Satish Bommisetty

CEO

Hyderabad, Telangana, India19 yrs 8 mos experience
Highly Stable

Key Highlights

  • 19 years of experience in application security management.
  • Expert in driving secure SDLC adoption and vulnerability programs.
  • Specialized in web, mobile, and API penetration testing.
Stackforce AI infers this person is a seasoned Application Security Manager with expertise in SaaS and security frameworks.

Contact

Skills

Core Skills

Application SecuritySecure SdlcApi SecurityVulnerability Disclosure ProgramsPenetration Testing

Other Skills

Bug Bounty ProgramsCEHMobile SecurityOWASPSecuritySecurity Metrics ReportingTeam LeadershipThreat ModelingVulnerability AssessmentWeb Application Security

About

Senior Application Security Manager with 19 years of experience in application security and software development. Proven expertise in leading security teams, driving secure SDLC adoption, and managing VDP and bug bounty programs. Specialized in web and mobile pentesting, API security, threat modeling, AI/LLM application pentesting, and cloud security (Azure). Adept at collaborating with cross-functional teams, building scalable security frameworks, and delivering measurable improvements to organizational security posture. Core Competencies: • Application Security & Secure SDLC • Web, Mobile & API Penetration Testing • Threat Modeling • AI/LLM Application Security Testing (beginner level) • Cloud Security (Azure) • Vulnerability Disclosure Programs (VDP) & Bug Bounty • DevSecOps Integration (CI/CD, SAST, DAST, SCA) • Source Code Review (Checkmarx, CodeQL) • Security Awareness & Developer Training • Team Leadership & Security Metrics Reporting

Experience

Highspot

Senior Manager, Product Security

Nov 2025Present · 4 mos · Hyderabad, Telangana, India

Jda software

Senior Manager, Application Security

Feb 2019Sep 2025 · 6 yrs 7 mos · Hyderabad Area, India

  • Lead and managed a team of 8 security engineers, driving application security strategy and execution.
  • Directed penetration testing for web and mobile applications, identifying and remediating vulnerabilities.
  • Drove threat modeling initiatives across high-risk applications, improving risk visibility and prioritization.
  • Integrated Secure SDLC practices into design, development, and CI/CD pipelines, reducing vulnerabilities in production.
  • Drove the organization’s API security initiative by implementing automated API scanning, and standardizing remediation processes, significantly enhancing resilience against modern attack vectors.
  • Implemented Vulnerability Disclosure Programs (VDP) and Bug Bounty programs, enhancing vulnerability discovery.
  • Established application security KPIs, dashboards, and reporting mechanisms for senior leadership visibility.
  • Conducted AI/LLM application security testing (beginner level).
Application SecuritySecure SDLCPenetration TestingThreat ModelingAPI SecurityVulnerability Disclosure Programs+2

Ca technologies

Principal Security Engineer

Nov 2015Feb 2019 · 3 yrs 3 mos · Hyderabad Area, India

Pramati technologies

Principal Security Engineer

May 2014Nov 2015 · 1 yr 6 mos · Hyderabad Area, India

  • Setup secure SDLC practice
  • Carried out web application security assessments
  • Performed secure code review of Grails & Groovy applications
  • Trained developers & QA teams on security domain

Adp

Application Security Analyst

Jun 2006May 2014 · 7 yrs 11 mos

  • Carried out over 200 penetration tests on a variety of web applications, Single sign on systems, Citrix hosted applications, Standalone applications, Secure File Exchange systems, Web services, Active X control, Flash, Flex and Java based applications, Report Creation applications and mainframe applications.
  • Performed various other works like firewall rules verification, Source code reviews, web server configurations and database assessments.
  • Performed security assessments of mobile applications - iPhone & Android.

Education

JNTU, Hyderabad

B.Tech — Computer Science and Engineering

Jan 2002Jan 2006

Stackforce found 100+ more professionals with Application Security & Secure Sdlc

Explore similar profiles based on matching skills and experience