Ashish Kokare

Product Security Tech Lead at Adobe Stock

San Jose, California, United States

About

Experience

  • Adobe (Full-time · 6 yrs 6 mos)
    • Product Security Lead - Adobe Stock
      Sep 2022 - Present · 3 yrs 10 mos

    • Product Security Researcher
      Jan 2020 - Aug 2022 · 2 yrs 8 mos

  • Security Consultant at Synopsys Inc
    Jul 2017 - Jan 2020 · 2 yrs 7 mos

    Performed Application Security Assessments (iOS, Android and Web Applications) using dynamic and static analysis using automated tools and targeted manual testing. Performed automated and manual secure code reviews for Java, .NET, Ruby on Rails, iOS and Web Applications. Audited HPE Fortify, IBM AppScan and Checkmarx scan results for vulnerabilities reported. Presented the findings to the clients and supported the developers in remediation of the vulnerabilities discovered. Compiled detailed observations and recommendations reports catering to developers and executives.

  • Graduate Teaching Assistant at George Mason University
    Jan 2017 - May 2017 · 5 mos

    Aided professors with conducting labs, recitation lectures and conducting exams. Reinforced topics presented by professors by assisting students.

  • Security Engineer Intern at Acumen Security
    May 2016 - Dec 2016 · 8 mos

    Develop, configure and maintain cryptographic modules, encryption standards across variety of networking devices. Maintain and validate FIPS(Federal Information Processing Standards) encryption on products using cryptography for secure remote management, data encryption, digital signatures and information protection as per NIAP-National Information Assurance Program. Automate, develop and document new security test cases and standards as per NIST Cryptographic Module Validation Program (CMVP).

  • Cyber Security Analyst, Abuse Mitigation Team at Directi Web Technology Pvt. Ltd
    Dec 2014 - Jun 2015 · 7 mos

    Performed forensic analysis of malware, spam, phishing, hacking and other security abuse incidents to understand modus operandi. Proactively tracked security breach and implement countermeasures in partnership with support and system admin teams, ensuring that the security policies are strictly adhered Configured IDS/IPS signature creation, packet analysis, configuration standards, firewall rule sets, vulnerability analysis, Forensics, web application security, pen-testing, reverse engineering, Honeypots, IOC, advanced threat detection, code analysis.