M

Madhuri Deb

DevOps Engineer

Dubai, United Arab Emirates12 yrs 3 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Over 11 years of cybersecurity experience.
  • Expert in cloud security architecture across major platforms.
  • Proven track record in enhancing security postures.
Stackforce AI infers this person is a Cloud Security Architect with extensive experience in cybersecurity and compliance.

Contact

Skills

Core Skills

CybersecurityData PrivacyCloud SecurityGovernanceVulnerability ManagementApplication SecurityNetwork Security

Other Skills

Burp SuiteC++CEHCloudflareComplianceCompliance (GRC)Container SecurityDevSecOpsFortifyInformation Security GovernanceJIRAMetasploitMobile SecurityNetworkingNmap

About

šŸ” Cybersecurity Advisor | 11+ Years of Experience | Security Architecture | Cloud & Application Security | DevSecOps Enthusiast | Data Privacy & Compliance šŸŽÆ Core Competencies * Cloud Security Architecture (AWS, Azure, GCP) * DevSecOps Automation & Strategize Shift-Left approach * Application & API Security (Web, Mobile, Thick Clients) * Penetration Testing & Red Team Operations * Threat Modeling & Security Architecture Reviews * Data Privacy & Compliance (PDPL, GDPR) * Container & Kubernetes Security * Security Posture Management & Hardening šŸ” Cloud & Security Architecture Built resilient multi-cloud defenses across GCP, AWS and Azure, conducting 40+ architecture reviews aligned with NIST, ISO, and CIS benchmarks. From risk management to cloud configuration hardening, I’ve enhanced security posture and ensured compliance at scale. 🧱 Application & API Security Specialist
 With a laser focus on Application and API Security, I’ve safeguarded APIs, web, mobile, and thick client applications through secure design, advanced pentesting, and secure SDLC practices—ensuring data integrity and user trust across platforms. āš™ļø DevSecOps Advocate Championed shift-left security by integrating SAST, DAST, SCA, container security, and image scanning into CI/CD pipelines. Led DevSecOps efforts that reduced remediation by 40% and cut deployment delays by 30%. Established Golden Image Rules to enforce hardened, compliant configurations across cloud and container environments, minimizing attack surfaces. šŸ›”ļø Threat Defense & Incident Response Managed Cloudflare firewall rules, Bot Management and DDoS protection. Used Elastic Search SIEM for proactive threat detection and alert tuning. Conducted incident response and monitored network traffic to detect and respond to intrusions. šŸ“œ Privacy & Governance
 Defined and implemented comprehensive security governance frameworks aligned with NIST, ISO 27001, and data protection regulations, including PDPL. Leveraged ISO 27701 to enhance privacy controls, ensuring organizations remain audit-ready while fostering secure digital innovation. šŸ› ļø Security Toolset Expertise Offensive Tools: Burp Suite, Kali Linux, Metasploit, Nessus, AppScan, Fortify, WebInspect, sqlmap, Drozer, MobSF, Frida, IDA Pro, Ghidra, Nmap, Wireshark
 Defensive Tools: Cloudflare, Splunk, Elasticsearch Cloud Security: GCP Security Command Center, Azure Security Center, AWS Security Hub, Container/Kubernetes Security, APIGEE api security

Experience

Landmark group

Security & Privacy Advisor

Nov 2021 – Present Ā· 4 yrs 4 mos Ā· Dubai, United Arab Emirates

  • 1. Cybersecurity & Privacy Advisor leading end-to-end security architecture for GCP cloud ecosystem, web, and mobile platforms.
  • Defined and executed the security roadmap, boosting cloud and application security posture by ~50%.
  • 2.Established and enforced security governance and data privacy frameworks aligned with PDPL, reducing regulatory risk and ensuring compliance. Managed ROPA, DPIAs, and DPAs for vendor onboarding, ensuring robust consent mechanisms and adherence to PDPL, NCA, and UAE regulations.
  • 3. Conducted in-depth architecture reviews across cloud, data, and infrastructure to align with secure design principles. Oversaw threat modeling and mitigation strategies, integrating hands-on security with enterprise-level governance.
  • 4. Improved security maturity by 40% through tool integration and process optimization.
CybersecurityPDPLInformation Security GovernanceCloudflareThreat & Vulnerability ManagementThreat Modeling+6

Deloitte

Security Solution Delivery Lead

Jul 2019 – Nov 2021 Ā· 2 yrs 4 mos Ā· India Ā· On-site

  • 1. Cloud Security & Architecture
  • >Designed and implemented multi-cloud security controls across GCP, AWS, and Azure, enhancing data protection and overall ecosystem security.
  • >Reviewed 20+ multi-cloud architectures using ISO, NIST, CIS benchmarks to improve compliance and reduce risk.
  • >Embedded security-by-design principles into cloud architectures and performed threat modeling to proactively address vulnerabilities.
  • Partnered with cross-functional teams to ensure secure and resilient cloud application deployments.
  • 2. Vulnerability Management & Testing
  • >Conducted 30+ vulnerability assessments and penetration tests across applications and infrastructure, remediating critical security issues.
  • >Streamlined vulnerability & patch management processes in alignment with industry standards.
  • Leveraged SAST, DAST, and API security tools, reducing security gaps by approximately 60%.
  • 3. Security Governance & Strategy
  • >Developed and maintained security policies, procedures, and standards, strengthening the organization’s overall security posture.
  • >Enhanced security frameworks, tools, and methodologies, contributing to a 40% improvement in the security roadmap and maturity.

W-cs

Bangalore Chapter Lead

Jul 2019 – Nov 2021 Ā· 2 yrs 4 mos Ā· Bengaluru, Karnataka, India

  • Chapter Lead in Women in Cybersecurity group, driving security awareness and training initiatives. Conducted sessions on key cybersecurity topics and organized Capture The Flag (CTF) events to promote hands-on learning and community engagement.

Accenture

Senior Security Architect

Feb 2018 – Jul 2019 Ā· 1 yr 5 mos Ā· Bangalore

Principal financial group

Senior Application Security Analyst

Aug 2016 – Feb 2018 Ā· 1 yr 6 mos Ā· Pune

  • Working on various aspects of advisory services which incorporates timely delivering of web application , mobile and web-services Vulnerability assessment and Penetration Testing. Involved in preparing threat models, identify threats , Creating reports and working closely with the stakeholders to make them understand the risk,severity, repercussions and remediation for each and every vulnerabilities . Involved in STRIDE, DREAD and CVSS scoring of the risks. Assist to fix monthly security patches released by Microsoft,Google ,Adobe,etc.

Tata consultancy services

Security Test Engineer

Jan 2014 – Aug 2016 Ā· 2 yrs 7 mos Ā· Pune/Pimpri-Chinchwad Area

  • Worked on various aspects of Advisory Services such as Web Application Security Assessment, Threat & Vulnerability Assessment and Network Attack & Penetration Testing. Sound knowledge of OWASP top 10 Vulnerabilities.

Education

Shri Shankaracharya College of Engineering & Technology

Bachelor's of Engineering. — Electronics and Telecommunications.

Jan 2009 – Jan 2013

M.G.M Senior Secondary School

HSC

Jan 2007 – Jan 2009

Delhi Public School - Risali Bhilai

SSC

Jan 2000 – Jan 2007

Stackforce found 100+ more professionals with Cybersecurity & Data Privacy

Explore similar profiles based on matching skills and experience