J

Jitendra Chauhan

Co-Founder

Bengaluru, Karnataka, India20 yrs 6 mos experience
Highly Stable

Key Highlights

  • 18 years of experience in AI and cybersecurity.
  • Co-founder of multiple successful startups.
  • Two patents in cybersecurity technology.
Stackforce AI infers this person is a seasoned cybersecurity and SaaS expert with a focus on innovative security solutions.

Contact

Skills

Core Skills

Continuous Automated Red TeamingAttack Surface ManagementSecurity As A ServiceSiemDevopsProduct ManagementResearch And DevelopmentSecurity AutomationSaas DevelopmentSecurity TestingOffensive SecurityTool Development

Other Skills

3D renderingAJAXAWS CloudAlgorithmsAlgorithms Design and AnalysisAmazon Web Services (AWS)Android DevelopmentApache BeamApache KafkaApache SparkArchitectural DesignArchitectureArchitecturesC#CQRS Pattern

About

IIT alum and seasoned AI & cybersecurity expert with 18 years' experience, 2 patents, 3x startups, Red Teaming specialist, and product builder including Automated Human Hacking and SOC in the Cloud.   Proven success in leading product and strategy at various startups, with a track record of building innovative products. Possesses deep expertise in cybersecurity, including SIEM, Pentesting, EASM, and Red Teaming Products. Contributed to the development of Automated Human Hacking and SOC in the Cloud. A recognized thought leader in the field, actively involved in research and development, culminating in 2 patents and consistent contributions to the cybersecurity community.

Experience

Detoxio ai

Co-Founder

Sep 2023Present · 2 yrs 6 mos

Firecompass

Head of Product & R&D @ FireCompass - Continuous Automated Red Teaming ( CART )

Sep 2018Oct 2023 · 5 yrs 1 mo · Bengaluru, Karnataka, India

  • FireCompass is a SaaS platform for Continuous Automated Red Teaming (CART) & Attack Surface Management (ASM). It continuously indexes and monitors the deep, dark & surface web to map out an organization's digital attack surface including Shadow IT blind spots. The platform then automatically launches safe multi-stage attacks, mimicking a real attacker, to help identify attack paths before hackers do. The platform eliminates the need for multiple tools and significant manual effort while providing continuous and proactive security.
  • My role is to build End to End Platform with Polyglot Micro Service Architecture and the ability to distribute workloads on multiple clouds (AWS/GCP/Aure). Some of the Key Technologies are:
  • Core - Java / Python / Go Lang
  • Micro Services - GraphQL, REST, CQRS Pattern
  • Identity Management - JWT based Zero Trust Architecture
  • Databases - Graph DB, Cassandra/HBase, Elasticsearch, Postgresql/Mysql, etc.
  • Data Engineering - Apache Spark, Apache Beam, Kafka, GCP Big Query, GCP Big table
  • DevOps - Github Actions, Gitlab, Kubernetes, Slackops,
JavaPythonGo LangGraphQLRESTCQRS Pattern+18

Cygilant

Director of Engineering

Sep 2016Sep 2018 · 2 yrs · Hyderabad Area, India

  • Cygilant, previously known as EIQ networks, is a Security as a Service company, with an in-house built cloud platform to deliver security services such as SIEM in the cloud, Security Operations Center in the Cloud, Vulnerability Management, and Patch Management, collectively known as VPM. The cloud platform is built on various cutting-edge big data technologies such as Spring Boot (Java), ELK stack (Elasticsearch, Logstash, Kibana), Kafka, Spark Stream Processing, Kafka Stream Processing, Cassandra, MariaDB, etc. It is cleanly built using Polyglot Micro Service Architecture with the ability to handle millions of events per minute, the processing of terabytes data, and deliver alerts to 24x7 SOC Team.
  • My Key Responsibilities are:
  • + Heading Product Engineering of 40+ team members with the focus to deliver product features as per the Product Roadmap
  • + Built CI/CD pipeline to deploy releases on AWS Cloud. Setup Infra and application monitoring for critical events such as Queues Backlog, Failures, Response Time, etc.
  • + Training Engineers on Secure Coding guidelines, Fundamentals of Algorithms, and Efficient Programming.
  • + Design and Roll out of the Performance Management Process.
JavaSpring BootELK stackKafkaSpark Stream ProcessingCassandra+3

Cigital asia pvt. ltd.

