Subhash P.

DevOps Manager

Hyderabad, Telangana, India10 yrs 1 mo experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in Red and Blue Teaming strategies.
  • Extensive experience with top tech companies' security teams.
  • Pro-bono consulting for cybersecurity vulnerabilities.
Stackforce AI infers this person is a Cybersecurity Specialist with expertise in threat hunting and incident response.

Contact

Skills

Other Skills

Amazon Web Services (AWS)Android SecurityApplication SecurityBacktrackCEHComputer SecurityData Center SecurityEthical HackerEthical HackingIDSInformation SecurityInformation Security EngineeringInformation Security ManagementInfrastructureInternet Security

About

I'm Subhash Popuri, a threat hunter, an incident responder, hobbyist CTI analyst and a security researcher who loves to solve complex problems. On a daily basis, I work on the following things: * Red Teaming: * - Red Teaming assessment of Client's Infrastructure through Adversary simulation. - Adversary simulation by following all Cyber Kill chain phases like Enumeration, Initial Compromise, Privilege Escalation, Internal Recon & Data Exfiltration. - Conduct cyber security red team assessments and mapping findings to frameworks like NIST and MITRE. - Automate several phases of enumeration and exploitation. - Physical Intrusion assessment at Client's Offices - Assessing Blue team's capability to stop a real world adversary and reporting findings in a presentable and actionable manner. - Researching and staying up-to-date with new security vulnerabilities and new TTPs of exploitation. * Blue Teaming: * - Forensic Investigation of small to mid scale cyber security incidents for top banks and organizations in the country. - Assisting in large scale Incident response to top-notch firms. - Designing of playbooks for automating Threat hunting process through the integration of IOC and IOA. - Occasional threat intel research by mixing OSINT (Open source Intelligence recon) techniques for identifying recent TTPs leveraged by advanced threat actors. - Threat identification and mitigation by analyzing existing client setup and suggesting relevant changes. - Developing tools like Ransomware simulator, Attack simulators, C2 frameworks leveraging lesser known techniques for blue teams to test their existing detection mechanism's efficacy against advanced and lesser known techniques. Apart from work, I spend my most of my free time with Research on ML and Data Science for better Cyber security detection, Movies and Travelling. I've been privileged to work with many world renowned security teams like Google, Facebook, Twitter, Microsoft, Dell, Cisco among many others as a part of their bug bounty /responsible disclosure programs. I'm fortunate enough to have helped the USA.GOV security staff about potential security vulnerabilities way before their responsible disclosure program was announced. I'm open to pro-bono consulting and helping people within my legal capacity. If you want to get in touch with me, spare an INMAIL, I can be reached via e-mail at pbssubhash[@]gmail.com (Please remove "[]" ).

Experience

Microsoft

3 roles

Senior Security Researcher

Promoted

Aug 2024Present · 1 yr 7 mos · Hyderabad, Telangana, India

Security Researcher

Mar 2024Aug 2024 · 5 mos · Hyderabad, Telangana, India

  • Security researcher at Microsoft at a team called GHOST - a global team of hunters and researchers created to secure Microsoft and it’s customers.

Cyber Threat Hunter @ MSRC Threat Hunting Team

Sep 2022Mar 2024 · 1 yr 6 mos · Hyderabad, Telangana, India

Ey

2 roles

Senior Cyber Security Consultant

Promoted

Feb 2022Sep 2022 · 7 mos · Hyderabad, Telangana, India

Cyber Security Consultant

Jan 2021Feb 2022 · 1 yr 1 mo · Hyderabad, Telangana, India

Pwc india

Cyber Security Consultant

Apr 2019Jan 2021 · 1 yr 9 mos · Hyderabad, Telangana, India

Primeauth

2 roles

Founder

Promoted

Apr 2018Feb 2019 · 10 mos

Student Entrepreneur

Apr 2016Mar 2018 · 1 yr 11 mos

Synack red team

Security Researcher

Oct 2015Jan 2018 · 2 yrs 3 mos

  • As a part of a wonderful team, I will perform security assessments for various high profile, top-notch clients. My responsibilities as a part of Synack Red team member is to identify vulnerabilities in their clients and report them.

Defencely

Mobile Application Security Researcher Intern

Apr 2015May 2015 · 1 mo

  • Information Security is considered to be a crucial element of any product as well as service based company. Being an Information Security Intern at Defencely, my role was to conduct security audits for some of the top-notch clients. At Defencely, I got to work with one of the best Information security researchers and simultaneously it served as a wonderful platform to demonstrate my skills in the field of Application security.

Education

BITS Pilani Work Integrated Learning Programmes

Masters of Technology — Computing Systems and Infrastructure

Jul 2019Jul 2023

IIIT Hyderabad

Advanced Certification in AI & ML — Artificial Intelligence

Jan 2018Jan 2019

Startup School Online

2018-Cohort; Advisory Track — Startup

Anurag Group of Institutions

Bachelor's Degree — Computer Science Engineering

Jan 2014Jan 2018

Narayana Junior College

Intermediate - 12 th class Degree.

Jan 2012Jan 2014

Sandeepam Vidyalaya High School

10th Class

Jan 2011Jan 2012

Stackforce found 100+ more professionals with Amazon Web Services (AWS) & Android Security

Explore similar profiles based on matching skills and experience