security architecture reviews across AWS, Azure, and OCI environments
  • Led security governance, risk assessments, and audit readiness aligned with ISO 27001, NIST CSF, CSA CCM, CIS Controls, GDPR, CCPA, and other global regulatory frameworks
  • Led enterprise threat intelligence operations, integrating internal telemetry and external intelligence feeds to proactively detect, prioritize, and respond to emerging threats
  • Defined and governed enterprise vulnerability management strategy, prioritizing remediation using CVSS, exploitability, and asset criticality across cloud, infrastructure, and applications
Get In Touch
Akshay Suryawanshi - Lead Information Security Engineer

Security Impact

Measurable outcomes across security operations, risk reduction, and compliance

Security Operations & Incident Response

3,000+ Employees Protected
22 Countries Supported
200+ Daily Alerts Processed

Risk Reduction

65% Phishing Click-Rate Reduction
60% Critical Vuln Backlog Reduction
~50% Improved MTTD/MTTR

Compliance & GRC

Zero Critical Audit Findings
~60% Faster Audit Preparation

Alignment with global security frameworks and regulatory acts

Cloud Security & Architecture

AWS Security Architecture
Azure Security Architecture
OCI Security Architecture

IAM, network security, logging, monitoring reviews. Preventive and detective guardrails.

Infrastructure & Cloud Impact

Security-first cloud architecture, governance, and enterprise-scale migrations

Cloud Cost Optimization

$240K+ Annual Cost Savings
33% Infrastructure Cost Reduction

Migration & Scale

500+ Servers Migrated to AWS

Security-first cloud migration approach

Projects & Key Initiatives

Delivering Measurable Outcomes Across Security & Infrastructure

Information Security

SOC Automation

AI-Driven SOC Triage Automation

~50% faster triage 200+ daily alerts processed

Built intelligent L1 alert triage workflow reducing manual investigation by ~50% through AI and automation.

DFIR

DFIR Lab Establishment

70% cost reduction In-house forensics

Built in-house Digital Forensics and Incident Response laboratory for advanced investigations and malware analysis.

GRC SOC

NIST-Aligned Incident Response Program

NIST aligned P1-P4 workflows

Developed comprehensive IR framework with defined RACI, escalation workflows, playbooks, and metrics.

Cloud Security

Multi-Cloud Security Architecture Reviews

40% reduced attack surface 3 clouds (AWS/Azure/OCI)

Conducted comprehensive security assessments across AWS, OCI, and Azure reducing attack surface significantly.

VM

Vulnerability Management Program

60% backlog reduction 7-day critical SLA

Established enterprise vulnerability management program with risk-based prioritization and SLA-driven remediation.

GRC

Security Awareness & Phishing Simulation Program

65% click rate reduction 95%+ training completion

Implemented comprehensive security awareness training with monthly phishing simulations reducing click rates by 65%.

VM GRC

Penetration Testing & Red Team Coordination

100% critical SLA met

Coordinated annual penetration testing engagements and led remediation efforts for critical vulnerabilities.

SOC DFIR

Threat Intelligence Integration

40% faster detection 3+ TI platforms

Integrated multiple threat intelligence platforms for proactive threat detection, dark web monitoring, and hunting capabilities.

Network

Firewall Security Review & Rule Optimization

35% rules reduced 1000+ rules reviewed

Conducted comprehensive firewall security reviews to identify misconfigurations, optimize rulesets, and reduce attack surface.

Leadership, Governance & Risk Management (GRC)

Leadership SOC

Acting Team Lead - Security Operations

3,000+ employees Global scope

Leading SOC, IR, DFIR, vulnerability management, and threat intelligence operations as Acting Team Lead.

GRC

Global Retention Policy & Data Governance

30% storage savings GDPR/CCPA compliant

Led enterprise-wide data retention policy project ensuring compliance with GDPR, CCPA, and industry regulations.

GRC

ISO 27001 & Compliance Framework

Zero critical findings 60% faster audit prep

Aligned security program with ISO 27001, NIST CSF, and CIS Controls for audit readiness and continuous compliance.

Leadership GRC

Executive Security Metrics & Dashboards

C-level reporting Data-driven decisions

Built comprehensive security KPI dashboards for C-level executives and board reporting.

Infrastructure: Windows Server (2000-2022), On-Premise, Virtual & Cloud Engineering

Cloud AWS

AWS Large-Scale Migration (500+ Servers)

500+ servers migrated Zero downtime

Led end-to-end migration of 500+ on-premises servers to AWS using Application Migration Service.

Cloud FinOps

Cloud Cost Optimization Initiative

33% cost reduction $240K annual savings

Achieved 33% reduction in AWS infrastructure costs through rightsizing, reserved instances, and resource optimization.

Windows Identity

Windows Server Administration & Management (2000-2022)

10,000+ users 20+ years experience

Comprehensive Windows Server administration across multiple versions (2000-2022) with enterprise-scale deployment and management.

Virtualization Data Center

Virtualization & Data Center Management

200+ VMs managed 99.9% uptime

Managed enterprise virtualization platforms (VMware ESXi/vSphere, Nutanix) supporting 200+ VMs with high availability.

Identity Azure AD

Active Directory & Identity Management

3,000+ users Hybrid identity

Managed enterprise Active Directory infrastructure for 3,000+ users with Azure AD hybrid integration.

