Experienced, accomplished and result oriented CISSP certified Security Expert with over 13+ years of experience in designing, implementing, and managing robust security solutions predominantly in Identity Access and Governance domain with proven track record of leading,managing and coaching high-performance teams in designing and implementing robust security solutions, modernizing and re-architecting both in-house and vendor product capabilities. Expertise in leading efforts in architecting Novel In-house IDM solution with market leading best-in-class technologies and open-source solutions, operational excellence efforts with CICD for IAM Infra and deployment builds, various IGA products migrations and major version upgrades, BCP and DR planning and implementation, partnering for GRC risk assessments and various cross-functional efforts across security spaces on DLP device control, Network monitoring and security.
As part of Security Ninja / Champion, drove and motivated cross-portfolio product teams to cultivate and understand different organization product security initiatives and strategies on DevSecOps, vulnerability management, Incident response and security awareness and facilitated numerous Threat Modelling exercises with product teams to imbibe Security culture.
Seeking a challenging role to leverage my Security expertise in managing and optimizing security operations, fostering a culture of continuous improvement, and ensuring the highest standards of information security.
Security Domain / Technologies: Identity Access and Governance, SOA, Threat Modelling, Risk Assessment and Auditing, SAML, OAuth, OpenID, PAM, SIEM, Product Security, Vulnerability Management, Cloud Security
Management: Team Management and Leadership, Team building and coaching, Conflict resolution, delegation, problem solving
Product Lifecycle: Secure Design and Architecture, Implementation, Operational excellence
Security tools: OIM, Broadcom (CA) IGA, Password Vault, CyberArk, Threat Dragon, In-house SIEM, CrowdStrike, ZScalar, Chef and HashiCorp Vault
Programming / Scripting Languages: Java, Python, shell, Spring framework, structs, SQL
CICD tools: Docker, Artifactory, Jenkins, Chef, Chef vault and HashiCorp Vault
Compliance: SOX, PCI DSS, HIPAA
Business Domains worked: Healthcare, Banking, Retail
Certified Information Systems Security Professional (CISSP)
Available upon request
Certified Information Systems Security Professional (CISSP)
ISMS Lead Auditor / Implementer
Oracle certified Core Java and Web developer