Arun KL

Associate Consultant

Berlin, Berlin, Germany12 yrs 8 mos experience
Highly StableAI Enabled

Key Highlights

  • 15 years of diverse cybersecurity experience
  • Published over 500 cybersecurity articles
  • Expert in cloud security and vulnerability management
Stackforce AI infers this person is a Cybersecurity Expert specializing in Cloud Security and Vulnerability Management.

Contact

Skills

Core Skills

Cloud SecurityVulnerability ManagementSecurity Architecture DesignMicro-segmentationIncident ResponseSecurity Operations CenterNetwork Security

Other Skills

AI SecurityAWSArtificial Intelligence (AI)AzureCloud AdministrationContainerizationCyber Threat Hunting (CTH)Cyber Threat Intelligence (CTI)Database MonitoringEndpoint SecurityFirewall ManagementGenerative AIGovernance, Risk Management, and Compliance (GRC)ITSMIncident Management

About

I am a cybersecurity professional working in IT for 15 years now. I worked with many global teams and IT companies operating from different parts of the globe. I served as a cyber security analyst, specialist, engineer, consultant, and architect in these years. I spent most of my time working in Security Operations and Engineering teams like SOC, CIRT, Vulnerability Management, Threat Hunting, Malware Analysis, and Forensics teams. I worked on several other security projects and have good hands-on experience in designing, deploying, configuring, and maintaining security solutions like SIEM, SOAR, EDR, XDR, NDR, Web Application and Network Firewalls, IPS/IDS, EndPoint Security Solutions, Micro-segmentation solutions, DLP, ADCS, Network Vulnerability Scanners on On-Prem and Cloud infrastructures. In my most recent project, I worked as a Cloud Security Engineer, where my primary responsibility was to ensure the security and integrity of cloud infrastructure across multiple platforms, particularly AWS (Amazon Web Services) and Azure. I look at cybersecurity more as a practitioner than just a professional. I published more than 500 articles, tutorials, analyses, reports, and blog posts about cybersecurity on multiple public forums since 2018. And hosted a training section on how to effectively manage identified and unidentified vulnerabilities, strategies to implement Zero Trust based on the Principle of Least Privilege (POLP), and how to improve Indecent Detection and Response on Cloud and On-Premises infrastructures. Application and Tools Worked Are: AWS: IAM, GuardDuty, CloudTrail, CloudWatch, VPC Flow Logs, KMS, Shield, WAF, Inspector, Security Hub, Macie, Config, Trusted Advisor, Lambda. Azure: AAD, Security Center (Defender for Cloud), Azure Monitor, Network Security Groups, Sentinel, Key Vault, Azure Firewall, Logic Apps, DDoS Protection, Policy, and Azure DevOps. SIEM & SOAR – Splunk, Azure Sentinel, Qradar, ArcSight, and Wazuh. EDR/XDR – Crowdstrike, CarbonBlock, Azure Defender, Symantec Endpoint Protection Microsegmentation – Guardicore Centra Solution. Malware Analysis – Remnux, Joe Sandbox, Falcon Sandbox, Wildfire, IDA Pro, OllyDbg, Ghidra, PEStudio, PEiD, VirusTotal APIs, RegShot, and many internal system tools. Vulnerability Assessment – Qualysgaurd, Tenable Nessus, Rapid7 InsightVM and Nexpose, Cisco Secure Vulnerability Manager, OpenVAS, and Burp Suite, IDS/IPS – Trend Micro TipingPoint, Cisco Firepower, PaloAlto, Security Onion OSINT – Maltego, Shodan, and TheHarvester ITSM – Service Now, Jira, BMC Remedy, and HP Service Manager

Experience

Thesecmaster

Cyber Security Consultant

Jul 2023Present · 2 yrs 8 mos · Bengaluru, Karnataka, India · Remote

  • Worked as a guest freelance Security Consultant & Advisor for a couple of startup companies.
  • Developed and implemented comprehensive information security strategies, plans, policies & procedures, runbooks, playbooks, and project documentation for clients.
  • Helped build SOC, GRC, Risk Assessment, and Vulnerability Management programs for my clients.
  • Design resources on AWS cloud as per the business requirement.
  • Configure resources on AWS and Azure cloud infrastructures using GUI, CLI, and SAM templates like Terraform, CloudFormation, and ARM templates.
  • Automated several workflows using no-code or low-code workflow automation platforms like Make and n8n.
  • Implemented Security Controls, performed Security Assessments (Vulnerabilities, Security Controls, Configuration Audit), and shared the recommendation report to improve the security posture of the organization.
  • Worked on the development of AI-powered security products.
  • Published hundreds of articles, tutorials, analyses, reports, and blog posts about topics around cybersecurity on multiple public forums.
AWSAzureSecurity ControlsVulnerability ManagementCloud Security

Ericsson

2 roles

Security Architect

Jan 2023Jun 2023 · 5 mos · Bengaluru, Karnataka, India

  • Create High Level Solution Design (HLSD), Low Level Solution Design (LLSD), and Product solution designs documents for a Micro-segmentation solution sitting over Citrix environment, and submit for ARB (Architecture Approval Board) approval.
  • Created documentations such as Network Flow diagrams, Data Flow diagrams, Functional diagrams, Solution Architecture diagrams, Infrastructure Design Diagrams, Business Solutions documents, and Security Assessments at the design stage.
  • Design solutions following the Zero Trust Architecture principles with a focus on access authorization.
Micro-segmentationZero Trust ArchitectureSolution DesignSecurity Architecture Design

