Cyber Security Consultant
Boonchuayseng Nantana
About Me
nantana.b@gmail.com
+65 9678 5982
Cybersecurity & Risk professional with extensive experience in cloud security, risk management, and governance frameworks across financial services, government, and enterprise technology sectors. Specializes in risk assessment, cloud security architecture, regulatory compliance (ISO 27001, NIST, MAS TRM, GovTech IM8), and cyber risk advisory. Proven track record in delivering security transformation projects and advising C-suite executives on cyber resilience strategies.
Work Experience
2022 - 2023
Senior Security Consultant – Infosys
CIO Advisory Services
Managed a Cloud Security Maturity Assessment for BHP Australia, delivering a comprehensive risk analysis and security strategy roadmap. Advised on secure cloud adoption, integrating AWS Security Hub, IAM, and encryption standards for a Retail Demand Forecasting solution. Conducted cloud compliance assessments against ISO 27001 & NIST CSF, ensuring secure cloud operations for critical business applications. Developed a cloud security governance framework, enhancing policy alignment with multi-cloud security best practices.
Education
2024 - 2026
Doctor's Degree - Gen AI
Golden Gate University - San Francisco, CA
DBA in Generative AI
The 3-year Executive Doctorate in Business Administration focuses on navigating Emerging Technologies. The program entails a highly balanced coursework in data science, research methods, and business management. It enables candidates to design, develop, and deploy AI based blueprint to solve domain specific business problems and create production diagrams to enable ease of organizational communication.
Skills & Expertise
Cybersecurity & Risk Advisory
Cyber risk assessment and security architecture design for enterprise cloud environments
Regulatory compliance advisory across ISO 27001, NIST CSF, MAS TRM, GovTech IM8 frameworks
Cyber risk quantification and mitigation strategy development for critical systems
Security transformation consulting for financial services, healthcare, and enterprise technology sectors
Governance, Risk & Compliance (GRC)
Security policy development and governance framework implementation
Regulatory gap analysis and compliance readiness for enterprise cloud platforms
Third-party risk management and vendor security evaluation
Governance frameworks alignment with CIS Benchmarks and industry best practices
Company I’ve Worked With