Summary
Overview
Work History
Education
Skills
Timeline
Generic
Devendra  Kumar

Devendra Kumar

Senior Engineer 2 - AI Security and DevSecOps
Gurugram

Summary

13 Years of diverse experience. Persistent towards the goals with excellent research and critical analysis abilities.

Expert in AI Security, MLSecOps, Generative AI Security, Machine Learning Security,MLOps LLM Security, AI Risk Management, RAG Architecture Security, Vector Database Security, ML-BOM, LLM Supply Chain Security, LLM Guardrails, Privacy Preserving Techniques, Prompt Security, Data Security, AI Bias Detection and Fairness, LLM Observability, Responsible AI, Trustorthy AI, AI Regulations, DevSecOps, Kubernetes Security, Container Security, Cloud Security, CNAPP, Infrastructure Security, Application Security Tools(SAST,SCA and DAST), Security implementation with CIS benchmarking, API Security, GitHub Advanced Security, Snyk, Mend, Veracode, Sonarqube, Tenable, JFrog XRay, Kyverno, Falco, Burp Suite, Dockle, TruffleHog, DataDog, Python, Selenium, Automation, RPA(Robotic Process Automation), Jenkins, Security Document writing etc.

Overview

13
13
years of professional experience
4
4
years of post-secondary education

Work History

Senior Engineer 2 - AI Security & DevSecOps

Deloitte USI
1 2022 - Current
  • I am leading AI Security, Gen AI Security, MLSecOps, DevSecOps, Platform Security, Cloud Security, Kubernetes Security, Container Security, Web Application Security, IaC Security and API Security.
  • I am coordinating with India, US, Australia and European teams and reporting to VP.
  • Prepared complete Generative AI security documents for different kind of risks.
  • Conducted multiple security awareness sessions for more than 65 engineers on AI Security, Generative AI Security and MLSecOps.
  • Educated developers on different kind of security best practices in AI domain like LLM Security, RAG Architecture Security, Vector Database Security, ML-BOM, LLM Supply Chain Security, Privacy Preserving techniques, Prompt Security, Data Security, LLM Observability, MLOps Security, Privacy preserving techniques etc.
  • Educated developers on different kind of Security frameworks and standards like NIST AI Risk Management Framework, Gen AI Risk Management, OWASP LLM Top 10, EU AI Act, MITRE ATLAS, AI Vulnerability Databases, Google's Secure AI Framework (SAIF), Model Risk Management for AI Models, ISO/IEC 5338:2023, ISO/IEC 42001:2023, ISO/IEC 23894:2023, ISO/IEC 38507:2022, ISO/IEC DIS 42005, Responsible AI, Trustworthy AI, AI Ethics etc.
  • Implemented/POC of different AI security tools like NB Defense, ModelScan, Guardrails AI, DataDog LLM Observability, Nightfall AI, Robust Intelligence, Arthur AI, Lasso Security, Pymetrics Audit AI etc.
  • Prepared 17 detailed security risks of Gen AI Tools(Microsoft GitHub Copilot) and educated to developers.
  • Responsible for Web application vulnerabilities remediation with developers using different tools in different projects like Snyk, Veracode, Mend, GitHub Advanced Security, SonarQube, Burp Suite etc.
  • Responsible for Secrets remediation using GitHub Advanced and Trufflehog tools.
  • Responsible for Cloud Security using different tools Tenable and Datadog CNAPP.
  • Implemented CIS Benchmarking of AWS services, Kubernetes Clusters(AWS and Azure) and Containers.
  • Implemented Kubernetes Security including 23 Kyverno security policies in AWS&Azure Kubernetes clusters, Falco for Kubernetes run time detection and observability using DataDog.
  • Implemented Container Security using 19 generic Docker file best security practices, 21 Java Docker file best security practices, Dockle tool for Docker file scanning and JFrog XRay and Snyk for third party vulnerabilities.
  • Implemented API Security observability using Datadog.
  • Responsible for preparing security documentation of best practices, POCs, Implementation steps etc.

