Sanjog Panda

CEO

Bengaluru, Karnataka, India12 yrs 1 mo experience
Highly Stable

Key Highlights

  • Built and led a 12-member security team.
  • Achieved 40% faster vulnerability remediation.
  • Transformed compliance into a competitive advantage.
Stackforce AI infers this person is a Security Engineering leader in the Fintech and Health-tech sectors.

Contact

Skills

Core Skills

Security EngineeringTeam LeadershipDevsecopsSecurity SolutionsThreat ModelingSecurity GuardrailsSecurity TestingSecure Product DevelopmentApplication SecurityPenetration Testing

Other Skills

Amazon Web Services (AWS)ArchitectureCC++CEHCSSCSS3Cloud SecurityCode ReviewCompliance CheckComputer SecurityCore JavaCryptographyDesign DocumentsEncryption

About

Building enterprise-grade security programs that technical teams respect and boards trust. I bridge the gap between hands-on security engineering and C-suite priorities, having scaled security teams for organizations ranging from fintech startups to health-tech unicorns. Leadership Impact - 🔷 Currently Head of Security at Navi - Built and lead a 12-member team securing 1000+ cloud-native assets through offensive security programs and Zero Trust architecture. Shift from a security-reactive to pro-security culture. 🔷 Technical Strategist for Startups & Enterprises: Design DevSecOps pipelines (SAST/SCA/DAST) that developers adopt, not circumvent - 40% faster vulnerability remediation. 🔷 Compliance Translator: Turned FDA 21 CFR Part 11/HIPAA/DoD requirements into engineering guardrails for $2B+ critical infrastructure, reducing audit findings by 65% Why Technical Teams Engage Me ✓ 10+ years performing and managing full-cycle pentests (Web/API/Mobile/Cloud) ✓ Built threat modeling frameworks used by 150+ engineers at Fortune 500 healthtech firms ✓ Still write automation scripts for client engagements - believe leaders should speak code, not just budgets Consulting Focus ▶️ Scaling security teams that engineers want to join ▶️ Transforming compliance from annual scramble to competitive advantage ▶️ Fixing cloud security without slowing DevOps velocity Let’s discuss building security organizations that outpace your risk landscape.

Experience

Navi

3 roles

Head of Product Security

Promoted

Jul 2022Apr 2024 · 1 yr 9 mos

  • Scale , Optimise , Sensitise
Security EngineeringCloud SecurityTeam LeadershipZero Trust Architecture

Principal Security Engineer

Jan 2022Jul 2022 · 6 mos

  • Hiring
  • Scale security engineering practices across org
  • Evangelize security
  • Build and integrate security solutions
  • Improve security posture
DevSecOpsVulnerability RemediationSecurity Solutions

Product Security Lead

May 2021Dec 2021 · 7 mos

  • Bootstrap Security engineering
  • Build product security team
  • Pentest, Threat Model and setup guardrails
Threat ModelingSecurity GuardrailsPentesting

Gojek

2 roles

Senior Staff Information Security Engineer

Mar 2020May 2021 · 1 yr 2 mos

Staff Information Security Engineer

Sep 2017Mar 2020 · 2 yrs 6 mos

  • Selected discloser later

Philips

2 roles

Product Security Technical Specialist

Oct 2016Aug 2017 · 10 mos

  • + Setting up Center of Excellence for Security Testing and Secure Product Development.
  • + Philips Product security testing and compliance check.
  • + Security test lab /Environment setup.
  • + Secure Key management on mobile device, and firmwares.
  • + Securing network systems against DoD standards.
  • + Accessing application and classification based on Threat model.
  • + Fuzzing medical devices.
  • + Web, Mobile Application and Thick client VA and PT
  • + Developing secure design guidelines for mobile and web application development.
  • + IoT device security.
Security TestingSecure Product DevelopmentCompliance Check

Product Security Engineer

May 2014Oct 2016 · 2 yrs 5 mos

  • + Setting up Center of Excellence for Security Testing and Secure Product Development.
  • + Philips Product security testing and compliance check.
  • + Security test lab /Environment setup.
  • + Secure Key management on mobile device, and firmwares.
  • + Securing network systems against DoD standards.
  • + Accessing application and classification based on Threat model.
  • + Fuzzing medical devices.
  • + Web, Mobile Application and Thick client VA and PT
  • + Developing secure design guidelines for mobile and web application development.
  • + IoT device security.
Security TestingSecure Product DevelopmentCompliance Check

Infosys

Security Analyst

Dec 2011Apr 2014 · 2 yrs 4 mos · Mysore, Karnataka, India

  • Responsible for application security at FSI- Independent Verification Team ,Infosys.
  • Writing Proof of Concepts on application security.
  • Penetration Testing on Web applications.
  • Test case Generation.
  • Test Automation through Scripts
  • Secure source code analysis and development .
  • Infosys's Threat Modelling for Security Testing and VA
Application SecurityPenetration TestingTest Automation

Education

Biju Patnaik University of Technology, Odisha

Bachelor of Technology - BTech — Computer Science

Jan 2007Jan 2011

Kendriya Vidyalaya

maths

Jan 2005Jan 2007

Madnawati Public school

Jan 1995Jan 2005

Stackforce found 100+ more professionals with Security Engineering & Team Leadership

Explore similar profiles based on matching skills and experience