
I’m Surya — a GRC & cybersecurity pro who’s helped build and run risk programs at Deloitte and Hootsuite. From ISO and NIST to audits, policies, third-party risk, and internal security frameworks — I’ve seen it all and done most of it.
Whether you're:
✅ A newbie trying to crack your first cyber/GRC role
✅ Mid-career and ready for the next jump
✅ Confused about which certs are worth it (CISA, ISO, etc.)
✅ Stuck in consulting and eyeing a shift in-house (or vice versa)
✅ Prepping for interviews or need help with your resume
— this 1:1 is for you.
Expect honest advice, actionable next steps, and a real-world view into what hiring managers, CISOs, and clients actually look for.