Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic
Revati Potnuru

Revati Potnuru

Senior Cyber Security Analyst
Hyderabad

Summary

Dynamic cybersecurity professional and an immediate joiner with over 7 years of specialized experience in Application Security and Governance, Risk & Compliance (GRC). Proficient in Vulnerability Assessment and Penetration Testing (VAPT), with a solid foundation in SAST, DAST, and SCA tools, as well as Web Application Security. Extensive hands-on experience with Akamai WAF, CDN, and Bot Manager enhances the ability to effectively safeguard digital assets. Strong collaboration skills facilitate alignment between security initiatives and business objectives while ensuring compliance with industry standards such as PCI-DSS, NIST CSF, CIS Benchmarks, SOC 2, and ISO 27001.

Overview

2026
2026
years of professional experience
4
4
years of post-secondary education

Work History

Senior Cybersecurity Analyst

Visa Inc.
02.2025 - 10.2025
  • Spearheaded the development and lifecycle management of baseline technical security Requirements(TSRs) and Design Security Requirements(DSRs) for a diverse portfolio of enterprise technologies, including databases, servers, and emerging platforms like ELK Stack, Redis, and multiple NoSQL solutions.
  • Contributed in reduction of Time to Market for TSR & DSRs by 272% and Manual attestions for security controls in the same, by 45%.
  • Drove cross-functional alignment on security controls by leading engagement with Cybersecurity, IT, and business stakeholders, ensuring consensus and transparent communication.
  • Pioneered an internal GenAI agent to democratize access to TSR & DSR status updates, significantly improving the efficiency of policy-related inquiries.
  • Engineered and managed JIRA dashboards to provide real-time visibility into the status of all ongoing TSRs and DSRs, enhancing project transparency and enabling executive-level reporting.
  • Proactively identified technology governance gaps by analyzing monthly reports, initiating the creation of new and updated security controls to address emerging risks.
  • Validated and mapped 12 database security controls against Visa's Key Controls and PCI-DSS requirements, ensuring continuous regulatory compliance and mitigating risk.

Cyber Security Analyst - Senior II (Senior BISO)

Fedex ACC
10.2024 - 02.2025
  • Worked with International/AMEA & MEISA/ InfoSec/Legal/IT to align on solutions & implementation to ensure FedEx's compliance with all laws and regulations and increased security posture.
  • Provided information security leadership to ensure compliance with laws and regulations based on FedEx Data Security Committee’s guidelines.
  • Developed, maintained, and improved a cyber security factbook specific to the MEISA and AMEA region based on regulatory compliance requirements and business needs in the technology ecosystem.
  • Understood regulatory compliance requirements and tracked implementation requirements.
  • Worked on understanding and rolled out InfoSec standards globally and provided enforcement reporting to the business and leadership.
  • Provided support for the Information Security FIRST process including advising and issue tracking remediation.

Security Architect

Akamai Technologies India Pvt. Ltd.
7 2022 - 09.2024
  • Architected and deployed advanced cloud firewall security solutions, customized for diverse client environments, ensuring robust network protection and compliance with industry standards for various customers across different domains comprising of healthcare, banking, credit card, HR, e-commerce, and various PCI-DSS compliant applications, leveraging Akamai's security products to enhance clients' cybersecurity defenses.
  • Implemented various Akamai products such as, App and API Protector(AAP), Bot Manager Premier (BMP), Site shield, Client Reputation,Website Delivery and Acceleration(DSA) solutions for aligned customers.
  • Offered technical guidance on best practices for securely deploying customer hostnames onto Akamai servers.
  • Successfully executed multiple security integrations for clients, resulting in competitor displacement while consistently delivering high-quality solutions within expected timelines.
  • Conducted regular Technical Security Reviews for configured firewall controls involving, DOS, WAF, Bot and N/w firewall controls, to identify weaknesses and implement appropriate countermeasures to enhance customer's security posture and improve Akamai security solutions.
  • Collaborated with cross-functional teams for seamless integration of Akamai CDN and Akamai security products into existing infrastructure.
  • Assisted in troubleshooting and mitigating live DoS attack targeting an Indian government website and helped customers with mitigation of similar DOS, DDOS, Bot and Application layer attacks and other P1 issues.
  • Implemented Network layer firewall (IP Geo Block rules and exceptions), WAF(Cloud Security) rules and exceptions, SLOW POSTprotection, Bot Protection, etc.
  • Reviewed and closed possible security gaps for aligned accounts ensuring strict and tightened Security Posture.
  • Configured Akamai's Content Delivery Network (CDN) to optimize performance and mitigate DDoS attacks for global clients.
  • Basic hands on upon Akamai's Website Acceleration products like DSA(Dynamic site acceleration), troubleshooted latency issues,configuration tuning, assistance for performance upgrades,etc.
  • Log analysis using CAT, Curl, openssl commands, and various other Akamai's internal tools to troubleshoot issues.
  • Wrote different blogs internal to Akamai on corner cases for WAF, e.g. Troubleshooting 2 similar requests containing same payload, but one gets bypassed and the other gets blocked by WAF.
  • Implemented custom security rules tailored to clients' specific needs and risk profiles using both UI and security metadata.
  • Led end-to-end ownership of technical integration processes for Security and CDN Solutions, encompassing configuration, debugging, documentation, testing, and successful go-live execution.
  • Collaborated with cross-functional teams including sales, to scope the overall integrations, set timelines, create technical solutions, and support the ongoing implementation.
  • Led training sessions and workshops to educate clients on Akamai's security features and capabilities.