IT Security Specialist

Sep 2018Feb 2023 · 4 yrs 5 mos · Bengaluru, Karnataka, India

  • · Managed Hybrid Cloud infrastructures of a UK-based telecommunication firm as a Cloud Security Engineer with the responsibility of securing and managing cloud infrastructure on AWS and Azure platforms.
  • Cloud Infrastructure Monitoring: Manage security monitoring and control for cloud infrastructure, including virtual machines, user accounts, networks, and storage resources in AWS and Azure environments.
  • Security Incident Response: Lead the detection and response to security incidents using automation and threat intelligence tools. Automated responses using AWS Lambda, Azure Logic Apps, and incident management through AWS Security Hub and Azure Sentinel.
  • Network and Storage Security: Managed network segmentation and storage security in AWS and Azure. Implemented network security groups, NACLs, and encryption (SSE, KMS).
  • Vulnerability Management and Security Configuration: Performed regular security audits, configuration assessments, and vulnerability management to ensure compliance with security frameworks.
  • Compliance and Security Frameworks: Ensured cloud infrastructure complies with industry standards (NIST, CIS, ISO 27001, SOC 2, HIPAA). Conducted security posture reviews using AWS Well-Architected Tool and Azure Security Center.
Cloud SecurityIncident ResponseVulnerability Management

Microland limited

2 roles

Subject Matter Expert - Security

Promoted

Jan 2017Aug 2018 · 1 yr 7 mos

  • Taken care of multiple security solutions, including ArcSight & Splunk SIEM, Rapid7 Nexpose for Network Vulnerability Scanning, WebInspect, BurpSuite, ZAP Proxy, Fidler for Application Vulnerability Scanning, Symantec Data Loss Protection, and Tipping Point for network IDS/IPS.
  • Transitioned projects from the US to India, including building a new Security Operations Center (SOC) and implementing security devices.
  • Conducted Proof of Concepts (POC) for Vulnerability Assessment, Web Application Scanning, Security Configuration Assessment, and SIEM.
  • Fine-tuned SIEM rules, dashboards, and reports based on requirements.
  • Managed people, performance evaluations, shift management, training, and technical/operational issues.
  • Led the implementation and management of Websense Proxy, DLP monitoring, IPS monitoring, and Forti Analyzer firewall monitoring systems; proactively identified vulnerabilities, resulting in a 25% decrease in security breaches.
  • Presented Weekly/Monthly Security dashboards to the customer.
  • Managed Governance, Risk, and Compliance, defined policies and procedures, identified risks in the environment, and provided security recommendations for mitigation.
  • Ensured compliance for internal and customer environments regarding AV compliance, SLA compliance, etc.
SIEMVulnerability ScanningSecurity OperationsSecurity Operations CenterVulnerability Management

Security Specialist

Jan 2015Jan 2017 · 2 yrs

  • Security Operations: Client engagement, technical expertise, process management, and team oversight.
  • SIEM Deployment: Device integration, log monitoring, security event analysis, and administration.
  • Symantec Endpoint Security: Robust endpoint protection policies, proactive monitoring, and maintenance.
  • Content Filtering: Web-based system safeguarding, content policy management, and issue resolution.
  • Intrusion Prevention System: Traffic rule management, configuration fine tuning, intrusion identification, and analysis.
  • Vulnerability Assessment/Management: Asset scanning, assessment planning, optimization, and effective communication of findings.
SIEMEndpoint SecurityVulnerability AssessmentSecurity Operations CenterVulnerability Management

Capgemini

Security Consultant

Apr 2013Jan 2015 · 1 yr 9 mos · Bangaluru

  • As a Network Security Specialist optimized Firewall rules and policies, and troubleshoot Network Incidents to improve the performance of security systems.
  • Key Achievements:
  • 1. Created customer IP subnets inventory systems to help team members to open and troubleshoot firewall rules.
Firewall ManagementNetwork SecurityIncident Management

Paladion networks private ltd.

Security Analyst

Sep 2010Apr 2013 · 2 yrs 7 mos · Bengaluru / Bangalore

  • Monitored and troubleshooted internal database, manager, and console performance-related issues on ArcSight, implementing optimizations that increased system stability and reduced downtime by 25%.
  • Prepared comprehensive, summarized reports on security incidents, enabling stakeholders to make informed decisions and facilitating compliance with regulatory requirements.
  • Designed and standardized new alert and report templates, resulting in a 50% reduction in false positives and providing actionable insights for incident investigation and resolution.
  • Revamped and optimized the ArcSight ESM SIEM solution, implementing and configuring all ESM components, resulting in a streamlined system that reduced incident response time by 40% and improved overall security posture.
SIEMIncident ReportingDatabase MonitoringSecurity Operations Center

Education

Visvesvaraya Technological University

Bachelor of Engineering - BE — Computer Science

Aug 2003May 2009

Stackforce found 100+ more professionals with Cloud Security & Vulnerability Management

Explore similar profiles based on matching skills and experience