Testimonials
Services
Video meeting . 20 mins
5
Cybersecurity, GRC & AI Career Mentorship
Perspective, growth and next-step career guidance
Video meeting . 20 mins
Security GRC & Responsible AI Discussion
Peer discussion on AI governance and compliance engineering
About me
I work at the intersection of cybersecurity, AI governance, regulatory assurance, and compliance engineering, with experience across global technology, financial services, banking, and consulting. My focus has increasingly been on a simple challenge: how do we turn complex security, regulatory, and AI-governance expectations into mechanisms that engineering and product teams can actually build, operate, test, and evidence.
At Amazon, I lead security GRC, product cybersecurity readiness, and regulatory assurance across complex technology portfolios and global markets. My work spans emerging cybersecurity regulation, technical control validation, enterprise assurance, and compliance engineering working across areas such as identity and access management, encryption, cloud security, firmware protections, vulnerability management, DevSecOps, and software-update mechanisms.
I am particularly interested in how AI is changing security and GRC itself. Alongside strategic program leadership, I architect and prototype AI-assisted compliance workflows using LLM-based evaluators, Claude Code, and AWS automation to support activities such as regulatory applicability analysis, requirement testing, evidence mapping, and control validation. I believe the next generation of security and governance leaders needs to understand not only policy and risk, but also how to use emerging technology hands-on to make assurance faster, more scalable, and more useful.
Outside Amazon, I serve as Advisor and Lead Architect for Cyber Future Foundation’s RSAIF MOSAIC, helping develop an industry-agnostic approach to responsible and secure AI governance. My work there focuses on translating responsible AI principles into assessable controls, evidence requirements, maturity models, executive decision mechanisms, and practitioner education. I also contribute through industry discussions, speaking engagements, mentoring, and knowledge sharing.
Giving back has been an important part of my journey. I have benefited from mentors throughout my career and enjoy helping others navigate cybersecurity, GRC, technology risk, AI governance, and leadership transitions. This page is primarily a place for professional exchange, community engagement, and sharing what I have learned along the way.
I have also been fortunate to receive USCIS approvals for both EB-1A Extraordinary Ability and EB-2 National Interest Waiver. I am happy to share my personal experience and lessons learned with others where that perspective may be useful. Any immigration-related discussion is based solely on my own experience and is not legal advice.
I am always interested in connecting with people working on meaningful problems across security, AI, product trust, risk, and technology.
Disclaimer: Views shared here are my own and do not represent my employer or any other organization.
- Anupam Gupta is a highly knowledgeable and empathetic mentor in cybersecurity and immigration processes, praised for his clear guidance and supportive approach.AI-generated based on testimonials
- I learned because others shared. This is my way of keeping that light moving forward !!