Darwin David

Head of Cybersecurity | (OIC) Manager - VAPT & Security Engineering @CIS Bayad Center, Inc.

MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Jan 2026 — Present

Head of Cybersecurity | (OIC) Manager - VAPT & Security Engineering @CIS Bayad Center, Inc.

View department →

National Capital Region, Philippines

• The Head of Cybersecurity provides executive leadership in defining and advancing the organization’s enterprise-wide cybersecurity strategy, ensuring alignment with industry best practices, regulatory requirements, and security standards across enterprise IT and Industrial Control Systems (ICS). • This role is responsible for driving the development, governance, and continuous improvement of information security policies, standards, and procedures to strengthen organizational resilience and risk management. The role leads the strategic planning and prioritization of cybersecurity initiatives based on the evolving threat landscape and the organization’s risk profile, ensuring that security investments are aligned with business objectives. • Executive oversight is exercised over cybersecurity programs and projects to ensure that appropriate resources, capabilities, and controls are in place to deliver outcomes within agreed timelines and expected quality standards. • With strong expertise in modern protective and defensive technologies, the Head of Cybersecurity guides the adoption of security architectures and controls that safeguard critical assets while enabling secure business operations. The role ensures timely, accurate, and actionable reporting of cybersecurity risks, incidents, and control gaps to executive leadership, supporting informed decision-making and effective risk governance. • In addition, the Head of Cybersecurity plays a key role in assurance and compliance, working closely with Internal Audit and external stakeholders to support information security, data privacy, and regulatory audits. The role oversees compliance reporting, remediation planning, and the tracking of corrective actions to ensure sustained compliance and continuous improvement of the organization’s cybersecurity posture.

Apr 2022 — Dec 2025

Cyber Lead - Threat Exposure & Attack Surface Mgmt | Infra Security Operations & Engineering @CIS Bayad Center, Inc.

View department →

Cyber Lead - Threat Exposure & Attack Surface Management | Security Engineering & Architecture • Blending hands-on expertise and strategic leadership to secure infrastructure, applications, and cloud environments from evolving threats. I mentor cross-functional teams, standardize scalable VAPT methodologies, and work closely with developers, engineers, and stakeholders to translate technical findings into strategic remediation. • Performing advanced web and mobile application testing using SAST, DAST, and SCA tools, complemented by secure code reviews and API security assessments. Leading infrastructure and network assessments to detect misconfigurations, privilege escalations, and lateral movement risks. • Driving Shift Left security methodologies, integrating security testing early in the SDLC and promoting developer collaboration for faster remediation. Embedding security earlier in the SDLC and enabling DevSecOps collaboration for proactive risk reduction. • Conducting robust cloud security assessments using CNAPP, CASB, CWPP, and CSPM solutions across AWS Cloud and On-premise Hybrid environments to evaluate workload protection, misconfiguration risks, and policy compliance (PCI-DSS, ISO27001, COBIT) certifications. • Responsible for acquisition (RFP), build, testing, commissioning, operations, maintenance and retirement of IT network and security infrastructure (routers, switches, firewalls, load balancers, secure web gateways, vpn gateways and others) and ensures 24x7 continuous system operations and performance at the primary and secondary sites. • Our team is committed to delivering actionable insights and collaborating closely with stakeholders to enhance overall security posture. Passionate about advancing cybersecurity practices, we continuously explore emerging threats and industry trends, striving for excellence in safeguarding digital environments.

Dec 2019 — Dec 2021

Cyber - Senior Information Security Specialist [Engineering Build Projects & Risk Mgmt] @Smart Communications, Inc.

View department →

Philippines

• Implement and identify possible solutions to Cyber Security weakness/gaps identified by Cyber Security Operations and Security Risk Management. This includes deployment of (High-Level / Low-Level designs) Perimeter security controls – Firewalls, IDS/IPS, NAC and network segmentation that align to the Security Technology Roadmap and Blueprint mandated by Planning & Architecture team. • Engineering and Implementation of security solution/tool. Using well-known (VAPT) Vulnerability Assessment and Penetration Testing tools such as (Kali Linux, Qualys, Burp Suite and Picus Security) for Web and API application Pen-Testing. Test and validate system updates, patches and enhancements in the prod/dev environment. Document and test working procedures for production system changes and enhancements.

