PROFESSIONAL EXPERIENCE
Accenture Nov 2025 – Present
AppSec & DevSecOps Engineer – ELC Client Chennai
Working on application security and DevSecOps initiatives for enterprise applications using SAST and IAST security platforms.
Roles and Responsibilities
Qwiet AI – SAST
- Onboarded enterprise application repositories into Qwiet AI using Azure DevOps YAML pipelines.
- Managed Qwiet AI operational support and troubleshooting activities.
- Coordinated with tool vendors for issue resolution and feature enhancements.
- Performed vulnerability remediation and false positive analysis.
- Created build threshold rules to block Azure DevOps pipelines for high and critical vulnerabilities.
- Enabled auto-fix capabilities for identified vulnerabilities.
- Designed, developed, and maintained secure Azure DevOps CI/CD pipelines for application teams.
- Managed security exception handling processes.
Seeker – IAST
- Designed and deployed self-hosted Seeker platform on Azure Virtual Machines.
- Managed Seeker server infrastructure and operational activities.
- Conducted SAST and DAST scans for QA environments using Seeker.
- Deployed Seeker agents in Kubernetes clusters and Docker environments.
- Implemented manual and automated agent deployment methods for application teams.
- Performed remediation support, false positive analysis, and exception handling.
- Coordinated with Seeker tool vendors for operational support and troubleshooting.
Technologies Used
Azure DevOps, YAML, Kubernetes, Docker, Azure VM, Qwiet AI, Seeker, SAST, DAST, IAST, DevSecOps
Tata Consultancy Services Sep 2022 – Nov 2025
System Engineer Chennai
Macy’s Client – Application Support Engineer
Worked as part of the Inventory Management Team under Supply Chain Management, supporting production and non-production environments for Macy’s inventory platform.
Responsibilities
- Monitored production and non-production inventory management environments using Grafana, including CPU utilization, latency, thresholds, and application stability.
- Managed and monitored daily batch jobs running through Jenkins pipelines and GCP Dataflow jobs.
- Supported inventory update workflows, product eligibility validation, and backend rule processing.
- Handled batch job failures caused by high CPU usage or event spikes by aborting and restarting jobs using Jenkins pipelines and scripts.
- Performed proactive monitoring of integrated GCP services through Grafana dashboards.
- Conducted daily data correction activities using BigQuery and SQL stored procedures for updating and deleting inventory-related data.
- Used GCloud commands for backend operational activities and data correction processes.
- Analyzed product eligibility, inventory availability, and rule validations to ensure accurate product visibility on Macy’s website.
- Used REST APIs through Postman to manually publish or remove products from the website when automated workflows failed.
- Investigated Kubernetes pod failures in production environments and performed root cause analysis before escalating to SRE teams when required.
- Worked on high-priority production incidents and low-priority business tickets with quick turnaround times.
- Prepared weekly and monthly operational status reports, including ticket metrics, achievements, highlights, and presentations.
- Participated in deployment release calls, validated deployment activities, monitored services, and coordinated deployment closure.
- Developed shell scripts to automate bulk data updates through REST APIs.
Technologies Used
GCP, BigQuery, Jenkins, Kubernetes, Grafana, Java, SQL, GitLab, ServiceNow, Postman, REST APIs, Shell Scripting
TCS Internal – Infra DevOps & Security Engineer Jun 2024 – Nov 2025
Worked as Infra DevOps and Security Engineer for TCS Internal IT Digital Infrastructure Services (DIS), managing self-hosted DevOps platforms and secure CI/CD solutions.
Roles and Responsibilities
- Managed and maintained self-hosted DevOps tools including GitLab, Jenkins, SonarQube, and Nexus in GCP and Azure environments.
- Handled GitLab administration activities including user management, project onboarding, access control, and operational support.
- Assisted development teams in deployment automation and CI/CD pipeline creation using Jenkins.
- Managed Nexus repositories for storing application artifacts, Docker images, and Maven dependencies.
- Integrated SonarQube with Jenkins pipelines to enable secure code quality scanning and vulnerability detection.
- Performed SAST testing, penetration testing, DAST testing, and server-side vulnerability management for self-hosted DevOps platforms.
- Designed and configured Harness platform using AKS clusters.
- Developed secure DevSecOps pipelines in Harness for automated application deployment.
- Integrated Semgrep for SAST scanning.
- Integrated OWASP Dependency Check for open-source vulnerability detection.
- Implemented Trivy scanning for Docker image vulnerability assessment.
- Integrated OWASP ZAP for DAST security testing.
- Supported development teams for secure code deployment and CI/CD operational activities.
- Managed end-to-end maintenance and security operations for integrated DevSecOps platforms.
Technologies Used
Azure, GCP, Jenkins, GitLab, SonarQube, Nexus, Harness, AKS, Docker, Kubernetes, Semgrep, Trivy, OWASP ZAP, Shell Scripting