Experienced Cybersecurity and Full Stack Software Development Engineer with over 10 years of IT experience, driving secure architecture, identity life cycle management and identity governance across automotive, embedded, and cloud ecosystems.
Proven expertise in designing and managing secure key and identity lifecycle management solutions for autonomous driving and ADAS programs, aligned with ISO/SAE 21434 and Zero Trust principles.
Skilled in deploying and maintaining PKI infrastructures such as KeyScaler, integrating FIPS 140-2 compliant Entrust HSMs for secure cryptographic operations including key generation, signing, and certificate management across global production environments.
Hands-on experience in implementing enterprise-grade IAM and PAM solutions including Microsoft Entra ID, Azure IAM, AWS IAM, Azure Key vaults, AWS Secrets Manager with knowledge of RBAC, ABAC, PIM, Conditional Access, SSO, MFA, and federation protocols such as SAML, OAuth2.0, and OpenID Connect.
Led the definition and enforcement of secure access controls, including separation of duties, privileged access policies, and identity governance automation in cloud-native and hybrid environments.
Experienced in conducting ISO/SAE 21434-compliant Threat Analysis and Risk Assessment (TARA) using STRIDE, and implementing mitigations across secure boot, debug interfaces, and secure communication channels.
Well-versed in DevSecOps practices with automation skills across CI/CD pipelines using tools like Terraform, GitHub Actions, Jenkins, Azure DevOps to enforce security as code.
Committed to regulatory compliance and security maturity, with working knowledge of NIST CSF 2.0, ISO 27001, PCI DSS, and secure development practices based on OWASP Top 10.
Overview
13
13
years of professional experience
1
1
Certification
Work History
Senior Cybersecurity Engineer - KMS Tech Lead
Aptiv PLC
08.2023 - Current
Configured and managed KeyScaler PKI infrastructure and integrated FIPS 140-2 Level-3 compliant Entrust HSMs across 10 global manufacturing sites, enabling secure key lifecycle management for Autonomous Driving programs.
Led the integration of Azure Entra ID for automated identity lifecycle management and implemented SAML-based SSO with 2FA authentication across 13 production KMS servers, reducing administrative overhead by 30% for 300+ users while aligning with Zero Trust principles.
Defined and enforced security policies and RBAC controls as Key Custodian and Access Control Manager, ensuring secure handling of sensitive assets (passwords, private keys, certificates) for five major global OEM customers.
Onboarded and managed customer keys in AWS KMS, implementing RBAC and ABAC access controls using AWS IAM to safeguard sensitive production web application data.
Developed and deployed a secure key/certificate exchange service using REST APIs to establish TLS-secured key package downloads with three OEM servers.
Conducted TARA assessments (in alignment with ISO/SAE 21434) in partnership with manufacturing teams to identify and mitigate security risks across supply chain and production environments.
Acted as the KMS subject matter expert for two OEM programs, managing stakeholder engagement, resolving technical issues, and ensuring secure and scalable key management solutions.
Led infrastructure maintenance for KMS, including version upgrades, vulnerability patching, and database migrations in adherence to NIST CSF and ISO 27001 compliance requirements.
Collaborated cross-functionally with Systems, IT, Manufacturing, and Pen Testing teams to conduct security assessments, audits, and support post-production incident response.
Represented the organization at industry cybersecurity conferences such as ESCAR and Auto-ISAC, integrating cutting-edge best practices to continuously improve the enterprise security posture.
Senior Software Integration Developer
Ford Motor Company
12.2016 - 06.2023
Led end-to-end development and release of a full-stack .NET application leveraging Azure cloud services, enabling Ford dealerships to perform standalone infotainment module updates via USB drives—resulting in a 30% annual reduction in warranty costs.
Designed and built a cross-platform vehicle function simulation tool, accelerating infotainment and mobility teams’ ability to develop, test, and release production-ready features, reducing development and testing cycles by 25%.
Automated diagnostic data processing workflows using Power Automate, Azure Entra ID, Azure IAM, Key Vault, and Azure Function Apps, streamlining global data ingestion into Ford’s in-house GVMS Fleet Management System.