Jun 2018 — Jun 2019

Infrastructure Engineer [Operations] @Collabera

View department →

Singapore

(Contingent | Contractor) outsourced to Visa Inc (Singapore) • Individual contributor role responsible for the successful migration of clients, in Asia Pacific, Central Europe, Middle East and Africa and Latin America, from its existing connections in US Data Centers to Singapore Data center. • Participate actively on carrying out network changes. Configuring, installing and deployment of client solutions and network design implementations on various infrastructure devices. Troubleshooting 1st and 2nd level network related issues, coordinate resources where necessary and serve as escalation point to various operational teams. Liaise with vendor and other IT personnel for problem resolution. Carry out effective and prompt measures to restore services and resolve issues via appropriate configuration changes to maintain service integrity.

May 2017 — Jun 2018

Senior - Infrastructure Engineer @HCLTech

View department →

Singapore

• Tier 2 Network Engineer for Government Initiative supporting various government agencies. LAN Operation, Administration and Maintenance support. Maintaining Enterprise products such as Cisco Routers and switches, Alcatel Core and Access Switches, Firewalls and NAC equipment’s. • Working with multiple vendors during the project implementation. Provide technical assistance support in various government project initiatives. Ensure the project is implemented according to the agencies projected time-frame schedule and best practices. Oversee and ensure all acceptance tests (hardware acceptance, user-acceptance) are conducted successfully and in accordance with the approved test plan

Sep 2014 — Sep 2016

Principal Lead - Infrastructure Engineer @Synapxe

View department →

Singapore

• Perform duties to evaluate, recommend, develop, design, implement and integrate new or upgraded enterprise services and applications for use in the organization. Manage the vendor selection process calling (RFP – Request for Proposal, ITQ – Invitation to Quote, cost analysis, evaluation and awarding of tenders). • Create project plans and proposals for approval on current and future projects. Assist with the development of related yearly financial budget (OPEX & CAPEX) for the IT department. Up keeping inventory and managing hardware and software maintenance life-cycles of all infrastructure components and equipment in asset management. Prepare purchase requisitions (PR) / purchase order (PO) of approved items. Facilitate timely renewal of maintenance contracts and service subscriptions with vendors or service providers. Ownership of enterprise architecture, design, and topology of various infrastructure services and their associated components.

Apr 2011 — Aug 2014

IT Specialist - Network | Security @Cargill

View department →

Cargill - Singapore

• Reporting to US based Global Networks Manager. Working within the Service Operations Team of Network Analysts who are based virtually around the world supporting Cargill’s Network Infrastructure during Asia Pacific working hours within an ITIL adopted IT environment. • Main goal is to ensure that network / security / voice / internet services of the business units are operating effectively. Providing 1st / 2nd line support; responsible for 24/7 availability of Global Network services day to day operational issues. I am responsible for the performance management, technical mentoring and coaching of Asia Pacific global network team to ensure the team is capable and fully engaged to meet aggressive uptime metrics. • Project Implementations / Change Management of principal KLO (Keep Lights On) Projects. Working closely with the GNS Network Engineering and Implementations team for Project deployments in Cargill.

