Summary
Overview
Work History
Education
Skills
Timeline
Generic

Radhadevi Velineni

Cumming,Georgia

Summary

Highly skilled cybersecurity professional with 7 years of extensive experience in designing, implementing, and managing robust security solutions across various domains. Leveraging deep expertise in cloud security, network security, and compliance frameworks to safeguard organizational assets and mitigate cybersecurity risks. Seeking a challenging role where I can contribute my skills and knowledge to enhance cybersecurity posture and ensure regulatory compliance.

Overview

7
7
years of professional experience

Work History

Senior Cybersecurity Consultant

Ernst & Young
01.2022 - 06.2023
  • Perform cybersecurity assessments across enterprise customer environments, adhering to established frameworks such as NIST, Zero Trust principles, ISO27001, PCI-DSS, CIS benchmarks, and regulatory guidelines.
  • Analyze security posture, identify vulnerabilities, and provide actionable recommendations for improvement.
  • Improved client cybersecurity posture through tailored risk assessments and mitigation strategies.
  • Reduced cyber threats by implementing robust security frameworks and incident response plans.
  • Served as key point of contact for clients and internal stakeholders, providing expert guidance on all aspects of cybersecurity risk management.
  • Assessed clients AppSec program maturity using OWASP SAMM and BSIMM frameworks and provided target state models to improve AppSec maturity posture.
  • Leverage expertise in cloud security frameworks, benchmarks, and controls to advise on cloud security strategies at CISO and Senior Security Manager levels.
  • Implement container orchestration, automation, and security configuration management practices.
  • Utilize tools such as GitOps, DevSecOps, CI/CD, and SDLC toolsets to streamline security processes and integrate security into development workflows.

Senior Security Engineer

T.Rowe.Price
11.2020 - 12.2021
  • Provided expert input during code reviews, ensuring that new features adhered to established security guidelines before deployment into production environments.
  • Collaborated with cross-functional teams to address software security risks, improving overall product safety.
  • Monitored logs and alerts from various sources to identify suspicious activities promptly, mitigating potential breaches efficiently.
  • Develop and execute appropriate security testing strategy for each engagement, including performing software security testing against applications platforms, and systems.
  • Interact with CxOs and senior management to articulate complex security concepts, present findings, and discuss mitigation strategies.
  • Demonstrate proficiency in assessing, designing, and implementing Cloud Security architectures using Infrastructure as Code (IaC).
  • Conducted regular penetration testing to identify vulnerabilities and address them proactively, strengthening system defenses.
  • Developed comprehensive security policies and procedures for organization, resulting in improved protection against potential threats.

Security Engineer

Amtrak
10.2017 - 10.2020
  • Collaborated with IT teams to integrate security measures into software development processes, enhancing overall application security.
  • Reviewed logs regularly to detect suspicious activity patterns before they escalate into full-blown incidents, enabling rapid response efforts when necessary.
  • Optimized existing security tools by configuring custom rulesets tailored to the organization''s specific needs, enhancing threat detection capabilities.
  • Manage risks associated with processing, storing, and transmitting information by conducting security and risk assessments using frameworks like NIST, RMF and Common Criteria.
  • Managed incident response activities during critical security events, effectively containing threats and minimizing damage to systems and data.
  • Ensure compliance with regulatory requirements and industry standards.
  • Assist in design and implementation of Network Security solutions including Firewall, IDS/IPS, DDoS, WAF, VPN, DNS Security, Cloud-based Proxy, and Email gateway.
  • Ensure the deployment and configuration of security measures align with best practices and organizational requirements.

Security Engineer Intern

Delviom LLC
06.2016 - 09.2017
  • Assist stakeholders in quantifying risks and developing mitigation and remediation strategies based on evolving threat landscapes.
  • Stay updated with latest security trends, emerging technologies, and best practices.
  • Utilized penetration testing tools to identify vulnerabilities before they could be exploited by malicious actors.
  • Assisted in design and deployment of secure cloud-based infrastructure solutions.
  • Monitored network traffic for suspicious activity, promptly addressing potential threats.

Education

Master of Arts - Computer And Information Sciences

Villanova University
Villanova, PA
05.2016

Bachelor of Science - Computer And Information Sciences

Jawarharlal Nehru Technological University
India
05.2014

Skills

  • Proficient in various security technologies including Cloud Security, Network Security, Endpoint Security, Data Security, IDAM, and SIEM solutions
  • Strong architectural understanding to design and implement security solutions across multiple domains
  • Expertise in Network Security design and implementation, including Firewall, IDS/IPS, DDoS, WAF, VPN, DNS Security, Cloud-based Proxy, and Email gateway
  • Ability to perform cybersecurity assessments using established frameworks such as NIST, Zero Trust principles, ISO27001, PCI-DSS, and CIS benchmarks
  • Excellent communication and stakeholder management skills, capable of articulating complex security concepts to technical and non-technical audiences
  • Cloud security expertise, with proficiency in cloud security frameworks, benchmarks, and controls
  • Experience in assessing, designing, and implementing Cloud Security architectures using Infrastructure as Code (IaC)
  • Strong background in automation and DevSecOps practices, including container orchestration and security configuration management
  • Skilled in risk management and compliance, ensuring adherence to regulatory requirements and industry standards
  • Continuous learner, keeping abreast of latest security trends, emerging technologies, and best practices

Timeline

Senior Cybersecurity Consultant

Ernst & Young
01.2022 - 06.2023

Senior Security Engineer

T.Rowe.Price
11.2020 - 12.2021

Security Engineer

Amtrak
10.2017 - 10.2020

Security Engineer Intern

Delviom LLC
06.2016 - 09.2017

Master of Arts - Computer And Information Sciences

Villanova University

Bachelor of Science - Computer And Information Sciences

Jawarharlal Nehru Technological University
Radhadevi Velineni