Strategic professional skilled in risk assessment and penetration testing. Oversees firewall installation and data encryption to reduce vulnerabilities. Safeguards company data through stringent enforcement of security protocols.
Overview
16
16
years of professional experience
Work History
Technical Test Lead
Infosys Technologies, USA
, New Jer
07.2023 - Current
Performed requirements analysis, prepared security test plan and test strategy documents
Deliver efficient Dynamic Application Security Testing for web application through automated scanning and accurate false positive analysis of generated reports
Conducted manual penetration testing on business-critical scenarios
Conduct automated scan to perform Dynamic Application Security Testing on API’s. Analyze the report generated by the tool to identify false positives.
Performed manual penetration testing on critical business scenarios
Conducted PoC to analyze and assess feasibility of implementing thick client application
Analyzed cloud requirements and identified appropriate security measures for the Everest environment.
Mentored and trained team members on project processes while providing inputs for process tailoring and quality goals.
Interacted with concerned team to resolve issues, provided regular status updates, and instilled confidence in the team's ability to deliver for high customer satisfaction.
Prepared daily/weekly status reports and monthly governance presentations for discussions with client-side management.
Involved and coordinated in vulnerability discussions during status calls and assisted the development team in defect triaging.
Collaborated with project stakeholders and product owner to obtain Security test sign off.
Led and supervised a 6-member team
Technical Test Lead-US
Infosys Technologies
, India
02.2015 - 06.2023
Managed Cyber Security teams for multiple vendors with distributed teams across various geographic locations.
Reviewed and analyzed client organization's current Security system to identify areas vulnerable to external Cyber Security attacks.
Delivered organization security offerings focused on cybersecurity. Tasks included security program planning, threat modeling, cyber-risk assessments, and program implementation.
Worked on several Proof of Concepts, including DevSecOps, to assess the viability of integrating a security product into the CICD pipeline.
Implemented Agile methodology including sprint planning, backlogs, daily scrum meetings, user story creation, and retrospective meetings.
Designed and implemented a security testing tool for Open Banking solution, seamlessly integrating it with the existing automated functional testing.
Applied IDAM requirements to enable MFA, SSO, RBAC model, UAG and integrate patterns for targeted applications.
Senior Software Engineer
Tech Mahindra
, India
01.2008 - 01.2015
Conducted diverse tests including Functional, Usability, Browser Compatibility, Security, and Performance.
Led defect prevention meetings
Analyzed mobile app performance and security testing tool
Prepared and obtained client approval for mobile app testing checklist.
Education
Bachelor of Electronics And Communication Engineering - 74%
K S Rangasamy College of Technology
India
06-2007
High School - 85%
St. Paul’s Matriculation Higher Secondary School
India
05-2003
Skills
Technical: Security testing, Vulnerability Assessment and Penetration Testing