Palak Bansal

Product Manager

Bengaluru, Karnataka, India7 yrs 9 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in designing secure architectures for critical infrastructure.
  • Proven track record in vulnerability assessments and penetration testing.
  • Active contributor to the cybersecurity community through presentations.
Stackforce AI infers this person is a Cybersecurity Architect specializing in OT and Embedded Systems.

Contact

Skills

Core Skills

Secure ArchitecturesRisk ManagementProduct Security TestingVulnerability AssessmentsThreat ModellingSecurity Testing

Other Skills

Agile MethodologiesApplication Security TestingC++CircuitCircuitsCommunicationData flow DiagramDigital Signal ProcessorsElectronicsEmbedded CEnglishFlexible ApproachIOT and Embedded Systems Product Security TestingLeadershipManagement

About

Adept at identifying and mitigating advanced threats in critical infrastructure, ensuring operational resilience and compliance with industry-leading standards like IEC 62443. Results-driven Product Security Architect and Pentester dedicated to building and breaking security in OT, Hardware, IoT, and Embedded domains. Proven ability to design and implement robust security architectures, conduct in-depth vulnerability assessments, and drive security-by-design principles across hardware and software lifecycles. Seeking a Cyber Security OT Architect role to leverage expertise in designing secure industrial control systems and protecting critical infrastructure. # Technical Skills :- + Secure architectures for SCADA systems, PLCs, DCS, industrial IoT devices +Threat Modeling: STRIDE, DREAD + Risk Management + Static/Dynamic Analysis: SAST, DAST,SCA + Supply Chain Security: SBOM + Developed and integrated secure development lifecycle (SDLC) processes + Embedded Systems and IOT Product Security (Hardware, Firmware, WiFi, BLE, Cellular GSM, Ethernet, Modbus and MQTT). + Aerospace Product Security Testing + Mobile Application Security Testing. ( Android & IOS ) + Thick Client Application Penetration Testing. + Reverse Engineering (Linux Firmware) + Audits and Hardening Assessments (Operating Systems and Servers)

Experience

Honeywell

2 roles

Advanced cyber sec Archt/Engr

Promoted

May 2024Present · 1 yr 10 mos

  • Led the design and implementation of secure architectures for SCADA systems, PLCs, DCS, industrial IoT devices
  • Developed and integrated secure development lifecycle (SDLC) processes into product design, from conception to deployment, focusing on OT-specific vulnerabilities.
  • Conducted comprehensive threat modeling and risk assessments for new and legacy OT products, identifying and mitigating critical security risks.
  • Implemented robust risk management frameworks to identify, analyze, and prioritize security risks, advising leadership on strategic decisions.
  • Collaborated with engineering and product teams to embed security requirements early in the development process, ensuring security-by-design principles.
  • Implemented and enforced security controls and best practices aligned with industry standards (e.g., IEC 62443, NIST CSF, ISA/IEC 62443).
  • Managed third-party security assessments, penetration testing, and vulnerability management programs for OT products.
  • Strong knowledge across OT protocols such as Modbus, TCP, HART, OPC UA etc.
  • Provide technical contributions and strategic support to initiatives aligned with the Cyber Resilience Act (CRA) and Radio Equipment Directive (RED), enhancing product security compliance and regulatory readiness for connected systems
  • Mentored and trained Junior resources
  • Promoted xSBG collaboration by engaging with Aerospace business group
  • Experienced in Aerospace technologies and export controlled programs.
  • Active engagement with larger cybersec community. Presenter and panelist at BSides Mumbai and Defcon Delhi chapters.
  • Assist in the development of modular, repeatable, effective Security Testing processes and lead initiatives to engineer better solutions.
  • Work with cross functional teams to develop remediation suggestions and Report observations using a standardized reporting structure.
Secure architectures for SCADA systemsRisk ManagementThreat ModelingSecurity controlsVulnerability managementSecure architectures

Cyber Sec Acht/Engr II

Mar 2022Jun 2024 · 2 yrs 3 mos

  • IOT and Embedded Systems Product Security Testing (Hardware, Firmware, Wifi and Bluetooth)
  • Vulnerability Assessments and Penetration Tests for Products and Applications.
  • Application & Product Security Testing (Mobile, Thick Client, Firmware, Wifi, Bluetooth, Embedded, IoT, Hardware).
  • Communicated security risks and VAPT results with Product and Application Owners using Jira App.
  • Experienced with pentest tools and frameworks such as:
  • Burp Suite, IDA Pro, GHidra, Kali, OWASP, Metasploit, Nessus, MObSF, Genymotion, Frida, APK Tool
IOT and Embedded Systems Product Security TestingVulnerability AssessmentsPentest toolsApplication Security TestingProduct Security Testing

Xylem inc.

2 roles

Product Security Engineer

Promoted

Jul 2020Mar 2022 · 1 yr 8 mos

  • Collaborate with the product development team to embed security during architecture planning phase
  • Work on Threat Modelling using STRIDE and DREAD frameworks and create Data flow Diagram
  • Perform Hardware and IoT devices Security Testing
  • Run automated and manual test cases and evaluate results
  • Map threat modelling to IEC 62443-4-2 Standards
Threat ModellingSecurity TestingData flow Diagram

Embedded Engineer

Jul 2019Jul 2020 · 1 yr

Vulnerability Scanning

University language school, university of manchester

Student Ambassador

Jun 2018Jun 2018 · 0 mo · Manchester Area, United Kingdom

International office -university of manchester

Calling Assistant

Mar 2018Jul 2018 · 4 mos · Manchester, Greater Manchester, United Kingdom

  • Worked for the Manchester Calling Campaign 2017-2018.
  • Provided correct information to the international offer holders and satisfied their queries and concerns

The university of manchester

Student Representative

Sep 2017Sep 2018 · 1 yr · Manchester, United Kingdom

  • Student Representative and Member of Staff Student Liaison Committee (SSLC) for the academic year 2017-18 .
  • Represented fellow students in the course. Communicated their Problems that arose during the year which effect students's as a group.

Anubhuti ( a voluntary social organisation)

Volunteer Service

Jun 2016Jul 2016 · 1 mo · India

  • Taught the underprivileged children and inculcated moral values in them.

Ducat education

Embedded Trainee

Jun 2016Jul 2016 · 1 mo · India

  • Worked on Microcontroller and Embedded C to develop various software programs in Atmel Studio.

Education

The University of Manchester

Master of Science - MS — Communication Engineering

Jan 2017Jan 2018

Delhi University

Bachelor's degree — Electronics Engineering

Jan 2013Jan 2017

Stackforce found 100+ more professionals with Secure Architectures & Risk Management

Explore similar profiles based on matching skills and experience