Summary
Overview
Work History
Education
Skills
Languages
Accomplishments
Certification
Timeline
Generic
Adrika Mukherjee

Adrika Mukherjee

Bangalore

Summary

Dedicated and results-oriented Application Security Analyst and project manager with 6+ years of experience in identifying and mitigating security vulnerabilities in software applications. Proven expertise in conducting thorough security assessments, implementing robust security measures, cloud monitoring (CSPM, CWPP, WAF, Castills) and collaborating with cross-functional teams to ensure the integrity of critical systems. Seeking a challenging role to leverage my skills in enhancing the security posture of organizations.

Overview

6
6
years of professional experience
1
1
Certification

Work History

Cyber Security Project Manager

Decathlon Sports India
Bangalore
02.2025 - Current
  • Conducted risk assessments to identify potential areas of vulnerability and helped in providing necessary feedback to ensure that they address the stakeholders' (N/W, Cloud, Product, business, Engg) doubts and challenges pertaining to the remediation of open issues.
  • Advised senior management on strategies for mitigating cyber threats.
  • Performed API security penetration testing on internal Decathlon endpoints using Burp Suite and Postman to ensure robustness.
  • Measuring and analyzing the performance of cloud resources, including response times, throughput, resource utilization, and security, in tools like PrismaCloud and SplunkCloud. Enhancing the CSPM score, which continuously monitors and assesses the security posture of the entire cloud infrastructure. Improving CWPP, which focuses on protecting workloads running within the cloud, such as virtual machines (VMs), containers, and serverless functions.
  • Analyze and monitor WAF (Web Application Firewall) score, which helps identify variations of known attacks and their malicious payloads. Maximizing protection with our firewall, like Cloudflare, which recommends that we use both Managed Rules and attack score.
  • Ensuring quarterly vulnerability assessments (VAs) of cloud servers, and ensuring semi-annual configuration audits (CAs) of network switches and firewalls are executed by third-party vendors.
  • Developed training materials for staff members on best practices for information security and phishing programs for global counterparts.
  • Coordinated with internal stakeholders on incident response activities in XMCO, which aggregates all services on a single platform and provides alerts on new vulnerabilities to help consolidate the monitoring of all security actions.
  • Evaluated and onboarded third-party vendors for incident management response, and monitored their daily activities and analysis of new threats.

Senior Security Professional

Lexmark
Kolkata
02.2022 - 02.2025
  • Lead and execute comprehensive security assessments on web applications, API endpoints, and thick client applications, identifying vulnerabilities and providing actionable recommendations for remediation.
  • Conduct manual and automated penetration testing, and network scans via Nmap and Tenable.io.
  • Working on security assessment tools like Burp Suite Pro, Postman, Kali Linux, Metasploit, msfvenom, Hydra, Process Monitor, Wireshark, etc.
  • OWASP Top 10 concepts and implementations.
  • Collaborate with development and operations teams to integrate security best practices into the software development life cycle (SDLC), and agile model.
  • Maintained up-to-date knowledge of latest developments in information technology and cybersecurity trends. In monthly newsletters broadcast globally.
  • Monitored performance metrics to identify areas of improvement.

Senior Analyst

Capgemini
Mumbai
04.2019 - 02.2022
  • Mapped processes to holistically examine business flow and identify improvement opportunities.
  • Knowledge about OWASP top 10.
  • Running application security testing on Qualys Guard tool, burp suite, webinspect, etc.
  • Cybersecurity concepts, TCP/UDP, TLS/SSL protocol, 3 triads of security.
  • Decision-making, analytical skills.
  • Maintained updated knowledge base on industry trends and best practices.
  • Collaborated with IT teams on new tools and technologies.

Education

B.tech - Information Technology

B.P.Poddar Institute of Management and Technology
Kolkata, India
06.2018

Skills

  • Web Applications Security
  • Manual Penetration Testing
  • Thick client Applications testing
  • OWASP top 10
  • Burp Suite
  • Kali Linux
  • Metasploit
  • Sqlmap
  • Postman
  • Wireshark
  • Jenkins
  • Network scanning tools
  • Security Awareness and mitigation
  • API security
  • Cloud security
  • CSPM and CWPP
  • Web Application Firewall score
  • Splunkcloud and Prismacloud
  • Project and Incident management
  • Third party vendor management

Languages

  • English
  • Bengali
  • Hindi

Accomplishments

  • Won the best Kubernetes deployment team award at the prestigious Dine with DevOps event in Shangri-La, Bangalore We received an award for "Best Kubernetes Deployment Team (Retail & e-commerce)" on behalf of Decathlon Sports India in one of the flagship events for the DevOps industry.
  • Successfully participated and ran in The TCS World 10K Bengaluru 2025 which took place on Sunday, April 27, 2025. The TCS World 10K Bengaluru 2025 seems to have been a memorable and inspiring event, blending the thrill of competition with a strong sense of community and purpose.
  • Officially felicitated by Lexmark CEO Allen Waugerman for identifying and reporting a vulnerability in our Lexmark printer and ESF devices in the 2024 F2F Lexploit, my team had been very supportive, and we together reported many major vulnerabilities throughout our Lexmark printer devices.

Certification

  • The Certified Ethical Hacker (CEH) v12 certification from EC-Council

Timeline

Cyber Security Project Manager

Decathlon Sports India
02.2025 - Current

Senior Security Professional

Lexmark
02.2022 - 02.2025

Senior Analyst

Capgemini
04.2019 - 02.2022

B.tech - Information Technology

B.P.Poddar Institute of Management and Technology
Adrika Mukherjee