P

Prashant V

CEO

San Francisco, California, United States21 yrs 10 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • 20+ years in Information Security and Penetration Testing
  • Organizer of India's most loved security conference
  • Leader in application security initiatives and bug bounty programs
Stackforce AI infers this person is a seasoned Information Security professional with a focus on Application Security and Vulnerability Management.

Contact

Skills

Core Skills

Information SecurityApplication SecurityInformation Security Management

Other Skills

Application Security PracticesApplication Security ProgramsApplication Security ReviewsArchitecture ReviewsBug Bounty ProgramCloud ComputingComputer SecurityDesign ReviewsDevelopmentEnterprise ArchitectureIT StrategyLinuxNetwork SecurityPenetration TestingPre-sales

About

I am an Information security professional with 20+ plus years experience in Information security, penetration testing & software development. Currently managing a dynamic team of product security professionals. Adept skills in Penetration testing and code review. I started a free of cost, open to all conference called www.seasides.net(India's most loved conference) I am part of OWASP Bay Area Leadership team. I manage the hackerthursday for OWASP bay chapter and Speaker at following conferences:- Blackhat 2024 Europe https://www.blackhat.com/eu-24/arsenal/schedule/index.html#scagoat---exploiting-damn-vulnerable-sca-application-42139 Defcon 2024:- Tools watch and appsec village Blackhat2019 :- https://www.blackhat.com/us-19/arsenal/schedule/index.html#rwdd-remote-web-deface-detection-tool-16775 Nullcon 2011 :- Json fuzzing c0c0n 2012 :- Security requirements gathering

Experience

Confidential

Product Security Leader

Oct 2021Present · 4 yrs 5 mos

  • I lead a product security team of four, overseeing the bug bounty program and integrating SAST into our CI/CD pipeline. Additionally, I conduct threat modeling and design reviews to ensure robust security practices.
Product SecurityBug Bounty ProgramSASTThreat ModelingDesign ReviewsInformation Security+1

Seasides conference

Organizer

Mar 2019Present · 7 yrs · Goa, India

  • I organize India’s most loved security conference www.seasides.net

Owasp foundation

Chapter Lead

Nov 2016Present · 9 yrs 4 mos · San Francisco Bay Area

  • I am that “Hacker days” guy. I help Owasp Bay Area chapter to organize hacker days and regular meetups

Kohl's department stores

Staff Security Engineer

Oct 2016Oct 2021 · 5 yrs · Milpitas CA

  • Lead the Software Security Group consisting of 4 security engineers
  • Managed the vulnerability reduction program and contributed to 60% reduction in the actively exploitable vulnerabilities in the first year
  • Started the bug bounty program and wrote automation to reduce the frequently reported issues by 90%
  • Evaluated and integrated various tools in SDLC lifecycle. Participated in migration of security tools to GitLab runners from Jenkins CI
  • Mentored the team to support 4 modules of ecommerce website and other business verticals
  • Lead the application security reviews in on-prem to cloud migration
Vulnerability ReductionBug Bounty ProgramApplication Security ReviewsSDLC IntegrationApplication SecurityInformation Security Management

Microsoft

Security Engineer

Oct 2015Sep 2016 · 11 mos · San Francisco Bay Area

  • Worked in Microsoft's collaboration platform team as a security engineer. Threat modeling, architecture reviews, penetration testing were some of the activities i performed.
Threat ModelingArchitecture ReviewsPenetration TestingInformation SecurityApplication Security

Gap inc./gaptech

Application security Engineer

Dec 2014Sep 2015 · 9 mos · San Francisco Bay Area

  • Joined GAP's security engineering team. Primary Job was to secure GAP's internal and external facing applications.
Application Security

Infosys

2 roles

Security Architect

Aug 2012Nov 2014 · 2 yrs 3 mos

  • Worked with Apple Inc to work on setting up a team of application security professionals. Participated in creating strategy for implementing application security programs. Participated in pre-sales activities like responding to RFP, suggesting solutions & providing estimates
Application Security ProgramsPre-sales ActivitiesApplication Security

Technology lead

May 2011Aug 2012 · 1 yr 3 mos

  • Lead various teams in various application security engagements. participated in Penetration testing, Secure code reviews, web application security testing etc. Formed a team of 30+ application security professions. trained and mentored them on various aspects of application security
Penetration TestingSecure Code ReviewsWeb Application Security TestingApplication Security

Kpmg

Assistant Manager

Jul 2010May 2011 · 10 mos

  • Lead various application security engagements & third party audits.Particiapted in pre-sales activities
Application SecurityThird Party AuditsPre-sales Activities

Infosys

Technology Lead

Jul 2006Jun 2010 · 3 yrs 11 mos · Bangalore

  • Was part of initial group to start applcation security practice in Infosys. Created artifacts and resources to evangelize application security practices. Participated in various POCS and engagements to show case our capabilities in application security
Application Security PracticesProof of ConceptsApplication Security

Ca technologies

Associate Software Engineer

Sep 2005Jun 2006 · 9 mos · Hyderabad Area, India

  • Worked as a developer on CA's Etrust suite of Security solutions.
DevelopmentSecurity Solutions

Tata consultancy services

Assistant System Engineer

Jan 2004Sep 2005 · 1 yr 8 mos · bangalore india

  • Worked as developer and support engineer for TCS's retail banking software called ISBS
DevelopmentSupport Engineering

Education

LNCT bhopal

Bachelor of Engineering (B.E.)

Jan 1998Jan 2002

Stackforce found 100+ more professionals with Information Security & Application Security

Explore similar profiles based on matching skills and experience