Logo Questions Linux Laravel Mysql Ubuntu Git Menu
 
avatar of IncyWincyRz

IncyWincyRz

IncyWincyRz has asked 0 questions and find answers to 1 problems.

Stats

11
EtPoint
1
Vote count
0
questions
1
answers

About

Cybersecurity professional & public speaker with ~4 years of experience in architecting defensive solutions, DevSecOps, and Managing Information Security.

My skills include working in, but not limited to, AWS - Security | Architecture | DevOps | DevSecOps, Ruby on Rails - Programming | Security, Startup Security, Risk assessment and mitigation, Mitigating OWASP Top 10, SOC2 - GDPR - ISO Compliance, Incident response, Vulnerability Assessment and Penetration Testing (VAPT), Purple-teaming, Security Awareness Training, Network Security, Online Privacy/Anonymity, and OPSEC.

In my professional experience handling all things security for a startups, I've worked on:

  • ✅ Architecting and deploying defensive solutions to protect the organization's assets against adversaries.
  • ✅ Enforcing security in CI/CD pipeline & fix security issues identified via Static Code Analyzers
  • ✅ Developing security features from scratch such as rate limiters, input validation and image filters to further enhance product security.
  • ✅ Actively participating in Infrastructure discussions to improve the existing cloud architecture in a multi-cloud setup (AWS/Azure).
  • ✅ Designing and implementing security policies to be compliant with frameworks such as SOC2, GDPR, ISO, etc.
  • ✅ Promoting and enhancing a security-focused culture by regularly monitoring employee's security issues and interacting 1-1 to solve any security/privacy problems.
  • ✅ Implementing incident response strategies centrally with optimal response times and mitigation strategies.
  • ✅ Performing vulnerability assessments, conducting penetration tests in applications (VAPT), and fixing the vulnerabilities in product code.
  • ✅ Conducting security awareness talks for employees and explaining key cybersecurity concepts.

I'm also active in the cybersecurity community as a speaker and have been invited to multiple talks related to Online Privacy, Personal security, and have conducted Security awareness training for a wide range of audiences from students to seasoned industry professionals.