Summary
Overview
Work History
Education
Skills
Affiliations
Other Experience
Languages
Timeline
Generic

Sri Raksha Rao

Burlingame,CA

Summary

Strategic Cybersecurity Manager with 10+ years of experience across multiple industries. Accustomed to driving efficiency while effectively navigating evolving cyber threats. Expertise in strategic planning, cyber risk management, and team empowerment, with a proven record of directing complex systems and programs that protect organizational assets and customer data. Dedicated to stakeholder satisfaction, team collaboration, and continuous improvement. Recognized for cost-effective improvements, operational streamlining, and an empathetic, communicative, agile management style that has guided several cross-functional teams and inspired exceptional results.

Overview

6
6
years of professional experience

Work History

DevOps Audit & Compliance PgM- Incident Management

Meta (Facebook)
08.2021 - Current
  • Directing the smooth operation and maintenance of 10 Incident Management Safeguards, and ad-hoc supporting 8 Third Party Oversight Management Safeguards, which directly protect and enforce the integrity, confidentiality, and privacy of all Developer Operation APIs
  • Ensuring that all Incident Management safeguard owners are compliant with privacy mandated certifications and protocols, and are well-supported for assessor related inquiries - reduced fiscal penalties by more than 80% in the Incident Management domain within one year
  • Investigating, triaging, and assisting in the remediation of 50+ high severity incidents (SEVs) that affect DevOps and Meta
  • Scoping and triaging over 80 Incident Management tasks that deal with legal requests, audit management, investigations and enforcement safeguard processes, and other operational duties
  • Partnering with senior stakeholders within Privacy, Systems, Data, and other cross-functional pillars to identify operational and technical challenges and ensuring proactive conflict resolution
  • Governing and building out a centralized documentation [Center of Excellence (CoE)] initiative with 7 direct reports to centralize, standardize, automate, and continuously monitor and update technical and process documentation across all of Developer Operations
  • Creating in-depth user process documentation, strategy matrices, RACIs, workplans, retrospectives, and other guides for the Global Developer Operations team and regulatory bodies
  • Fostering community and improving morale by instantiating DevOps wide initiatives such as the conception of Work Life Balance month (e.g., seminar/speaker series, personalized curated team content, mindfulness sessions, etc.)

Cybersecurity Specialist

Accenture LLP
11.2020 - 08.2021
  • Spearheaded several key areas of IT integration management for 25+ large-scale, international technical acquisitions
  • Served as the primary point of contact for all 25+ acquisitions, including two of Accenture's largest acquisitions with more than 6500 employees in each
  • Reduced global V&A ISIT timelines from 12 months to 6 months, saving ~$2b annually in expenses
  • Developed requirements to automate key activities for the V&A ISIT Enablement process, reducing time-to-completion projections by ~30%
  • Partnered daily with senior stakeholders across cyber, enablement, IS-IT, legal, HR, etc.
  • Mapped, analyzed, and extracted data from large-scale data sets

Cybersecurity Senior Analyst

Accenture LLP
11.2018 - 11.2020

Ventures & Acquisitions Security Consulting Practitioner

  • Drove several key areas of IS-IT integration work for Accenture's acquisition of Symantec's Managed Cyber Security Services division through the peak of Covid, across 13 countries and 50+ global SOCs
  • Created, implemented, and executed a dynamic Phased Project Plan for pre, during, and post-merger activities
  • Analyzed and standardized large-scale data sets to strategize and develop an application inventory and international software distribution program
  • Developed technical user process guides for both technical and non-technical audiences (e.g., setting up AWS Workspaces)

Team Lead, Web Application Penetration Tester

  • Supervised and mentored teams of 3-4 junior penetration testers at a time through various iterations of Web Application and API penetration tests for a large telecommunications client
  • Amplified the client's security posture by conducting over 70+ penetration tests to date related to web applications and APIs; reported more than 40 critical, high, and medium findings to the client from 2019-2020
  • Reviewed threat and vulnerability reports, facilitated critical vulnerability remediation calls, and organized knowledge transfer sessions
  • Pioneered an interactive Cybersecurity Penetration Testing Workshop and recruitment event at Carnegie Mellon University, resulting in additional hires and increased headcount for Accenture Security
  • Created and delivered more than 80 high-quality technical reports detailing vulnerability assessments, findings, and remediation strategies for this billion-dollar client

Cybersecurity Analyst

Accenture LLP
08.2017 - 11.2018

Web Application Penetration Tester

  • Learned how to conduct penetration tests for APIs and Web Applications on-the-job, acquired GWAPT certification 10 months later, and amplified the security posture for a billion-dollar client.

Cyber Risk Strategist

  • Assessed the security posture for more than 78 applications at a million-dollar telecommunications client by analyzing vulnerable domains within an application and proposing respective remediation strategies. Responsible for enforcing and managing budgets, status plans, finances, etc. for all 5 project teams at this client.

Education

Master of Science - Information Systems Management

Carnegie Mellon University
Pittsburgh, PA
2017

Bachelor of Science - Information Systems

Carnegie Mellon University
Pittsburgh, PA

Study Abroad - InfoSys And International Business

John Cabot University
Rome, Italy
2014

Skills

  • Cybersecurity Program Management
  • Application Security and API Security
  • Negotiation and Conflict Resolution
  • Policy and Procedure Improvement
  • Threat and Vulnerability Management
  • Dependency Tracking and Risk Mitigation
  • Technical Writing and Documentation
  • Cross-Functional Team and Stakeholder Management
  • Threat Assessments
  • Penetration Testing

Affiliations

SANS GIAC GWAPT – 2018, 2022

Other Experience

  • Vice President of the Board - Saint Paul's Nursery School (Burlingame, CA)
  • Cybersecurity Consultant Internship - Pricewaterhouse Coopers, LLC (New York, NY)
  • Forensics Technology Internship - Pricewaterhouse Coopers, LLC (New York, NY)
  • Information Systems Department Teaching Assistant - Carnegie Mellon University (Pittsburgh, PA)
  • Business Analyst - Giant Eagle, Inc (Pittsburgh, PA)
  • HCI Research Assistant - Carnegie Mellon University (Pittsburgh, PA)
  • VP Communications, Rho Sigma, Director of Fundraising - Delta Gamma Fraternity (Pittsburgh, PA)
  • Heinz Product Management Board Executive Member | Johnson & Johnson Capstone Project Manager | Enactus Board Member


Languages

English
Native or Bilingual
Kannada
Native or Bilingual
Spanish
Limited Working
French
Limited Working
Italian
Limited Working

Timeline

DevOps Audit & Compliance PgM- Incident Management

Meta (Facebook)
08.2021 - Current

Cybersecurity Specialist

Accenture LLP
11.2020 - 08.2021

Cybersecurity Senior Analyst

Accenture LLP
11.2018 - 11.2020

Cybersecurity Analyst

Accenture LLP
08.2017 - 11.2018

Master of Science - Information Systems Management

Carnegie Mellon University

Bachelor of Science - Information Systems

Carnegie Mellon University

Study Abroad - InfoSys And International Business

John Cabot University
Sri Raksha Rao