Mohan Kumar

Director of Engineering

Bengaluru, Karnataka, India13 yrs 8 mos experience
Highly Stable

Key Highlights

  • Led implementation of shift-left security practices.
  • Achieved SOC 2 and ISO 27001 compliance.
  • Managed a team of 10 engineers in cybersecurity.
Stackforce AI infers this person is a SaaS security leader with extensive experience in product security and vulnerability management.

Contact

Skills

Core Skills

Product SecurityVulnerability ManagementInformation Security

Other Skills

AcunetixAmazon Web Services (AWS)Application SecurityBurp SuiteCICloud ComputingComputer SecurityCyber securityDASTDevSecOpsEngineeringFirewallsInformation Security ManagementLeadershipLinux

About

As a Manager - Information Security at Freshworks, I manage a team of 10 engineers who are responsible for ensuring the security and quality of the software development practices and products. I have over 8 years of experience in the cybersecurity domain, with expertise in SAST, DAST, and DevSecOps methodologies. My mission is to drive the product security initiatives, addressing security vulnerabilities, and implementing necessary security controls throughout the Software Development Life Cycle (SDLC). I also collaborate with cross-functional teams to achieve enterprise security readiness in terms of product security and compliance. Some of my achievements include leading the implementation of "shift left" security practices, building and enhancing security features within the product, and managing bug bounty programs. I am passionate about technology and cybersecurity, and I strive to create a secure and robust product experience for our customers.

Experience

Xurrent

Director of Product Security

Jun 2025Dec 2025 · 6 mos · Bengaluru, Karnataka, India · On-site

  • Set the product security strategy and roadmap across all products.
  • Integrated security into SDLC and DevSecOps for faster, secure releases.
  • Established vulnerability management with security SLAs to reduce open issues.
  • Achieved and maintained SOC 2 and ISO 27001 compliance.
  • Implemented automated security tooling and managed Vanta, Sprinto, Aikido, and external pentesters.
  • Presented monthly security posture and risk updates to the C-suite and Board.
Vulnerability ManagementSecurity EngineeringDevSecOpsSecurity Architecture DesignProduct Security

Freshworks

4 roles

Manager - Information Security

Promoted

Apr 2022Jun 2025 · 3 yrs 2 mos · Chennai, Tamil Nadu, India

  • Managing a team of 10 engineers, fostering collaboration for secure software development.
  • Implemented a shift-left security program, integrating security early in development to minimize risks.
  • Designed and executed security testing plans (VAPT, SAST, DAST) based on OWASP Top 10.
  • Managed SAST and DAST vendors, overseeing tool selection and integration.
  • Led vulnerability management, working with development teams for timely remediation.
  • Established a threat modeling process to proactively identify and mitigate risks.
  • Developed a security maturity model and conducted architecture reviews to ensure compliance.
  • Delivered security training, enabling teams to write secure code and manage risks effectively.
  • Created and executed a strategic security roadmap, ensuring alignment with business goals.
  • Collaborated with cross-functional teams to implement controls aligned with HIPAA, SOC2, GDPR, CCMA, and ISO27001.
  • Worked with audit teams to maintain regulatory compliance across product and operational workflows.
  • Led incident response efforts, protecting corporate assets and resolving security breaches.
  • Implemented and managed a WAF to guard against OWASP Top 10 vulnerabilities.
  • Coordinated cloud security efforts using tools like Wiz (CNAPP) to mitigate threats.
  • Conducted security reviews for AI deployments, safeguarding against emerging risks.
Vulnerability ManagementLeadershipInformation SecurityProduct SecurityDevSecOpsEngineering+3

Lead Security Engineer

Promoted

Apr 2021Apr 2022 · 1 yr · Chennai, Tamil Nadu, India

  • Leading & mentoring a team of Security Engineers.
  • Planning the security roadmap along with the product stakeholders.
  • Implementation of Shift-left initiatives.
  • Providing security solutions for various product requirements.
  • Engaging in customer queries. Managing bug bounty programs.
  • Performing vulnerability assessment & penetration testing on Freshworks suite of products.
VAPTVulnerability ManagementOWASPProduct SecuritySASTSecurity Architecture Design+4

Senior Security Engineer

May 2017Apr 2021 · 3 yrs 11 mos · Chennai, Tamil Nadu, India

  • Engaging developers and QA folks in training awareness programs.
  • Working with developers on security bug fixes.
  • Helping the QA folks in understanding and performing basic vulnerability assessments.
  • Setting up a CI environment for customized SAST and SCA implementations.
  • Performing vulnerability assessment & penetration testing on Freshworks suite of products.

Security Engineer

Jul 2015May 2017 · 1 yr 10 mos · Chennai, Tamil Nadu, India

  • Web application security testing
  • Mobile application security testing
  • Network security assessment
  • Conducting manual and automated assessments

Sais information technology private limited

Security Engineer

Apr 2013Jul 2015 · 2 yrs 3 mos · Greater Chennai Area

  • Web Application and Network Security Testing
  • Vulnerability Assessment and Penetration Testing, Network Security Assessment
  • Information Security Audit, Manual Testing, Automation Testing

Freelance

Security Researcher

Apr 2012Apr 2013 · 1 yr · Chennai, Tamil Nadu, India

  • - Participating in bug bounty programs in Hackerone, Bugcroud, and other private programs.

Education

M.kumarasamy college of engg

Master of Science (M.Sc.) — Computer Software Engineering

Jan 2006Jan 2011

Kurinji Hr Sec School

HSC — Biology

Jan 2004Jan 2006

Stackforce found 100+ more professionals with Product Security & Vulnerability Management

Explore similar profiles based on matching skills and experience