M365 Collaboration

Microsoft 365 & Exchange Administration

Enterprise scale DLP enabled

Managed enterprise M365 environment including Exchange Online, SharePoint, and Teams for organization-wide collaboration.

Professional Experience

8+ Years of Progressive Growth from Infrastructure to Security

Mar 2024 – Present Cimpress India Private Limited Remote

Lead Information Security Engineer

(Acting Team Lead)

Team Leadership Program Owner Global Scope

Key Impact

  • Lead SOC, IR & DFIR operations for 3,000+ employee organization across 22 countries
  • Reduced phishing click rates by 65% through security awareness program
  • Cut critical vulnerability backlog by 60% via risk-based prioritization
  • Built executive security dashboards enabling data-driven investment decisions
  • Achieved zero critical audit findings through alignment with global security frameworks and regulatory acts
Apr 2023 – Feb 2024 Cimpress India Private Limited

Lead Cloud Engineer

Migration Lead Cost Owner

Key Impact

  • Migrated 500+ servers to AWS with zero downtime
  • Saved $240K/year through cloud cost optimization ($60K → $40K/month)
  • Enabled remote workforce with AWS Workspaces for 500+ users
Jul 2021 – Mar 2023 Cimpress India Private Limited

Senior Systems Engineer

Infrastructure Owner

Key Impact

  • Owned VM infrastructure supporting 200+ systems across VMware ESXi/vSphere and Nutanix
  • Led complex migrations: P2P, P2V, V2V, V2C with minimal downtime
  • Accountable for 99.9% uptime across critical infrastructure
Sep 2020 – Jun 2021 Cimpress India Private Limited

Systems Engineer

Key Impact

  • Owned Windows Server ecosystem spanning versions 2003-2022
  • Implemented hybrid identity with Azure AD Connect and Intune
  • Deployed enterprise monitoring using SolarWinds for proactive alerting
Oct 2019 – Aug 2020 ThinkApps Solutions Pvt. Ltd Onsite

Server Engineer

(Client: Leading Media Company)

Key Impact

  • Administered Windows Server for enterprise media infrastructure
  • Managed Microsoft 365 and Group Policy for 500+ users
  • Maintained VMware infrastructure ensuring availability and performance
Nov 2018 – Sep 2019 Microland Limited Onsite

Senior Engineer (Server Management)

(Client: Leading Insurance Company)

Key Impact

  • Managed Active Directory and DC replication for enterprise environment
  • Drove SCCM patching operations ensuring compliance posture
  • Owned O365 and infrastructure monitoring for proactive incident management
May 2017 – Apr 2018 Nityo Infotech Pvt. Ltd Onsite

Desktop Support Engineer

(Client: Leading Banking & Investment Management Company)

Key Impact

  • Led EOSL migration for 2,000+ systems ensuring business continuity
  • Delivered end-user technical support for banking operations
  • Managed IT assets and vendor relationships for hardware lifecycle

Core Skills

Domain expertise across security operations, cloud, and governance

SOC & Incident Response

SOC Operations (L1–L3) Incident Response (P1/P2) Digital Forensics Evidence Handling Threat Hunting Alert Triage & Enrichment MTTD/MTTR Improvement

Security Platforms & Tooling

EDR/XDR Workflows SIEM & Log Management Threat Intelligence Platforms Phishing Detection & Response Vulnerability Scanners

Cloud & Infrastructure Security

AWS Security Architecture Azure Security OCI Security IAM Network Security Logging & Monitoring Secure Cloud Migrations Cloud Cost Optimization

Vulnerability Management

CVSS-Based Prioritization Asset Criticality Exploitability Analysis Full Lifecycle Management Remediation Tracking (Jira)

Governance, Risk & Compliance (GRC)

Risk Assessments Audit Readiness & Evidence Security Policies & Standards Framework Alignment Regulatory Compliance

Automation & AI in Security

SOC Automation Alert Enrichment Workflows AI-Assisted Triage Security Process Automation Scripts & Integrations

Certifications

Industry-Recognized Credentials & Qualifications

NEW
CISM Certification Badge

CISM

ISACA

Certified Information Security Manager

Issued Sep 2025 · Expires Jan 2029

Verify
AWS AI Practitioner Foundational Certification Badge

AWS AI Practitioner

Amazon Web Services

Certified AI Practitioner

Issued Dec 2024 · Expires Dec 2027

Verify
AWS Solutions Architect Associate Certification Badge

AWS Solutions Architect

Amazon Web Services

Solutions Architect – Associate

Issued Jul 2024 · Expires Jul 2027

Verify
CompTIA Security+ Certification Badge

CompTIA Security+

CompTIA

Security Fundamentals Certification

Issued May 2024 · Expires May 2027

Verify
Microsoft Azure Security Engineer Associate Certification Badge

Azure Security Engineer

Microsoft

Azure Security Engineer Associate

Issued May 2024 · Expires May 2027

Verify

Get In Touch

Open to Information Security Roles & Collaboration

Email

Phone

Location

Mumbai, India

Open to Opportunities

Currently exploring roles in Information Security, Security Operations, Incident Response, DFIR, Vulnerability Management, Threat Intelligence, Cloud Security (AWS, Azure, OCI), and GRC.