Summary
Overview
Work History
Education
Skills
Websites
Employment
Timeline
Generic

Ramaprasad Amaranarayana

Application Security Engineer
Austin,Texas

Summary

Security Test Engineer with 10+ years of experience specializing in penetration testing, vulnerability management, and secure application development. Proficient in Java, automation testing, and cloud security with expertise in tools like Veracode, Burp Suite, and Checkmarx. Adept at integrating security into CI/CD pipelines and enhancing application security.

Overview

9
9
years of professional experience
2
2
years of post-secondary education

Work History

Lead Security Test Engineer

Fannie Mae
09.2023 - Current
  • Led static and dynamic analysis with Veracode, reducing vulnerabilities by 40%
  • Conducted penetration testing using Burp Suite, identifying and resolving critical security flaws in authentication and session management
  • Strengthened CI/CD security by integrating JFrog Xray, reducing artifact vulnerabilities
  • Developed secure Java-based applications, implementing encryption, authentication, and authorization mechanisms
  • Collaborated with development teams to integrate secure coding practices, reducing security debt

Application Security Engineer in Test

Apple Inc
06.2019 - 09.2023
  • Led security assessments for iPhone activations across carriers like AT&T, Verizon, and T-Mobile
  • Used Java 17, OOP concepts & TestNG for automation testing in GRPC-based APIs
  • Implemented authentication and authorization protocols (SAML, Siteminder, SSO)
  • Collaborated with 12+ team members across onshore & offshore teams to resolve critical security issues
  • Played a key role in the code review committee, identifying vulnerabilities before production releases

Application Security Engineer

CenturyLink Inc
12.2018 - 06.2019
  • Spearheaded penetration testing programs across custom applications, improving security compliance
  • Conducted attack analysis on IDS reports, detecting potential cyber threats
  • Assisted development teams with secure CI/CD integration and remediation guidance
  • Implemented Checkmarx for static application security testing (SAST)
  • Designed secure application pipelines as part of the architectural review team

Security Developer

AT&T Research Labs
05.2017 - 11.2018
  • Conducted network security scans using Nmap, Nessus, and Wireshark
  • Trained development teams on secure coding practices, reducing vulnerabilities
  • Performed manual code reviews to detect logic flaws undetected by automated tools
  • Worked with YANG file structures and created Directed Graphs for new RPCs

Security Developer

Marlabs Inc
12.2015 - 01.2017
  • Conducted SAST & DAST testing using Burp Suite, HP Fortify, and IBM AppScan
  • Designed robust security systems to prevent vulnerabilities
  • Developed secure UI components using JSP, HTML5, CSS3, JavaScript
  • Utilized Java Collections API, Exception Handling, and Annotations for scalable development

Education

Master of Science - Computer And Information Systems

California University of Management & Sciences
Anaheim, CA
01.2014 - 09.2015

Skills

  • Security Testing & Vulnerability Management

  • Penetration Testing, SAST, DAST

  • OWASP Top 10

  • Security Assessments & Threat Modeling

  • Web & Network Security, API Security

  • Secure Code Review

  • Veracode, Burp Suite, Checkmarx

  • BlackDuck, JFrog Xray

  • Java 11, Python

  • Selenium, TestNG, Cucumber, JUnit, Robot

  • AWS Cloud

  • CI/CD Security

  • Jenkins, Git

  • SQL, MySQL, Oracle, MongoDB, Cassandra

  • RESTful & SOAP APIs

  • Agile (Scrum), JIRA, SDLC, STLC

Employment

CGI - Sept 2023 - Present

Tata Consultancy Service Ltd- June 2019 - Sept 2023

Marlabs Inc - Dec 2015 - June 2019

Timeline

Lead Security Test Engineer

Fannie Mae
09.2023 - Current

Application Security Engineer in Test

Apple Inc
06.2019 - 09.2023

Application Security Engineer

CenturyLink Inc
12.2018 - 06.2019

Security Developer

AT&T Research Labs
05.2017 - 11.2018

Security Developer

Marlabs Inc
12.2015 - 01.2017

Master of Science - Computer And Information Systems

California University of Management & Sciences
01.2014 - 09.2015
Ramaprasad AmaranarayanaApplication Security Engineer