Frameworks
- PCI DSS v4.0.1Audit · Implement
- SWIFT CSP / CSCFAudit · Implement
- ISO/IEC 27001:2022Audit · Implement
- NIST CSFAssess · Mature
- CBUAE CPSAssess
- NPCI complianceAssess
PCI DSS & SWIFT CSP Consultant · Senior Manager, GRC
I'm Madhup Bajpai. I help banks, payment processors and merchants turn PCI DSS, SWIFT CSP, NIST CSF and ISO 27001 requirements into controls that pass assessment and actually reduce risk.
About
I'm a cybersecurity and risk consultant with more than eight years of leading several high-stakes engagements at once. My work sits between the auditor and the engineer: I translate dense requirements such as PCI DSS, NIST CSF, SWIFT CSP, CBUAE and the NPCI risk and compliance framework into a plan that technical teams can execute and leadership can sign off on.
Today I lead PCI DSS delivery at Sandbox Security, producing Reports on Compliance, Attestations of Compliance and SAQs, and acting as delivery head across concurrent projects. Before that I built assessment practices at Atos, Deloitte, NetSentries and Crossbow Labs.
Experience
Sandbox Security Pvt. Ltd.
Atos
Deloitte USI
NetSentries Technologies
Crossbow Labs LLP
Earlier 247.AI · Runnr (Carthero Technologies) · Finalytics Consultancy
Skills
Every finding I write comes with an owner, a fix and a date. An assessment is only useful if it changes something.
Services
Scoping, v4.0.1 gap assessments, remediation and SAQ, RoC and AoC delivery for merchants, processors and banks.
Explore PCI DSS services 8 engagementsIndependent CSCF assessments and implementation support for banks in the UAE, Oman, Bahrain and India.
Explore SWIFT CSCF servicesClients
Certifications
ISACA
Amazon Web Services
Information security management
Information security management
Contact
Tell me about your scope, your deadline and the framework. I'll tell you honestly what it takes.