May 2008 — Apr 2011

IT Specialist - Network | Security @3i Infotech

View department →

Singapore

• Member of a group that supports the network infrastructure of Singapore Airlines (SIA) as one of IBM's Outsourcing client. Part of my responsibilities is providing 1st / 2nd level support for network / security related issues, making sure that set procedures are followed from start of the incident until its resolution. Provides coverage and technical support to ensure high system availability and handle and manage network infrastructure related projects. • Managing Access Switches, Core and Distribution Server Farm Switches, Firewalls, DNS/DHCP Servers, Network Monitoring Tools and Enterprise Anti-Virus Server. • Involved in the migration, installation, troubleshooting and maintenance of Cisco devices for Network Refresh Project

Dec 2005 — May 2008

TAC Specialist - Infrastructure - TELCO @PLDT

View department →

Philippines

Sep 2003 — Aug 2005

IT Specialist - Infrastructure - Technical Support @Sun Cellular

View department →

Philippines

EDUCATION

1996 — 2001

AMA University

Bachelor of Science (BS) · Computer Engineering

SKILLS

Security Architecture DesignThreat & Vulnerability ManagementDevSecOpsVector DatabasesCryptographyCloud Computing IaaSLog AnalysisPandas (Software)ITILRoutersRegulatory ComplianceVulnerability Assessment and Penetration Testing (VAPT)Six Sigma Yellow BeltArtificial Intelligence (AI)FirewallsAutomationServer AdministrationSix SigmaCheckpoint SecurityWireless NetworkingHP ProcurveSQLPandasRisk ManagementCyber Threat Intelligence (CTI)Python ProgrammingNetwork SecuritySoftware Engineering PracticesCybersecurityBusiness Process ImprovementRed TeamingPrompt EngineeringLangChainDHCPNISTKali LinuxTerraformLAN-WANGlobal IT OperationsPenetration Testing

ABOUT DARWIN DAVID

With over 20+ years of Blended Lead and Hands-On experience as a seasoned Engineer, Architect, Analyst in Cybersecurity and Infrastructure, I bring a unique fusion of deep technical expertise, strategic architectural insight, and operational leadership. Driven by a relentless curiosity about how systems work and a passion for building resilient, innovative, and future-ready solutions.AI Engineering | Agentic AI Automation Lead the adoption of Agentic AI - leveraging autonomous workflows, AI-driven orchestration, LangChain frameworks, and RAG architectures - to modernize and scale enterprise threat, exposure, and attack surface management capabilities.Cybersecurity Head • Thrives at the intersection of business leadership and technical teams, spearheading impactful security initiatives and transformative infrastructure projects.Security Architecture & Engineering • Contribute to maintaining and evolving the Cybersecurity reference architecture, reviewing design changes for security impact, and recommending appropriate mitigating and security controls.Vulnerability & Pen‑Testing Management • Experienced in managing the full VAPT lifecycle—scoping, execution, validation, and tracking—ensuring timely closure, along with on-demand technical security reviews for pre and post-production deployments.Incident Response & Recovery • Deputy Lead, coordinating containment, eradication, and recovery, while conducting root cause analysis, drafting incident reports, and recommending control enhancements.Cloud & DevSecOps Enablement • Embed automated security gates (SAST/DAST, SCA) into CI/CD pipelines, maintain security baselines for cloud landing zones, and promote shift-left security practices with DevOps teams.Certifications & Learning Development• TryHackMe - Certified - AI Security - Learning Path - (Completed Jul 2026)• TryHackMe - Certified - SOC Analyst L2 - Learning Path - (Completed Sep 2025)• TryHackMe - Certified - SOC Analyst L1 - Learning Path - (Completed Aug 2025)• TryHackMe - Certified - DevSecOps Learning Path - (Completed May 2025)• TryHackMe - Certified - Security Engineering Learning Path - (Completed May 2025)• TryHackMe - Certified - CompTIA+ PenTester Learning Path - (Completed Apr 2025)• TryHackMe - Certified - Web Penetration Tester Learning Path - (Completed Apr 2025)• TryHackMe - Certified - Jr. Penetration Tester Learning Path - (Completed Mar 2025)• TryHackMe - Certified - Web Fundamentals Learning Path - (Completed Feb 2025)• Cisco Ethical Hacker - (Completed Jan 2025)

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

Darwin David — Head of Cybersecurity | (OIC) Manager - VAPT & Security Engineering at CIS Bayad Center, Inc. | Unifers