Aditya Prakash

DevOps Manager

United States13 yrs 6 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Over 10 years of experience in cybersecurity.
  • Led security initiatives for NVIDIA's cloud and data center products.
  • Advocate for cybersecurity hygiene and education.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on cloud security and infrastructure.

Contact

Skills

Core Skills

Cloud SecuritySecurity Architecture Design

Other Skills

AWSAWS LambdaAgile MethodologiesAndroidAndroid DevelopmentApache PigAthenzCCICDContinuous DeliveryCybersecurityDGX cloudDevSecOpsEncryptionExecutive Leadership

About

I am cyber security specialist currently leading security at NVIDIA focusing of Nvidia GPU Cloud and Data Center Products. I love to dig deep and solve hard security problems in the space of cloud, software supply chain, vulnerability management, PKI, Edge IOT, Zero trust Network, and AI/ML/HPC platforms. I am an advocate of cybersecurity for all - if done well, everyone can play a major role in shaping cybersecurity hygiene for human kind. With 10+ years of industrial experience, I have worn multiple hat in security domain. CyberSecurity Risk Officer, Security Architect, Security Engineer, SecOps, DevSecOPs, Security SME for customer facing services/products, etc. are some of the roles that I have worked on in the past. Some of the most notable products that I shaped or contributed from security POV include NVIDIA DGX Cloud for Generative AI, NVIDIA AI Enterprise, NVIDIA Fleet Command, NVIDIA DGX Foundry, NVIDIA Base Command, Samsung Knox, Android Platform Security etc. I enjoy meeting new people and listening their life journey. I play some serious cricket on weekend @ NCCA/BACA leagues, and really love being outdoor, either hiking or running or camping or traveling. If you are interested in any of these and want to talk about cybersecurity fields/career path, feel free to reach to me for any guidance or help. Happy to help!

Experience

Nvidia

2 roles

Sr. Staff Security Architect

Jun 2023Present · 2 yrs 9 mos · Santa Clara, California, United States · On-site

Cloud SecurityThreat & Vulnerability ManagementSecurity Architecture DesignInformation Security ManagementDGX cloud

Staff Security Architect

May 2020Jun 2023 · 3 yrs 1 mo · Santa Clara, California, United States · On-site

  • Provide high-level security expertise to executives, managers and technical staff in the organization.
  • Work as a Security Architect for data center products and service offerings such as NVIDIA NGC, NVIDIA Base Command, NVIDA DGX Cloud, Fleet Command and Launch PAD.
  • Do Threat modeling and Security design Reviews of cloud products or services.
  • Securing Edge and cloud infrastructure offerings.
  • Work closely with Executive Staff, Product and Program in the planning, release and support of products for any security issues
  • Come up Security Requirements to help DevOPs team bootstrap DevSecOps. I ensure DevOPs team adheres to regular cadence for security scans of artifacts and timely resolution of the Vulnerabilities found.
  • Collaborate with product, compliance and legal teams to ensure data security and governance are taken care of; especially for the customer data collected from on-prem services.
  • Working on securing the core infrastructure products offered by Nvidia by implementing some of the very challenging solutions such Secure Boot, Remote Attestations, OS Hardening etc.
  • Designed and developed One time password solution for SSH access to all the Data Center Hosts using Hashicorp Vault and Golang.
  • Securing SDLC by identifying and recommending the best practices.
Security Architecture DesignCloud SecurityGo (Programming Language)Threat & Vulnerability ManagementSecurity System DesignKey Management+1

Verizon media

Security Engineer II

Sep 2018May 2020 · 1 yr 8 mos · San Francisco Bay Area

  • Added the support for X509 certificate based RBAC to access the Hadoop clusters for Threat Engineering.
  • Implemented the NECMEC support for video classification from archives to find out the benign or malicious behavior.
  • Successfully deployed the containerized service to integrate Okta based corporate identity with SSH logins to production servers.
  • Added the Yubikey attestation support which verifies the signature of attesting certificates on the Yubikey.
  • Architected the aggregation platform for managing the states of on-prem and cloud instances using AWS lambda, S3 and DynamoDb.
  • Researched and implemented the organization wide SSH compliance scanning via Nessus agents.

Oath

Security Engineer

Jun 2017Sep 2018 · 1 yr 3 mos · San Francisco Bay Area

  • Designed and developed the mTLS interface for RA to issue short lived certificates for infrastructure services or production tools.
  • Achieved transition of On-premise host based access control service to public clouds such as AWS. This covers more than than tens of thousands of production hosts.
  • Integrated patterns for finding AWS Secrets, RCE, Permission Model breaches, and privilege escalation in Source code scanning tool.
  • Developed the C library for cookie GDPR which is being used by all the customer facing
  • services provided by Oath such as yahoo mail, yahoo media, AOL etc.
  • Achieved SSH compliance in more than 50% of AWS land by writing audit files and running using Nessus Agents and Tenable.io in the organization.

Yahoo! inc.

Security Engineer

Feb 2017Jun 2017 · 4 mos · San Francisco Bay Area

  • Working in Yahoo paranoid team to develop industry wide security solutions.

Stony brook university

Teaching Assistant

Aug 2016Dec 2016 · 4 mos · Stony Brook, New York

  • Teaching Assistant for Graduate Course CSE-509 : System Security for Fall 2016.
  • Responsibilities:
  • Helping students with Assignments and doubts on the topics. Evaluation and Grading of quizzes, homework, assignments and exams.

Tintri

Research Intern

May 2016Aug 2016 · 3 mos · Mountain View, California

  • Prototyping the Intel's Quick Assist Technology (QAT) based encryption and compression solution for offloading cpu-intensive compute to the hardware accelerators. This allows software applications and frameworks to take advantage of this offload seamlessly and transparently, achieving optimal
  • performance with minimal changes to the application. The prototype helped in easing the storage and compute cost for heavy tasks such as crypto opeerations and compression or decompression.

Samsung electronics

3 roles

Lead Software Engineer

Mar 2015Jul 2015 · 4 mos

  • Research and development of the new Enterprise solutions based on Android framework. Innovate and ideate to make the solutions more effective and useful for the end users. Requirement discovery and collections from HQ counter parts, design and effectively implementing the solutions from the scratch. Unit testing and running static analyzer to generate static code analysis report.

Senior Software Engineer

Apr 2013Feb 2015 · 1 yr 10 mos

  • Provisioning of Integrity management to Samsung Knox devices for all types of compromises like rooting, Source code breaching, malicious code injection, hacking software installation like malwares etc.

Software Engineer

Apr 2012Mar 2013 · 11 mos

  • Pretty Good Privacy(PGP).
  • Responsible for the design and development of the OpenPGP security mechanism for the IMAP and POP accounts in the E-mail. Work involves the designing/discussing/implementing/testing of the module along with the technical research regarding the different Encryption Algos.

Rancore technologies

Software Developer

Jul 2011Mar 2012 · 8 mos · Mumbai Area, India

  • I was responsible for Coding and Testing of Session Module (SM) of P-CSCF (handling of INVITE and other SIP Requests).

Education

Stony Brook University

Master of Science (MS) — Computer Science

Jan 2015Jan 2016

National Institute of Technology Jamshedpur

B-Tech — Computer Science and Technology

Jan 2007Jan 2011

Pitts Modern School

ISC

Jan 2004Jan 2006

Stackforce found 100+ more professionals with Cloud Security & Security Architecture Design

Explore similar profiles based on matching skills and experience