Tanmay Bhattacharjee

Operations Associate

Bengaluru, Karnataka, India18 yrs 5 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in Secure Development Life Cycle implementation.
  • Proficient in diverse penetration testing methodologies.
  • Strong background in DevSecOps and vulnerability management.
Stackforce AI infers this person is a Product Security Engineer specializing in cloud security and vulnerability management.

Contact

Skills

Other Skills

API TestingAPI securityActive DirectoryAmazon EKSAmazon Web Services (AWS)Application SecurityCloud ComputingCloud SecurityCyber Threat Intelligence (CTI)CybersecurityDASTDLPData SecurityDevSecOpsEDR

About

Results-driven Product Security Engineer with extensive expertise in Secure Development Life Cycle Maturity Model implementation, comprehensive threat modeling, and cloud security architecture. Specializing in advanced vulnerability management encompassing both Internal Vulnerability Assessments (IVA) and External Vulnerability Assessments (EVA), with proven proficiency in diverse penetration testing methodologies including Internal Penetration Testing (IPT), External Penetration Testing (EPT), Web Application Penetration Testing (WAPT), API Penetration Testing (APIPT), Kubernetes Penetration Testing (K8sPT), and Cloud Penetration Testing (CloudPT). Demonstrated excellence in DevSecOps practices, seamlessly integrating security controls throughout the software development lifecycle while fostering collaborative purple team engagements that bridge offensive and defensive security capabilities. Skilled in conducting thorough secure code reviews, implementing Software Composition Analysis (SCA) frameworks, and developing comprehensive Software Bill of Materials (SBOM) and Component Bill of Materials (CBOM) documentation to ensure complete supply chain transparency. Passionate about advancing organizational cyber defense measures through innovative security solutions, risk-based vulnerability prioritization, and strategic threat intelligence integration. Committed to securing modern applications and infrastructure against rapidly evolving cyber threats through continuous security testing, automated security tooling, and comprehensive security awareness programs. Brings a unique combination of technical depth, strategic thinking, and hands-on experience in both offensive and defensive security disciplines, enabling effective identification, assessment, and mitigation of complex security risks across diverse technology stacks and deployment environments.

Experience

18 yrs 5 mos
Total Experience
3 yrs 7 mos
Average Tenure
2 yrs
Current Experience

R360 group

4 roles

Manager

Promoted

Oct 2024Present · 1 yr 7 mos · Bengaluru, Karnataka, India · On-site

  • Offensive, Defensive & Assurance

Assistant Manager

Apr 2024Sep 2024 · 5 mos · Bengaluru, Karnataka, India · On-site

Lead Product Security

Promoted

Apr 2022May 2024 · 2 yrs 1 mo · Bengaluru, Karnataka, India · On-site

Senior Security Engineer

Jun 2021Mar 2022 · 9 mos · Bengaluru, Karnataka, India · On-site

Nullcon

Leader, null Kolkata

Jun 2023Nov 2024 · 1 yr 5 mos · Kolkata, West Bengal, India · Remote

  • null or n|u is a registered not-for-profit society and an active security community.
  • Please follow the upcoming events from the following endpoint
  • https://null.community/chapters/14-kolkata

Owasp foundation

2 roles

Leader OWASP-KOLKATA

Jun 2021Jun 2025 · 4 yrs · Kolkata, West Bengal, India

Leader OWASP-KOLKATA

Jun 2021Aug 2024 · 3 yrs 2 mos · Kolkata, West Bengal, India

  • https://owasp.org/www-chapter-kolkata/

Indian cyber security solutions

Information Technology Security Analyst

Jun 2019Jun 2021 · 2 yrs · BANGALORE

Priarche technology pvt ltd

Network Security Engineer

Nov 2018Jun 2019 · 7 mos · India · On-site

Indian army

Ex Army

Jan 2004Dec 2014 · 10 yrs 11 mos · India

Education

Indira Gandhi National Open University

Bachelor of Arts (B.A.) — Public Administration

Jan 2015Jan 2018

Datamites

Certified Data Science — Data Science

Mar 2023Present

Stackforce found 100+ more professionals with API Testing & API security

Explore similar profiles based on matching skills and experience