I am a cybersecurity executive with over 15 years of experience building and leading security programs across cloud, fintech, and regulated enterprise environments.
As the founding security engineer behind the AWS Managed Security capabilities, I contributed to shaping how large-scale cloud environments detect and respond to threats globally.
At Payhawk, I built the security function from the ground up, supporting the company's growth to unicorn status and achieving multiple regulatory and compliance milestones, including PCI DSS, NIS2, DORA alignment, SOC, ISO 27001, CSA, and EMI licensing requirements.
Today, I serve as CISO at Evrotrust and President of the Bulgarian Cybersecurity Association, where I focus on strengthening national cyber resilience and driving meaningful collaboration between the public and private sectors.
Beyond my executive roles, I actively support the cybersecurity ecosystem through community leadership, public speaking, mentoring, and product evaluation. I have co-organized initiatives such as OWASP Sofia and XAKEP.bg, and have delivered lectures and training across Europe.
This website is a structured overview of my work, projects, speaking engagements, and contributions to the cybersecurity community.
Tools and resources I've built for the security community.
Comprehensive Bulgarian language wordlists for security testing, NLP, and research.
github.com/miglenPython package for validating, parsing, and generating Bulgarian EGN (unique citizenship numbers).
github.com/miglen/egnUserscript that removes the distracting news feed from LinkedIn for focused networking.
github.com/miglenCurated reference of Linux networking utilities — netstat, ss, iptables, and more.
github.com/miglenCo-organizer of the Sofia chapter, building local AppSec community.
owasp.orgThe largest online cybersecurity community in Bulgaria.
xakep.bgAdvancing national cyber resilience and public-private sector collaboration.
cybersecbg.orgRegular speaker and advocate for cyber awareness in Bulgaria.
cybersecuritytalks.bgRegular speaker and advocate for cyber awareness in Bulgaria.
dev.bg/groups/cyber-securityAdvancing national cyber resilience and public-private sector collaboration.
csf.bgLeveraging over a decade of hands-on security experience across cloud, fintech, and enterprise to help organizations build resilient security postures.
Strategic cybersecurity guidance for executives and boards. Helping you make informed security decisions aligned with business objectives.
Navigate complex regulatory landscapes with confidence. From preparation to audit, ensuring your organization meets and maintains compliance standards.
Fractional CISO leadership for organizations that need senior security expertise without a full-time hire. Embedded, hands-on, and accountable.
Practical, engaging training programs tailored to your organization — from developer security workshops to executive awareness sessions.
Free mentoring for aspiring cybersecurity professionals. Whether you're starting out or looking to level up, I'm happy to help with career guidance and technical growth.
Hands-on offensive security assessments to find vulnerabilities before attackers do — across web, mobile, API, and AI-powered systems.
Open to speaking invitations, security advisory, mentoring, and collaboration on cybersecurity initiatives or just chat!