Security Services Associate Consultant

Synopsys Inc
12.2020 - 06.2022
  • Collaborated with development teams to implement security best practices and ensure secure coding standards.
  • Provided security awareness training to educate teams on common vulnerabilities and best practices.
  • Collaborated with internal teams to develop a Burp Plugin, called ATOR, to support complex login sequences during Automated Security Testing.
  • Sufficient insight on Critical Vulnerabilities such as XSS, CSRF, SQL, and other custom vulnerabilities like Account compromise through various ways and RCE through exposed Apache Tomcat login Interface, etc in the applications.
  • Understood basics of Mobile Application security testing and Source Code Review.
  • Able to analyze the root cause of the vulnerability and deliver strategic recommendations during security review.
  • Trained and mentored new hires for efficient and timely project delivery by sharing expertise, knowledge, and best practices to enhance overall team performance.
  • Worked as alternate Technical Oversight, to provide technical guidance to fellow assessors
  • Delivered high-quality presentations showcasing key findings and recommendations to both internal stakeholders and clients.
  • Developed strong relationships with clients, fostering trust and ensuring long-term partnerships.
  • Managed multiple VA/PT assessments simultaneously while maintaining attention to detail, organization, and adherence to deadlines.

Security Services Associate

Synopsys Inc
09.2018 - 11.2020
  • Hands-on experience on testing application security as per the guidelines/requirements from OWASP.
  • Worked on eliminating all false positives reported by automated tools and delivered detailed reports outlining findings,recommendations, and remediation strategies for stakeholders.
  • Involved in performing retests for reported vulnerabilities once the fix was implemented at customer's end.
  • Performed automated and manual penetration testing to ensure proper security measures are taken for Applications and backend APIs belonging to different domains comprising of healthcare, banking, credit card, HR, e-commerce, and various PCI-DSS compliant applications.
  • Experienced manual testing for web APIs as well as the business logic testing.
  • Experience in report read out call with stakeholders and managed the cycle of project continuity for numerous clients.
  • Experience in defining Test Methods, in-scope items, out-scope items and Policies.
  • Performed manual testing for web APIs as well as business logic testing.
  • Performed numerous(150+) Web Applications, Web Services Security Testing.


Education

PG-DIPLOMA - IT Infrastructure, Systems and Security

CDAC, Electronic City
Bengaluru
02.2018 - 08.2018

Bachelor of Technology(B-Tech) - Electronics and Communication Engineering(ECE)

NSRIT(Formerly VITS College of Engineering) (Affiliated To JNTU-Kakinada)
Visakhapatnam, India
09.2013 - 06.2017

Skills

Web Application and Web API Security Cryptography SAST DAST SCA VAPT Akamai CDN and security products Akamai WAF BMP SiteShield Akamai App & API Protector DNS SSL Certificates GRC JIRA Stakeholder & Cross-regional and functional collaboration Effective Written & Communication Skills

Accomplishments

  • Received Uplifts by various SMEs across VISA for my dedication in learning the technology, understanding it in depth and for quick & efficient deliveries.
  • Vulnerability of the Month Award for reporting custom vulnerability, RCE through exposed Apache Tomcat login Interface for a PCI-DSS compliant web application for a major Credit Card-Service client. (03/2019 - 03/2019)
  • Rewarded for TWB Ideathon - Top contributions - "Top 20 ideas [with most votes] Category (05/2021 - 05/2021)
  • Recognition Awards from Team Lead and Project Manager for (09/2021 - 09/2021)
  • Received Spot Bonus from the organization for contributing to develop a custom Burp plugin ATOR and JARVIS by giving necessary inputs and different scenarios to develop it. (10/2019 - 10/2019)
  • Received appreciation from the client for delivering multiple DAST engagements within a limited time including weekends (09/2019 - 10/2019)
  • Stood as the TOPPER of the college in B-Tech 1st & 4th year in ECE for the academic year 2013-14 & 2016-17 respectively (02/2014 - 04/2017)
  • Delivered Alumni Tech talk to over a 100+ students in NSRIT on career guidance in Cyber Security
  • Creativity skills like writing short verses in English, photography and Cooking.
  • Got one of my poems published in Akamai's APJ PS Magazine.
  • Received various customer appreciation emails for dedicated efforts & commitment in ensuring timely delivery of various WAF and Bot related reviews and mitigations

Timeline

Senior Cybersecurity Analyst

Visa Inc.
02.2025 - 10.2025

Cyber Security Analyst - Senior II (Senior BISO)

Fedex ACC
10.2024 - 02.2025

Security Services Associate Consultant

Synopsys Inc
12.2020 - 06.2022

Security Services Associate

Synopsys Inc
09.2018 - 11.2020

PG-DIPLOMA - IT Infrastructure, Systems and Security

CDAC, Electronic City
02.2018 - 08.2018

Bachelor of Technology(B-Tech) - Electronics and Communication Engineering(ECE)

NSRIT(Formerly VITS College of Engineering) (Affiliated To JNTU-Kakinada)
09.2013 - 06.2017

Security Architect

Akamai Technologies India Pvt. Ltd.
7 2022 - 09.2024
Revati PotnuruSenior Cyber Security Analyst