Cybersecurity Engineer & GRC Analyst
Zoffec Infotech Pvt. Ltd.
Full-time • Oct 2025 – Present • Mumbai, India
Working as a Cybersecurity Engineer and GRC Analyst, managing enterprise firewall security, SOC operations, SEBI CSCRF compliance activities, and vulnerability assessments across multiple client environments.
- Configured and maintained Sophos Firewall policies, NAT rules, access rules, and traffic filtering across multi-client environments.
- Supported SEBI CSCRF compliance through gap assessments, audit evidence collection, and control validation.
- Deployed SOC agents on client endpoints; verified agent connectivity, visibility, and reporting status.
- Reviewed security alerts and event logs to identify threats, triage incidents, and reduce false positives.
- Performed vulnerability assessments using Nmap, Wireshark, and Burp Suite to identify exposed services and misconfigurations.
- Maintained CCMP, BCP, and DR documentation with RTO/RPO inputs.
- Assisted in internal cybersecurity audits covering access management, endpoint protection, and vulnerability management.
- Documented security configurations, issue observations, and remediation steps for internal and client reporting.






