
Security practitioner with 16+ years of industry experience into Cyber Security. Proven track record in establishing and managing Security Operations both on-prem and Cloud. Aimed towards enhancing the security needs of an organization. An innovative thinker with strong passion for learning and motivated towards achieving a progressive milieu.
* Product security manager responsible for securing the products per Nutanix defined processes, continuous monitoring and improvement of security needs.
* Owner of secret management – Secret lifecycle is the key responsibility and manage secrets across products used within the organizations for its security.
* Just in time access solution – management of inhouse on demand access solution to assets
* Security operations – managing 12x7 security operations center for detection, assessing and responding to security threats to the products.
* Vulnerability management – responsible for product vulnerability management and its lifecycle
* CMDB and DDoS protection
* Partner with Engineering and R&D group for any new products as a security champion to bring/add security as a core component right from the beginning using zero trust architecture.
* Responsible for product compliance against different standards and certifications.
* Responsible for defining the roles and skills needed to deliver security group mission and also make decisions on direct versus contractor staffing, hire and develop talent, plan shift schedules to ensure appropriate resources on each shift, forecast and plan for future staffing needs.
· SIEM Administration and Management
· Performed threat modeling and assessment for services/products.
· Secrets Management – operations & administration through Hashicorp Vault.
· PKI administration for CA & Internal Certificate authority (ICA)
· Identity and Access Management along with Federated Identity
· Global Information Security (GIS) member led performing Incident response across regions and managed Global Security Operations Center (SOC)
· Established SOC right from the scratch and monitored for security threats of the organization.
· Document findings for management and technical staff on recommendations with mitigating actions.
· EDR - Implementation of Carbon Black Defense & Response solutions and OSSEC in a distributed architecture spread across different regions.
· Audit & compliance – Supporting business and customer requirements in different geographies for Privacy,
Compliance & Audit requirements covers ISO, FedRAMP, PCI, HIPAA
· Managed Global Security Operation Center (SOC) team and enhanced the SOC Framework by defining the
Standard Operating Procedure (SOP) that helps Analyst to co-ordinate with the Global Customers and
identify diverse security threats within the Organization.
· Research and Identification of Advanced Persistent Attacks through proactive monitoring strategies.
followed by analysis of Attack Vectors which might pose a threat to the Global Accenture Environment
· Subject Matter Expert (SME) for SIEM Technology, Intrusion Detection and Prevention (IDP) Systems,
Firewalls, Web Gateways and diverse perimeter devices that assists in the definition of custom based correlation rules based on the environment to help identify advanced threats.
· Developed cyber security processes and procedures to supports service-level agreements (SLAs).
· Security architect to scope on-boarding services for security monitoring on both cloud and on-prem.
· Provided flexible, around-the-clock (24x7x365) expertise to preemptively protect Fortune 500 customers against known and Emerging Threats through rigorous monitoring of security incidents generated by diverse security devices followed by timely review and assessment of the situation, and possible escalation to the client.
· Responsible to lead, mentor and cross train shift engineers in diverse security technologies to help them identify Root Cause Analysis (RCA) and to operate on the Incident Management Process
· Performed Deep Packet log analysis based on the logs collected from devices installed in customer environment that helps in identification of Security threats.
· Validating the Change Management Request from Security Engineering Team to implement the necessary
enhancements that need to be initiated on the Customer Perimeter Devices
· SME for Infrastructure security for different technologies like Firewall, IPS/IDS, End point protection and
Data Loss Prevention
· Implementation and design of custom based correlation rules in RSA Envision and active monitoring of
Security Incidents through Incident Management Process.
· Detection and Identification of Web Application attacks to identify application layer attacks through correlation of attack validation that helps in examining Protocol violations.
· Managed proxy solutions on web traffic and load balancers per client specific requirements.
· Design, implementation, migration and up-gradation of different security products like Cisco pix firewall,
routers, switches and servers
· Administered windows Active directory and exchange server, Websense part of Managed services.
· Incident and Change management – on Cisco pix firewall, routers and switches, Windows Active Directory
and exchange server per service request.
· L1/L2 Troubleshooting issues related to managed Cisco network and security devices.
Identify, test and provide initial diagnosis and resolution of network incidents in multi-platform environment
Cloud Certified Security Professional (CCSP)