Head of Engineering

Nov 2014Sep 2016 · 1 yr 10 mos · Bangalroe

  • We got acquired by Cigital, one of the top security companies from the USA. I was reporting to the VP of Engineering at Cigital Side. One of my key focus and KRA was to integrate the iViZ Security SaaS product with Cigital Core Systems and Processes. We had a team of 15+ engineers and scaled it to 25+. During this time, we made significant changes to
  • + Integrate Product Management & Engineering - Sprint Backlogs, Prioritization, T-Shirt sizing, Interim Demos, and feedback.
  • + Achieved Predictable Release cycle of 1 Month
  • + Setup DevOps - CI/CD using Jenkins, Chef, Maven, Docker, Vagrant
  • + Built QA Automation - Automation using Selenium and custom scripts
  • + Better Performance Management and Appraisal Cycle- Skill Matrix as per engineering levels, Scoring, and Rating mechanisms.
  • + Enterprise Features - Multi-Tenant SAML based Single Sign-On,
  • + UX Design - Coordination with UX Teams in Vietnam to redesign UI using ReactJS (migrated from AngularJs)
JenkinsChefMavenDockerVagrantReactJS+2

Iviz techno solutions private limited (a cigital company)

3 roles

Head Of Research And Development

Promoted

Aug 2010Sep 2014 · 4 yrs 1 mo

  • We developed a patented technology to integrate Security Experts with Security Tools using a proprietary workflow. The idea was to build Automate Web Application end-to-end security assessment to reduce cost and improve efficiency.
  • We used Java, GWT, Drools (Workflow Automation), Sprint Boot (MVC), Jenkins (CI/CD), AWS Cloud, and custom scripts for deployment.
  • To learn the complex workflow and build a knowledge base, we also provided rare but high-quality security assessments to our premium customers such as
  • One of the top 5 banks in India: Web Application Penetration Testing of their Core Internal Application. Coordination with their Development Vendors to fix the issues. One of the two top Cloud Service Provider Companies in India: Web Application Penetration Testing of their Core Application.
  • Top Casino in the Macau (China).
  • + End to End Penetration Testing of the enterprise network including. Internal core servers and applications.
  • + Security Audit of the Legacy Applications.
  • + Provided Consultancy to fix the issues.
  • One of top 4 FMGC companies in India.
  • + End to End Wireless Penetration Testing including 15 offices.
  • + External Network and Applications Penetration Testing
  • One of the top 5 eCommerce Companies in India.
  • + Web Application Penetration Testing.
  • + Provided Training to their developers.
JavaGWTDroolsAWS CloudResearch and DevelopmentSecurity Automation

Program Manager - R&D

Sep 2008Aug 2010 · 1 yr 11 mos

  • iViZ got funded from IDG ventures and we needed to scale our team to build one of the world's first Security Testing as Software as a Service (SaaS). In this role, I had to hire 12+ team members and built the SaaS version of the product using AWS Cloud, Ruby on Rails (RoR), MySql, Custom Build, and Deployment Scripts, Metasploit, Jasper Reports, etc.
  • We also build our own internal web application scanner purely on Core Java, Maven, and Jenkins. We automated the detection of vulnerabilities such as SQLi, Xss, CSRF, etc.
  • We also applied for a patent in Automated Social Engineering using the Multiple Attack Vector Algorithm (Attack Graph)
  • It was one of the most challenging times for me from the perspective of Leadership skills. I had to learn Delegation, People Management, Release Management, the hard way.
Ruby on RailsMySQLMetasploitJasper ReportsSaaS DevelopmentSecurity Testing

Research Lead

Sep 2006Sep 2008 · 2 yrs

  • I left Oracle to join a very early-stage startup. At iViZ, I have worked with some of the best minds in hacking / offensive security. We developed various proprietary hacking tools on Ruby on Rails, Mysql, Ruby core, Redis, etc. We developed an interesting hacking tool to perform automated hacking performing information gathering, fingerprinting, vulnerability detection, exploitation, pivoting, report generation, etc.
Ruby on RailsMySQLRedisOffensive SecurityTool Development

Oracle corporation

Software Engineer

Aug 2005Sep 2006 · 1 yr 1 mo

Education

Indian Institute of Technology, Kharagpur

Master of Technology - MTech — Information Technology

Jan 2004Jan 2005

Indian Institute of Technology, Kharagpur

Bachelor of Technology - BTech — Computer Science

Jan 2000Jan 2004

National Convent School, Gwalior

Stackforce found 39 more professionals with Continuous Automated Red Teaming & Attack Surface Management

Explore similar profiles based on matching skills and experience