Cyber Security Expert & Strategist
Hi, I'm Kishore Kumar
From audit to action — designing practical security that organizations can actually implement.

About Me
Building Security That Works
I am a cybersecurity professional based in Dubai with 4+ years of hands-on experience in securing enterprise environments. I build, test and harden security systems -- from cloud infrastructure to endpoint protection.
My work spans risk management, compliance audits (ISO 27001, SOC 2), penetration testing, SIEM operations and identity management. I focus on practical security that aligns with business goals, not just checkbox compliance.
Before moving into security, I built 50+ websites as a freelance developer -- that background gives me a unique perspective on application security and secure code practices.
Dubai, UAE
me@krishz.in
Enterprise Security
For Consulting
Resume
Experience & Education
Lead IT and Security Engineer
NEXSYS-ONE DMCC, Dubai
Leading IT security operations, compliance audits, and infrastructure hardening across cloud and on-premise environments.
Cyber Security Solution Expert & System Analyst
MAS Tech Consulting, Dubai
Designed and deployed security architectures, conducted VAPT assessments, and managed SIEM operations.
Web Developer
Freelancing
Built 50+ WordPress sites with custom themes and plugins, optimized for performance and SEO.
BE Computer Science Engineering
University
Bachelor of Engineering in Computer Science with focus on networking and security fundamentals.
Credentials
Certifications & Skills

Microsoft Cybersecurity Architect Expert

Certified Ethical Hacker (CEH)

ISO 27001 Lead Auditor

Microsoft Identity & Access Administrator

ISC2 Certified in Cybersecurity

CNSS Certified Network Security Specialist

ICTTF Ransomware Uncovered Specialist
What I Do
Specializations
Cybersecurity & Risk Management
Risk assessments, threat modelling, and security roadmaps aligned with business objectives.
Compliance & Audit Readiness
ISO 27001, ISO 9001, SOC 2 audit preparation, gap analysis, and remediation.
IT Operations & Service Management
ITSM platforms (Ivanti, Jira, osTicket) setup, SLA management, and process automation.
Identity & Access Management
Azure Entra ID, Intune MDM, conditional access policies, and SSO integration.
Privileged Access & Firewall Management
FortiGate, Sophos firewall rules, PAM solutions, and network segmentation.
Penetration Testing & VAPT
Nessus, Burp Suite, Metasploit, ZAP — full vulnerability assessment and reporting.
Cloud Security Engineering
AWS and Azure security hardening, Linux/Windows server security, and cloud architecture review.
SIEM & Monitoring Operations
Wazuh, DNIF, Zabbix, Nagios — log correlation, alert tuning, and incident response.
Web Development & Optimization
WordPress, Next.js — performance optimization, security hardening, and custom development.
Security Awareness & Training
Phishing simulations, security workshops, and policy documentation for teams.
Vibe Coding
AI-assisted development and rapid prototyping — building functional apps and tools with modern LLM-powered workflows.
Contact
Get in Touch
Have a project in mind or need a security consultation? I'm always open to discussing new opportunities and challenges.