Technical Leader - DevSecOps

Capgemini
12.2020 - 1 2022

•Led DevSecOps/DevOps team for Nvidia 5G Project and QNetworks 5G Project.
•Responsible for assigning the tasks to the team and managing confluence page and Jira according to sprint planning.
•Responsible for preparing Vulnerability scanning tools comparison to implement in Jenkins.
•Responsible for preparing Dockerfile best security practices and educated developers for implementation.
•Scanned all docker images using AWS ECR and remediated the vulnerabilities.
•Responsible for POC of Kyverno and OPA for Kubernetes security implementation.
•Responsible for reviewing security practices for AWS services.
•Responsible for educating developers for all security best practices in Web Applications, AWS Cloud, Containers and Kubernetes.
•Responsible for identifying sensitive information in log files and eradicated them.
•Responsible for leading DevOps work including 5G call flow automation using Jenkins, 5G Keysight
•Automation using Python Programming Language, 5G orchestrator testing using Kubernetes, Docker, Kubespray, AWS EKS, AWS S3 bucket and AWS SQS, infra deploy and destroy testing and identifying root cause in case of failure checking logs of infra, orchestrator and Ansible.

Senior Test Analyst

Adobe Systems PVT. LTD.
07.2019 - 12.2020

•I was working at client location in Adobe Systems Pvt. Ltd. and my company role was UST Global(CMM Level-5 and Great place to work).
•Responsible for educating developers related to security best practices for API Security, Web Application, Containers, Kubernetes and AWS Cloud.
•Responsible for Sonarquebe exploration.
•Responsible for educating developers related to security best practices in JavaScript and Python programming language.
•Responsible for Automation and Manual testing of different cloud services e.g. Virtual Private Cloud(Ubuntu, Windows and Centos Server), Bare Metal, LBaaS, LCaaS, HPC, Storage, Kubernetes,
Machine Learning, PLM portal,TLM Portal, Cloud Governance Portal etc.
•Responsible for Regression testing of 400 Automation scripts using Jenkins CI/CD Pipeline, and adding new automation scripts as per new features implementation.
•Responsible for developing new automation framework for new portals and writing new Automation scripts using Python Programming Language, Selenium and Unit testing.
•Responsible for PLM Portal Automation using Relay RPA tool(Adobe proprietary Robotic Process Automation tool).
•Responsible for REST API Testing using Postman tool.
•Responsible for REST API Automation Testing using Python Programming language.
•Responsible for servers, projects, failed instances testing in MySQL Database using SQL queries.
•Responsible for fetching database results automatically using Python-pandas and mysql.connector modules.
•Raised more than 80 bugs in UI and REST API testing.
•Responsible for SSL certificate deployment testing on AWS cloud.
•Responsible for performance testing of APIs using JMeter.

Senior Software Engineer

Velankani Software PVT. LTD.
07.2017 - 07.2019

•Won Manger's Award for my contribution and dedication towards System Test for multiple releases, conducting sessions on Wireless, HFC and services (Fiber and FTTH Network Planning) activities in the year 2018.
•Responsible for writing Automation testing scripts in Robot framework using Python programming language and Pyautogui module for Automated NOCPlan GIS product used for Fiber, FTTX, FTTH, Copper and 5G-Fixed Wireless Access Network
Planning.

•Responsible for Automation script writing, regression testing, product quality check, manual testing, load testing, performance testing and UI testing.
•Responsible for raising bugs in Redmine and tracking different product release results in SVN.
•Responsible for requirement gathering, test case writing, test case execution and user story writing for new features.
•Responsible for writing REST API scripting in Python for data extracting from ESRI ARCGIS website.
•Responsible for Reports on web portal Automation using Selenium and Python.
•Responsible for exploring AWS cloud for reports on cloud.
•Responsible for data analysis of different reports(Construction cost, Links, Nodes, sites etc) using Python-Matplotlib and pandas modules.
•Wrote 360 Automation scripts for product features and reports including new script writing and change old script according to product features change in new release.

•Responsible for 5G-FWA implementation in the product including requirement gathering, 92 test cases writing, testing and user story writing.
•Raised 121 bugs including 7 blocker and 29 critical bugs in Product Testing and Reports on Web Testing.
•I got the training on Virtualization and Docker.

•Analyzed various types of Geo Spatial Data for Network Planning using Fiber, FTTX, FTTH (Fiber to the Home),copper and 5G-FWA
Technologies/Architectures using Q-GIS and Google Earth.

FTTH Lead

Videocon Telecommunication Limited
06.2015 - 06.2017

•Head of Planning and Execution for different Wire line Access Networks like Fiber, FTTH (Using GPON technology), FTTN, FTTB, Copper (Using DSL technology) and HFC(Hybrid Fiber Coaxial) Network-EOC (Similar to DOCSIS 3.1).

