Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
Durga Surya Kumar Simma

Durga Surya Kumar Simma

Application Security Manager
Bangalore

Summary

A focused individual who has good interpersonal and

organizational skills. Profound communication skills

and a good technical engineer & a people manager

who believes in leading by example. A great counselor

and technical trainer responsible for Security Program

Management and Assesments.

Overview

10
10
years of professional experience
6
6
years of post-secondary education
7
7
Certificates

Work History

Application Security Manager

Experian Services India Pvt Ltd
Bangalore
05.2023 - Current

Work with the Application Security Director (Global Product and Cloud Security) and peers to provide effective strategy for Application Security, including static scanning (SAST), dynamic

scanning (DAST), Interactive Application Security Testing (IAST), Runtime Application Self Protection (RASP), Software Composition Analysis (SCA) and Penetration Testing Engage with CTO’s and CIO’s to ensure strategy is understood agreed and implemented across all Experian Regions.


Develop and implement strategy for an effective DevSecOps champion community


Ensure that Vendors provide best possible service. Lead education and awareness strategy, design and rollout for Development community.


Identify new and emerging threats and address strategically and tactically as required.


Provide guidance in the value delivery of Experian Penetration testing Program.

Security Testing Manager

Experian Services India Pvt Ltd
Hyderabad
12.2021 - Current

Lead a team of 25 in-house penetration testers and responsible for the Penetration testing Global Program.

Technical support and coaching the team to enhance their skill set.
Champion and own Policy improvements based on feedback from customers and department managers.

Implement solutions to scale security testing and enable engineering teams to identify security flaws and vulnerabilities prior to production.

Technical support and management of Application Security Program.

Serving as SME all Penetration Testing activities to address and resolve flaw findings.

3rd Party Vendor Management.

Review Legal & Compliance requirements for Penetration Testing.

Plan the assessments based on GDPR & CERT-IN Regulations.

Liaise with Senior Management on Penetration testing roadmap and budgeting.

Senior Security Consultant

Emirates National Bank Of Dubai
Dubai
12.2020 - 11.2021

Secure SDLC/Design Reviews

Perform Threat Modelling exercise for all Finacle developments.
Review the code using automated tools Checkmarx & Veracode.
Worked on multiple Security Tools in DAST SAST IAST & container security space
Discuss with stake holders from different squads and implement secure solutions
Vulnerability remediation for developers
Whitebox application assessments- DAST, SAST & Penetration testing
API security reviews using Postman
Log Review - App & Server log analysis and monitoring
PCIDSS - card data secure design reviews
Travel with product team & participate in Agile Scrum calls, retrospect calls.
Drive product security from design phase.

Senior Consultant

Aujas Networks
Bangalore
10.2017 - 04.2020

Lead Blue team for Trading client in US and a team of 15 testers.

Manage & mentor Application Security/Pen-testing Program for clients.

Security audits performed for multiple clients across Banking, Investment & Finance domains.

Worked on DevSecOps initiatives

Rewarded by multiple clients

Associate

Cognizant Technology Solutions Pvt Ltd
Chennai
10.2013 - 10.2017

Worked extensively on SAST and DAST programs for Discover bank.

Working sessions with developers on Code review defects.

Education

MBA - Global MBA

Deakin University
Australia
02.2022 - Current

Bachelor of Science - Electronics & Communication Engineering

Amrita School of Engineering
Bangalore
06.2009 - 05.2013

Skills

    Application Security

undefined

Certification

Certified Information Systems Security Professional

Timeline

Project Management Professional

09-2023

Application Security Manager

Experian Services India Pvt Ltd
05.2023 - Current

Certified Information Security Manager

01-2023

Certified Information Systems Security Professional

11-2022

MBA - Global MBA

Deakin University
02.2022 - Current

Security Testing Manager

Experian Services India Pvt Ltd
12.2021 - Current

Comptia Security+

07-2021

Comptia Pentest+

04-2021

Senior Security Consultant

Emirates National Bank Of Dubai
12.2020 - 11.2021

AWS Security Speciality

10-2020

Senior Consultant

Aujas Networks
10.2017 - 04.2020

Certified Ethical Hacker

01-2016

Associate

Cognizant Technology Solutions Pvt Ltd
10.2013 - 10.2017

Bachelor of Science - Electronics & Communication Engineering

Amrita School of Engineering
06.2009 - 05.2013
Durga Surya Kumar SimmaApplication Security Manager