Vikash Mishra

CEO

Bengaluru, Karnataka, India14 yrs 8 mos experience
Highly Stable

Key Highlights

  • Expert in Cloud Security and Application Security.
  • Proven track record in secure software development lifecycle.
  • Extensive experience in threat modeling and vulnerability assessments.
Stackforce AI infers this person is a Cloud Security and Application Security expert with extensive experience in secure software development.

Contact

Skills

Core Skills

Cloud SecurityApplication SecurityInformation SecurityMobile Security

Other Skills

AWS SecurityAWS servicesAgile MethodologiesAlgorithmsAmazon Web Services (AWS)Architecture/design reviewsBiometric security authenticationBug fixingCC++Certificate AuthorityCloud API security testingComplex security architecture reviewsCore JavaCryptography

About

Information security professional with subject matter expertise and hands-on experience in Cloud Security, Micro Services Security, PKI - Public Key Infrastructure, Cryptography, Secure Software Architecture/Design, REST Web Services Security, Secure Code Review, Secure Development Life Cycle, Threat Modelling, Authentication and Authorization Protocol, Secure Configuration, Vulnerability Assessments, and extensive security development.

Experience

Tesco

Senior Cyber Security Partner

Jul 2025Present · 8 mos · Bengaluru, Karnataka, India · Hybrid

Intel corporation

Security Researcher/Product Security Expert

Jul 2019Jul 2025 · 6 yrs · India

  • 1) Provide security assurance in various Intel products and platform technologies. Evaluate security vulnerabilities per SDL processes. Threat analysis, architecture/design and implementation reviews to identify security issues. Propose and validate mitigation measures.
  • 2) Responsible for Security Evaluation of various Intel product through Secure code review, Threat Model review, Fuzzing, Static & Dynamic code analysis, Pen Testing and also coordinating with Pen testing team.
  • 3) Responsible for providing security training & coaching to various product team. Training like Threat Modelling, Cryptography, Advance Secure code development, Secure tools, Security Mindset etc.
  • 4) Responsible for developing various secure coding guideline, organizing Security Hackathon.
Security assuranceSecurity vulnerabilitiesThreat analysisArchitecture/design reviewsMitigation measuresSecure code review+8

Philips

Specialist II- Product Security & Privacy, PIC HSDP Security and Privacy

Oct 2016Jul 2019 · 2 yrs 9 mos

  • Responsible for Secure SDLC, requirements analysis, design and testing of security controls to ensure appropriate and effective security controls are embedded into information systems throughout the developmental lifecycle and security and solution considerations while working with Engineering & product team, and on-time delivery of those commitments.
  • Responsible for translating the security requirements created by product owner & functional analysts into the architecture for that solution and describing it through the set of architecture and design artifacts.
  • Performing impact assessment, threat modeling as well as technical and operational feasibility on the appropriate technology required to implement to solve the problem.
  • Provide security consultancy and assessment services while introducing improvements in security implementation designs.
  • Collaborate with solution architects, project managers, business analysts, and business process partners to ensure that security activities are efficiently and effectively supporting business objectives
  • Maintenance and Development of SSRA Control Assessment and related processes
  • Hands-on experience on AWS services such VPC, S3, RDS, EC2, RDS, CloudFront, ELB etc.
  • Assessment and technical advisory on IAM solution/service (based on Forgerock and JanRain)
  • Responsible for provide technical advice on military grade security of Philips Health Tech PaaS Solution for B2B and B2C markets
  • Privacy and other regulatory requirements related to security
  • Deep dive technical security advisory for Cloud Stacks for Connect, storage, Analytics etc. and orchestration.
  • Coordinate, review and govern cloud API security testing, OWASP top 10, SANS top 25 etc.
  • Worked on different technology stack and their security requirement like Redis, RabbitMQ, ELK etc.
  • Research security assessment tools and provide a technical overview to management to support their buying decisions
Secure SDLCRequirements analysisSecurity controlsThreat modelingSecurity consultancyCloud API security testing+4

Oracle india pvt. ltd

Application Developer

Apr 2016Oct 2016 · 6 mos · Bengaluru, Karnataka, India

  • Development of security related feature for CTMS team
  • Worked as a security module developer i.e. password management feature, PKI etc.
  • Security SME for Siebel Customer Relationship Management (CRM)
  • Promote best practice throughout engineering team at all stages of SDLC by performing code reviews, giving training and mentoring. Secure coding guideline and Developer Education & Security Evangelist
Security feature developmentPassword managementPKISecure coding guidelinesApplication SecurityInformation Security

Samsung r&d institute india - bangalore private limited

Lead Engineer

Apr 2012Apr 2016 · 4 yrs

  • Development of security module for Tizen (Samsung operating system)
  • Own and drive the development of secure coding program including standards and best practices.
  • Promote best practice throughout engineering team at all stages of SDLC by performing code reviews, giving training and mentoring. Secure coding guideline and Developer Education & Security Evangelist
  • Requirements Gathering, Resource Planning, Scheduling, Process Improvement, Collaborative Leader, Knowledge of Design and Development various activity of Mobile Security Platform.
  • Actively manage the security activities associated with Secure Software Development to address existing and evolving risks and threats appropriately.
  • Application privilege design and implementation review
  • Secure application life cycle (Permissions, Signing, SDK, and so on)
  • Development of smack-policy-update and smack-security-report
  • Development of Fingerprint scanner module for biometric security authentication
  • Development of Secure Element for native framework (API for secure communications)
  • Development of Pkcs#5 and Pkcs#8 (password based key derivation, encryption/decryption mac generation/verification, standard format to store private key and encrypted private key)
  • Development of Cipher message sample app and Secure Element sample app, fixing its defect and maintenance of cryptography algorithm
  • Responsible for Security Modules Development it includes (PKI, PKCS, X.509, Crypto, OCSP, Signing Tool, Access Control, SSL, OpenSSL), Platform Security Vulnerability Analysis.
Security module developmentSecure coding programMobile SecurityBiometric security authenticationCryptographyApplication Security

Cognizant

Program Analyst

Jul 2011Mar 2012 · 8 mos

  • Development and maintenance of Quick Book(Intuit product) and payment gateway(PayPal)
  • Fixing bug related to UI of Quick Book and in PayPal.
  • Development of new feature in Quick Book and in PayPal.
  • Regress testing of various module of Quick Book and in PayPal.
DevelopmentMaintenanceBug fixingFeature development

Education

Vellore Institute of Technology

Bachelor of Technology (B.Tech.) — Information Technology

Jan 2007Jan 2011

Stackforce found 100+ more professionals with Cloud Security & Application Security

Explore similar profiles based on matching skills and experience