DevSecOps Engineer
Send a job offer directly to this candidate
Analytical thinker leverages problem-solving skills to drive continuous improvement. Works cross-functionally to adapt systems to changing business needs and formulate winning solutions.
Accenture October 2022-Present
◦ DevSecOps capabilities
◦ Worked as Automation Engineer, in developing projects for more enhancement and automated process for
Assessments maintenance, size estimation, defect management that are generated from SAST testing.
◦ currently working on WebADI (Automated DevSecOps Integrator) wherein the SAST and DAST tools along with different CI/CD tools integration will be done automatically based on user inputs.
◦ Built effective pipelines and enhanced production infrastructure through targeted database and cluster management.
◦ Used CI and CD automation testing to effectively assess application vulnerabilities
Project Description: Marks & Spencer, often simply referred to as M&S, is a renowned British multinational retailer known for its high-quality clothing, food, and home goods. With a legacy dating back to 1884, M&S continues to offer a wide range of products that combine style, convenience, and value for its customers.
◦ Conducted comprehensive SAST and DAST scans using Fortify on Demand, ensuring the identification and mitigation of application vulnerabilities.
◦ Managed software security risks by performing Software Composition Analysis (SCA) with Snyk and secrets scanning with Trufflehog, enhancing security across dependencies and code repositories.
◦ Offered critical support and guidance to application teams on vulnerability remediation, facilitating timely and effective resolution of security issues and fostering a culture of security awareness.
◦ Implemented additional SAST and SCA analysis with Semgrep, contributing to a proactive security approach and aligning with industry best practices.
Cognizant Technology Solutions Gurugram October 2021-October 2022 (1 year)
Nationwide, is a group of large U.S
◦ Coordinated quality testing with assurance team and partnered on resolving defects.
◦ Investigated requests for maintenance and repairs for swift resolution.
◦ Kept detailed records of releases and software fixes for optimum traceability.
◦ Coded software updates to add new features, close security holes and resolve defects.
◦ Refined and upgraded existing software to continuously improve performance.
◦ Built effective pipelines and enhanced production infrastructure through targeted database and cluster management.
◦ Quickly responded to and resolved debugging issues within production systems, minimizing error and risk.
◦ Used Docker and Kubernetes to manage, scale and update containers for improved automation possibilities.
◦ Maintained advanced security measures to protect user assets, safeguarding integrity of confidential data.
◦ Provided guidance, support and training to colleagues on implemented solutions, recording all activity and communication within system.
ELI Research Pvt LTD December 2020-October 2021 (10 months, 1 week)
◦ Upgraded hardware to reduce service disruptions and maintain smooth workflow.
◦ Troubleshoot and debugged software to check and rectify discrepancies.
◦ Gathered and reviewed user feedback to improve capacity of software.
◦ Collaborated with departments regarding technical issues, software system design and maintenance.
◦ Created technical documentation to track history and use for reference.
◦ Communicated with departments and customers to discuss project development and proposals.
HCL Technologies August 2018-December 2020 (2 years, 3 months)
◦ Experience in Implementation, Release management
◦ Apache, Apache Tomcat, WebLogic
◦ Maintained current library of best practices, provisioning, and configuration system guidelines.
◦ Restored systems promptly by offering 24-hour emergency support and rigorous repair methods.
◦ Investigated and reduced incidents by establishing detailed tracking and reporting frameworks.
◦ Troubleshot IT systems maintenance issues with colleagues, ensuring compliance with internal policy and privacy standards.
◦ Implemented maintenance procedures, monitored systems health, and gathered system statistics to enhance systems.
◦ Reported irregularities and structural errors to propose solutions.
◦ Proactively managed response to investigate and resolve system issues.
◦ Deployed, maintained and upgraded internal equipment and software programs.
Advanced Certification - Cloud and DevOps
IIT-Guwahati & Intellipaat 2021-2022
Bachelor of Engineering - Computer Science
Anna University 2013-2017