•Execution Head of other Operator's Network (Reliance Jio's FTTX project and LCO's FTTX Project) rollout.

•Won best Execution Head award in all technologies rollout.
•Responsible for handover the new rolled out network to O&M team after proper quality check and testing of equipment's power.
•Responsible for Quality check, testing equipment power, Vendor Management, Material Management, Billing, ROW Permissions, Site selection and Site shifting.
•Rolled out 26000 Retail Ports in FTTH, Copper and EOC Networks & 220 Enterprise clients' connectivity in FY 2016-2017 & FY 2015-2016.
•Planned 90000 Ports of FTTH Network, 17000 Pairs of Copper Network and 7000 Ports of EOC Network.
•Rolled out more than 500 Km Network for Aerial, Underground and In Building connectivity.
•Rolled out more than 50 Areas from site installation to Access Network rollout.
•Prepared complete scope of work for GIS implementation (ESRI-GIS, GE-Small world and C-DOT) of already laid Network.
•Responsible for Survey, Planning and Execution of Fiber, FTTH, FTTN, FTTB, Copper and EOC Networks for Retail customers and Enterprise customers.
•Responsible for Preparation of Bill of Quantity (BOQ), Return on Investment (ROI) and Cost Benefit Analysis (CBA) sheets for cost effective delivery for all technologies.
•Responsible for Equipment's selection like OLT (Huawei-MA5600T, MA5603T, and MA5608T), MSAN (Huawei-UA5000) and DSLAM (Huawei-MA5612) for Access Network rollout according to conditions.
•Responsible for delivering live network after testing and quality check with coordination of NMS(Huawei- U2000) team with proper customer to OLT(Huawei- MA5603T) and OLT to Mux(Tejas-TJ1400) connectivity including proper Bandwidth allocation, proper Splitter powers and ONT power.
•Responsible for leading a team of 10 Engineers and 10 Vendors and coordination with cross functional teams like Admin, SCM, Data, OSP, Electrical, O&M, CSD, Retail Sales and Enterprise Sales team for within time line delivery.

FTTH Planning Engineer

Bechtel Corporation
10.2014 - 03.2015

•Planning of FTTH Network for US based Operator
(Google Fiber) using 3-GIS tool.
•Responsible for delivering Backhaul, Distribution,
LCP and NAP to Customer premise Planning and
Designing as per guidelines and quality parameters.
•Budget planning for cost effective delivery.

Sr. Engineer - Network Planning and Engineering

Himachal Futuristic Communication Limited
06.2011 - 10.2014

•Planning of OFC network for Reliance Jio Infocom Ltd. (4G LTE Roll Out) using GIS Tool (ESRI Arcs GIS and Ericsson Telecordia Network Engineer (NE)).
•Responsible for testing and analysis of routes in ArcGIS for different kind of scenarios and share the report for mismatches to the management.
•Responsible for testing of new features provided in the ArcGIS for Network Planning.
•Planned FTTH network for Noida, Gurgaon and Delhi cities.
•Planned approx. 40000 km of NLD and 38 cities Intra city network for RJIL 4G Projects.
•Planned LM for PAN India MPlex & RCOM leased routes.
•Responsible for data analyzing for different kind of routes for best optimal solution using Microsoft excel and Visio.
•Responsible for IFC (Issued for Construction) drawing release to RJIL & circle construction team.

Education

Bachelor of Engineering - Computer Science

Rajasthan University
Jaipur
07.2005 - 08.2009

Skills

Adaptability- Worked in different cultures in every organization and produced excellent results

Team Work - Excellent collaboration with different teams in Vulnerability remediation

Initiatives- Initiated AI & Machine Learning Security

Timeline

Technical Leader - DevSecOps

Capgemini
12.2020 - 1 2022

Senior Test Analyst

Adobe Systems PVT. LTD.
07.2019 - 12.2020

Senior Software Engineer

Velankani Software PVT. LTD.
07.2017 - 07.2019

FTTH Lead

Videocon Telecommunication Limited
06.2015 - 06.2017

FTTH Planning Engineer

Bechtel Corporation
10.2014 - 03.2015

Sr. Engineer - Network Planning and Engineering

Himachal Futuristic Communication Limited
06.2011 - 10.2014

Bachelor of Engineering - Computer Science

Rajasthan University
07.2005 - 08.2009

Senior Engineer 2 - AI Security & DevSecOps

Deloitte USI
1 2022 - Current
Devendra KumarSenior Engineer 2 - AI Security and DevSecOps