Bengaluru, Karnataka, India
As a seasoned Senior Security Architect at Adobe Systems and Product Security Thought Leader, I bring a unique dual perspective to the complex challenges of safeguarding digital innovation. My expertise spans both offensive and defensive security, allowing me to build robust, resilient application ecosystems by anticipating adversary tactics and proactively designing out vulnerabilities. My rich background includes leading large-scale security implementation programs, as exemplified during my tenure as Head of Security for Thoughtworks India. My focus has consistently been on "building security into" application lifecycles through timely threat identification, comprehensive vulnerability management, deep assessments, and fostering security capability with strategic automation. This is underpinned by extensive hands-on offensive security experience, honed across Vulnerability Assessments & Penetration Testing, Advanced Red Teaming, Social Engineering, Reconnaissance, Threat Modelling & Design Reviews of web applications & APIs, and Source Code Reviews. Beyond my direct contributions, I am deeply committed to advancing the cybersecurity community and sharing knowledge. I'm an OSCP-certified professional and a recognized voice on global stages, having served as a Primary Trainer at BlackHat (Basic Infrastructure Hacking - 2017), and as a Keynote Speaker at DevSecCon24 AMER. My insights have also been featured at prominent conferences including OWASP APAC 2022, Agile India 2022, ADDO 2022, c0c0n, rootconf, and BSidesDelhi. I've actively shaped community initiatives, organizing villages at DefCon (Recon 2017) and Nullcon (Social Engg. 2016-18), and conceptualizing the corporate security conference, SecConf for Thoughtworks (2021-22). My dedication extends to serving on the review boards for BlackHat Asia, BSides Singapore,Goa and NullCon India, Berlin. As a former chapter leader for Null Mumbai and Bengaluru, I remain actively involved with the Indian security community. Driven by a passion for continuous learning , I leverage my analytical skills to explore new frontiers in security innovation. I thrive on engaging with fellow security practitioners to exchange ideas and foster collaborative solutions. You can also catch my insights as the host of Breakpoint Security Podcast, the first technical security podcast from India. Do tune in!
Review Board Member, BlackHat Asia
In this role, I help design and architect custom, cutting-edge security solutions to safeguard the Adobe's products and infrastructure. Some of current responsibilities include: Developing security architecture frameworks and standards. Collaborating with cross-functional teams to integrate security into the product home grown development platforms. Designing and implementing security controls for cloud-based environments. Evaluating and recommending security technologies and design integrations for Adobe environments. Leading security architecture reviews and providing guidance on security best practices. Providing security expertise and guidance to stakeholders, including executives and engineering teams.
BSides Goa is a community-driven cybersecurity conference held annually in Goa, India, focusing on providing a platform for networking, knowledge sharing, and skill development in the field of information security. As a reviewer I evaluate submitted papers, ensuring the quality and relevance of content to the security community.
BSides Singapore CFP Review Board