Illustration of cybersecurity protection across a laptop and mobile device

CYBERSECURITY LEADERSHIP & ADVISORY

I help CISOs build security operations that hold under pressure.

I was part of the founding team of the Microsoft Threat Intelligence Center, contributed early detections to Microsoft Sentinel, and led a detection engineering team in Microsoft Defender XDR. Across 18+ years, I have led security operations as both a provider and an enterprise practitioner. Today I advise CISOs on SOC strategy, detection engineering, incident readiness, cyber risk, and AI governance aligned with ISO/IEC 42001.

MSTICFounding-team member
Microsoft SentinelContributed early detections
Microsoft Defender XDRLed detection engineering
CredentialsCISM · CISA · ISO/IEC 42001 Lead Implementer
Advanced Threat Detection & Incident Response
Advanced Threat Detection & Incident Response

I specialize in real-world SOC operations, advanced detections, and rapid incident response – helping organizations identify, contain, and eliminate cyber threats before they escalate.

Data Protection & Risk Mitigation
Data Protection & Risk Mitigation

From data governance to secure architecture, I help teams strengthen privacy controls, reduce exposure, and meet modern security and compliance expectations without slowing innovation.

Trusted Expertise & Proven Credentials
Trusted Expertise & Proven Credentials

As a Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), and Certified ISO/IEC 42001 Lead Implementer, I connect cybersecurity operations and AI governance with enterprise risk, compliance, audit, and business-focused decision-making.

Cybersecurity Expertise for Leaders & Security Teams

I advise business leaders and strengthen security teams through practical cybersecurity strategy, risk guidance, and operational expertise.

Business Leaders

Security Teams

THOUGHT LEADERSHIP

Selected research

Original research and practical frameworks for security and risk leaders.

Cyber P&L: Open-Source Cyber Risk Quantification

FAIR-style Monte Carlo loss modeling for cyber risk, control valuation, risk appetite, and CISO–CFO decisions.

Explore Cyber P&L →

AI Agent Security Is an Identity Problem, Not a Model Problem

Why agent risk is governed through identity and authority, not model safety.

Read the research →

When Your Own AI Agent Becomes the Attack Path

An agent turns a hidden instruction in a vendor invoice into physical-system actions.

Read the research →

Nothing Is Pre-Authorized Until You Can Run It

Five reproducible experiments on containment authority.

Read the research →
All research →
Cover of Smart Parent's Guide to Cybersecurity by Jessen Kurien and Anand Shinde
PUBLISHED BOOK

Smart Parent's Guide to Cybersecurity

By Anand Shinde and Jessen Kurien · DevOM Publishing

Cybersecurity begins at home. Co-authored by Jessen Kurien and Anand Shinde, this practical guide helps parents and educators understand online threats, communicate clearly with children, and build safer digital habits without relying on fear.

The book also informs Jessen’s talks on digital safety, online responsibility, and cybersecurity careers for schools, colleges, families, and community audiences.

Welcome!

Solving Real Cybersecurity Challenges With Proven Expertise

Delivering practical, enterprise-grade security solutions shaped by more than 18 years of frontline experience.

Expert Guidance Backed by Real-World Experience
Expert Guidance Backed by Real-World Experience

I provide clear, actionable cybersecurity insights grounded in hands-on operational experience — not theory or generic checklists.

Strategic Defense Against Modern Threats
Strategic Defense Against Modern Threats

From threat detection to incident response, I help teams strengthen security posture and respond with confidence.

Why Choose Me

Advanced Security Solutions for Today’s Evolving Threats

Combining cybersecurity leadership with experience across eight Security Information and Event Management (SIEM) platforms, two Extended Detection and Response (XDR) platforms, and Security Orchestration, Automation and Response (SOAR), I advise enterprises on Security Operations Center (SOC) strategy, incident response, detection engineering, threat detection, cloud security, and risk-based vulnerability management. I help organizations strengthen cyber defense, accelerate response, reduce exposure, and align security operations with business risk and compliance priorities.

Core strengths include:

I combine executive-level cybersecurity advisory with practical implementation guidance to help organizations strengthen cyber resilience, reduce exposure, and achieve measurable security outcomes.

Featured research and practical tools: Cyber P&L for cyber risk quantification and security investment decisions, AI agent security and attack-path governance, cyber incident command and decision rights, and Microsoft Sentinel Defender portal transition readiness.

18+Years in Cybersecurity
8SIEM Platforms
2XDR Platforms
42K+Community Members — And Growing
Cybersecurity Advisory

How I Help

Security Operations & SOC Strategy
Security Operations & SOC Strategy

I help organizations assess, design, and mature Security Operations Center (SOC) capabilities, including operating models, workflows, detection coverage, metrics, technology strategy, and analyst enablement.

Incident Response & Cyber Resilience
Incident Response & Cyber Resilience

I help organizations prepare for and respond to complex cyber incidents through readiness assessments, incident command, investigation strategy, containment and recovery planning, executive communication, and post-incident improvement.

Enterprise Vulnerability & Exposure Management
Enterprise Vulnerability & Exposure Management

I help organizations identify, prioritize, and remediate risk across infrastructure, cloud, applications, and networks using vulnerability management, EASM, attack-path analysis, and remediation governance.

Detection Engineering & AI-Enabled Cyber Defense
Detection Engineering & AI-Enabled Cyber Defense

I help teams improve SIEM/XDR detection use cases, threat modeling, tuning, investigation workflows, SOAR automation, and responsible AI-assisted cyber defense.

AI Governance, Cyber Risk & AIMS Readiness
AI Governance, Cyber Risk & AIMS Readiness

I help leaders translate AI and cybersecurity risks into policies, controls, accountable ownership, measurable outcomes, and audit-ready evidence—supporting responsible AI adoption, ISO/IEC 42001 AIMS readiness, governance, risk and compliance (GRC), and operational resilience.

Speaking, Writing & Cybersecurity Education
Speaking, Writing & Cybersecurity Education

I deliver keynotes, workshops, executive briefings, university sessions, books, articles, and practical cybersecurity education for professional and public audiences.

Speaking audiences

Educational Institutions

Professional Audiences

Let’s Start a Conversation

Connect with Jessen about cybersecurity advisory, leadership opportunities, speaking engagements, books, research, or media. Share a little context to begin a focused conversation.