Aryan Khan
A virtual Security Operations Center built to practice log monitoring, alert triage, and incident response analysis.
A comprehensive ISO/IEC 27001 readiness assessment for a simulated organization, identifying control gaps and a roadmap toward certification.
A complete internal ISMS audit following ISO 19011 guidelines to evaluate compliance with ISO/IEC 27001 controls.
A review of user provisioning, privileged access, account lifecycle management, and segregation of duties in a simulated enterprise.
A comprehensive information security risk assessment identifying assets, threats, vulnerabilities, and treatment options using ISO 27005.
A Python-based audit automation tool that validates security configurations, collects evidence, and generates standardized compliance reports.
A breakdown of what auditors really look for beyond the checklist.
How to actually interpret a SOC 2 report instead of just skimming it.
Lessons learned setting up a virtual SOC from scratch.
SAY
HELLO
Open to new roles and interesting projects,
drop a message.
Based in Karachi, Pakistan
Open to remote & hybrid