Suggestions
Nimish Goyal
Senior Consultant at EY - Cybersecurity - Indian School of Business
Professional Background
Nimish Goyal is an accomplished professional with a diverse background in telecommunications, information technology, financial services, non-banking financial companies (NBFCs), and the aviation industry. With extensive experience in cybersecurity and risk management, Nimish has systematically developed his expertise through various positions at Ernst & Young (EY), one of the world's leading professional services organizations. His journey from an intern at Advance Metering Technology Limited (AMTL) to a Senior Consultant at EY encapsulates a robust career marked by continuous learning and a steadfast commitment to excellence. Nimish has developed a reputation as a trusted advisor, performing significant roles that include black box and white box network penetration testing, application security assessments, and vulnerability assessments across multiple platforms.
Education and Achievements
Nimish's academic journey has been pivotal in shaping his professional skill set. He began his education at Our Lady of Fatima School in Aligarh, where he laid down foundational skills that would support his future endeavors. Continuing his studies, he excelled at St. Fidelis Sr. Sec. School, which equipped him with strong analytical capabilities. Nimish pursued a Bachelor of Technology (B.Tech.) degree at Amity University in Delhi, further enhancing his technical acumen. His quest for knowledge didn't stop there; he later earned an Executive MBA from the prestigious Indian School of Business, which solidified his understanding of business strategy and operational management.
During his academic tenures, Nimish not only gained theoretical knowledge but also engaged in practical experiences that have defined his career path. His participation in various projects and internships has empowered him with the necessary skills and insights required in today's fast-paced tech landscape.
Career Milestones
Throughout his career, Nimish has demonstrated a deep understanding of cybersecurity frameworks, compliance requirements, and industry best practices. At EY, he played an essential role in executing PCI-DSS engagements, where he provided onsite remediation support to clients aiming for PCI-DSS compliance. This included preparing the Report on Compliance (ROC) for PCI-DSS certification audits and conducting gap assessments. Additionally, Nimish’s adeptness at engaging in onsite certification audits has equipped numerous clients with the guidance they need to meet compliance standards, helping them navigate the complex requirements of PCI-DSS versions 3.2 and 3.2.1.
His analytical capabilities are also reflected in his work analyzing IT general controls (ITGC) and performing ITGC testing. Nimish has meticulously engaged in evidence analysis, reviews, and documentation of work products. His contributions were vital in conducting network security audits for IT infrastructure, particularly for clients in the insurance sector. This work displayed Nimish's ability to understand complex IT environments and provide actionable insights to enhance their security posture.
One of Nimish's hallmark achievements is his proven expertise in performing vulnerability assessments. By utilizing industry-standard tools such as Nmap, Nessus, Metasploit, QualysGuard, and Burp Suite, he has effectively identified weaknesses in systems and applications, providing critical input to elevate the security measures of his clients. His work on mobile application security assessments across both Android and iOS platforms is a testament to his adaptability and proficiency in navigating various technological landscapes.
Moreover, Nimish has been instrumental in helping IT giants establish their internal Vulnerability Management programs. He undertakes the critical task of identifying and mitigating risks while formulating effective security strategies that drive business success. His comprehensive understanding of IT policies and procedure reviews has allowed him to pinpoint gaps against industry best practices, ultimately guiding organizations towards a more secure operational framework.
Nimish's commitment to professional development is further underscored by his collaborative spirit and his ability to work effectively across diverse teams. Throughout his career, he has demonstrated exceptional interpersonal skills, fostering strong relationships with stakeholders and clients. His seminars and workshops on IT security and compliance have been well-received, showcasing his dedication to sharing knowledge and empowering infrastructure teams to uphold security measures.
Overall, Nimish Goyal's diverse experience, coupled with extensive educational background and commitment to excellence in cybersecurity and IT compliance, sets him apart as a leading expert in these fields. His holistic approach to problem-solving and his technical prowess make him a valuable asset in any organization seeking to enhance its security strategy.
Achievements
- Demonstrated expertise in black/white box network penetration testing and application security assessments.
- Performed vulnerability assessments utilizing industry-standard tools, showcasing skills in the cybersecurity domain.
- Key contributor to PCI-DSS compliance initiatives, supporting clients across various sectors.
- Engaged in network security audits for leading clients, enhancing their IT infrastructure security through diligent assessments.
- Developed internal Vulnerability Management programs for IT firms, instilling best practices for risk identification and mitigation.