Application security and GRC specialist with experience in VAPT, IT audits, and regulatory compliance (ISO 27001, GDPR, RBI) across fintech and IoT environments. Published author, certified security analyst and former project lead who owned end-to-end security posture for a multi-site IoT deployment. Passionate about building secure-by-design systems and automating security into the software development lifecycle.