Ayushree A.
Cybersecurity, OSINT and Digital Forensic Specialist
Summary Snapshot: I'm a cybersecurity professional with 6+ years of hands-on experience in vulnerability management, risk assessment, DevSecOps, and cloud security. I've worked across fintech, telecom, and startup environments, aligning systems with NIST, ISO, GDPR, and CIS-CAT standards. Skilled in AWS, SIEM, SSDLC, and policy documentation. Furthermore, I am well-versed in digital forensics and OSINT investigations. In-Depth Overview: I’m a Cybersecurity Engineer with over 6 years of experience delivering security solutions across fintech, telecom, and startup ecosystems. I specialize in vulnerability management, risk assessment, DevSecOps integration, anomaly investigation, and stakeholder engagement. At Holvi, a regulated EU fintech, I led Blue Team operations and embedded security into the SDLC while ensuring compliance with ISO 27001 and GDPR. I’ve worked directly with CISOs to shape security strategies, be the incident response coordinator, and document company-wide security policies like Business Continuity, Access Control, and Cryptography. Technically, I’m skilled in AWS (EC2, EKS, RDS, S3), SIEM (Kibana), SSDLC, Jenkins, SonarQube, Elasticsearch, Ansible, and Python. I’m also well-versed in compliance frameworks including NIST, CIS-CAT, ISO, GDPR, and OWASP. I am well-versed in digital forensics and OSINT (Open Source Intelligence) investigations, with hands-on experience in identifying, collecting, and analyzing digital evidence from publicly available sources. My expertise includes investigating digital footprints, uncovering hidden affiliations, tracking online activity across platforms, verifying identities, and detecting anomalies or inconsistencies in personal and organizational records. I utilize a wide range of open-source tools and techniques to deliver actionable intelligence, supporting due diligence, background checks, and cyber risk assessments with precision and discretion. Whether it's securing infrastructure, auditing systems, or leading awareness trainings, I bring a well-rounded, proactive approach to cybersecurity.