Shrewd Security Specialist possessing 9 years acumen directly handling risk-related aspects of technology and data management. Maintains exceptional systematic compliance with policy and guidelines to assess vulnerability and protect crucial information. Thorough consultation throughout technology roadmap, design and launch. Factors latest protocols governing vulnerability assessment to determine internal security policy.
Overview
8
8
years of professional experience
5
5
years of post-secondary education
Work History
Information Security Specialist
BNY MELLON International Operations India Private Limited
Chennai
07.2022 - Current
Assist product teams in moving applications through application design & delivery checkpoints particular about controlling risk exposure to corporation of any designed solutions, ensuring information risk and technology-based policies are adhered to and advising generally on infrastructure design including ensuring adequate availability and resilience
Improved 13 legacy application with risk assessment and remediation by understanding impact of changes and risks within components and how it impacts wider environment.
Investigate, document and track where organization exposes business to significant risk including end of life software, hardware, and infrastructure components
Worked on 9 UDT's (User defined technologies) with technical investigations, risk remediation and stabilization.
Perform deep technical reviews of existing platforms with view to identifying major risk and resiliency issues and looking for ways to optimize costs through infrastructure consolidation and simplification
Participate in Architectural process and architecture forum, reviewing proposals and making recommendations, ensuring consistency with other Developments, and adhering to organization's Architectural standards
Consulted with team members to assess flawed root causes and plan for remediation.
Minimize issues arising from Ethical Hacks, static and dynamic scans, vulnerabilities and Policy Exceptions by working with product teams to overcome technical barriers, and thereby preventing Policy Exceptions
Keep abreast of current and emerging trends in architectural practices particularly in (though not limited to) risk, resiliency and platform technology spaces.
Contributed system road mapping, design and launch services to address information vulnerability.
Performed risk analyses to identify appropriate security countermeasures.
Worked with other teams to enforce security of applications and systems.
Recommend improvements in security systems and procedures.
Senior Lead
Tata Communications Ltd
Chennai
01.2019 - 06.2022
Research various sources for getting open-source threat intelligence feeds
Integrate various sources to threat intelligence platform (through API/crawl/feeds)
Developed more than 20 SOAR playbooks for automated threat hunting in SIEM devices.
Developed APIs to provide cyber threat intelligence feeds for security devices (LogRhythm etc.,)
Develop BAST (Breach and Attack Simulation) solution on top of open-source tool Caldera from MITRE.
Working as part of red team in designing approach, developing / modifying tools to use in red team exercise as well as in BAST
Performing SAST for applications using vendor tool and help in remediating issues
Participating and preparing report as part of pen test and red team exercises to present to customer with remediation recommendation
Setup and integrate sandbox for malware analysis with cyber threat intelligence platform
Worked on integrating exposure monitoring product from OEM with existing platform.
Built strong relationships with customers through positive attitude and attentive response
Worked with team to identify areas of improvement and devised solutions based on findings
Member of Technical Staff – II
Netskope
Bangalore
11.2014 - 01.2019
Research and analysed how SaaS applications work (in aspects of security)
Perform Deep Packet Analysis of internals of SaaS applications
Develop content to identify various aspects of SaaS applications security
Develop scripts to gather information about security aspects from webpages of SaaS applications using python and natural language processing
Designing and implementing end-to-end systems that interact with other systems that are also part of larger distributed system
Develop scripts in python for new features development as well as features enhancement (Also, involves Ansible, GitHub, Jenkins)
Increased product stability by 30% by debugging and fixing bugs
Write unit tests for product and covered 100% of code.
Restructure overall logic and increased product execution time by 50%.
Applied effective time management techniques to meet tight deadlines.
Used critical thinking to break down problems, evaluate solutions and make decisions.
Education
Master of Science - computer networking
University of Bedfordshire
Luton, United Kingdom
05.2012 - 05.2013
Bachelor of Engineering - computer science and engineering
Gnanamani College of Technology
Namakkal, India
08.2007 - 05.2011
Skills
Risk management
undefined
Timeline
Information Security Specialist
BNY MELLON International Operations India Private Limited
07.2022 - Current
Senior Lead
Tata Communications Ltd
01.2019 - 06.2022
Member of Technical Staff – II
Netskope
11.2014 - 01.2019
Master of Science - computer networking
University of Bedfordshire
05.2012 - 05.2013
Bachelor of Engineering - computer science and engineering
Gnanamani College of Technology
08.2007 - 05.2011
Similar Profiles
Mangesh JoshiMangesh Joshi
Lead Manager at BNY Mellon International Operations (India) Private LimitedLead Manager at BNY Mellon International Operations (India) Private Limited