Integrated multiple internal and third-party applications - Panzura, Syncplicity, Google Partner Issue Tracker, AIMS, Sync Analytics Platform, implementing secure authentication, automatic user provisioning and de-provisioning, least privilege policies, data exchange, secrets management using Azure Entra ID, SAML based SSO, OAuth 2.0, 2FA, RBAC, ABAC, conditional access and Key Vault.
Demonstrated expertise in SharePoint administration, migrating complex enterprise-level workflows from classic SharePoint to SharePoint Online using Entra ID, Power Apps, Power Automate, and Function Apps.
Improved software quality by 30% by collaborating with DevOps to integrate SonarQube and SonarLint into Ford’s CI/CD pipeline, enabling early detection of code defects during development.
Championed secure coding practices, conducting code reviews aligned with PEP8 and OWASP Top 10 standards, while mentoring junior engineers through training, remote debugging, and pair programming.
Led infrastructure evaluation efforts, assessing virtualization platforms (VMware Workstation, VirtualBox, Hyper-V, ESXi) to establish an internal environment for automated infotainment software deployment and testing.
Software Developer
Infor Inc and Starmount Inc
06.2015 - 12.2016
Developed data-intensive retail features for in-store, online, and mobile platforms to streamline core operations such as inventory tracking, order fulfillment, invoicing, and checkout, leveraging Java, J2EE, JDBC, REST, PostgreSQL, EJB, Spring MVC, Spring Data, Oracle Retail POS Suite, and Hibernate.
Partnered with high-profile clients including Burlington Coat Factory, Tractor Supply, Urban Outfitters, and Bose to deliver customizable service layers on the ENGAGE omnichannel retail platform, enabling personalized customer experiences across channels.
Collaborated cross-functionally with product managers, global development teams, and QA in a fast-paced Agile environment to pilot and successfully launch in-store retail features at three Urban Outfitters locations in Austin.
Implemented robust security measures, including configuration validation, authentication protocols, access controls, and encryption to secure wireless communications between mobile store devices and POS systems.
Honored with the “Best Employee of the Year” award (2016) in recognition of outstanding performance, quality delivery, and impactful contributions to project and client success.
Web Master
Texas State University
10.2013 - 06.2015
Designed and deployed the Office of Educator Preparation’s departmental website using HTML, CSS, and JavaScript, and maintained content via the in-house Gato CMS.
Developed custom dashboards for real-time student data aggregation, advanced filtering, and reporting using Logi Analytics and Oracle 11g, enabling data-driven decision-making.
Implemented role-based access controls (RBAC) to restrict dashboard and report access to authorized users, enhancing data privacy and compliance.
Managed Linux server operations, including user account administration, system updates, and security patching to maintain infrastructure stability and security.
Assistant Systems Engineer - Trainee
Tata Consultancy Services Private Ltd
07.2012 - 07.2013
Engineered key features for centralized portfolio data management, performance analytics, and asset reporting within the Private Equity Desktop (PED) application, utilizing Java/J2EE, JDBC, REST APIs, Spring MVC, Spring Data, and Hibernate.
Led process optimization by automating repetitive data reporting and archival workflows using Spring Batch and Spring Boot, significantly improving efficiency and reducing manual effort.
Conducted comprehensive White Box testing, including unit and integration tests, and executed static code analysis for the Fund Accounting and Administration Engine, proactively identifying bugs and code quality issues early in the SDLC.
Maintained server reliability and security compliance through regular system administration and timely patching of PED-hosting infrastructure, ensuring 100% uptime and adherence to data protection regulations.
Education
Master of Science - Computer Science
Texas State University
San Marcos, TX
05-2015
Bachelor of Science - Computer Science
Jawaharlal Nehru Technological University
Kakinada, India
05-2012
Skills
Python
Java
Web Development - REST & SOAP
MySQL
Active Directory
Networking protocols
Keyscaler security platform
Public Key Infrastructure (PKI)
Entrust Hardware Security Modules
Terraform
Identity Lifecycle Management
Privileged Identity Management (PIM)
Privileged Access Management (PAM)
Role Based Access Control (RBAC)
Attribute Based Access Control (ABAC)
Two-Factor Authentication (2FA, MFA)
Azure services - Entra ID (AD), AD Connect, Microsoft Graph, Entra ID Governance, Key Vaults, Blob Storage, Service Bus, Function Apps, Power Automate