Rupali Dash

CTO

United States11 yrs experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in application and network security assessments.
  • Proven experience in integrating security into CI/CD pipelines.
  • Strong background in vulnerability assessments and penetration testing.
Stackforce AI infers this person is a Fintech security expert with a focus on application and network security.

Contact

Skills

Core Skills

Application SecurityVulnerability AssessmentPenetration TestingNetwork SecurityInfrastructure Security

Other Skills

Artificial Intelligence (AI)CCNACEHCISACISMComputer ForensicsCyberlawDatabase SecurityIDSISO 27001ISO 27001 Lead AuditorIT AuditInformation Security ManagementMalware AnalysisMetasploit

About

Experienced in the following areas: Vulnerability Assessments Application Security Assessments Penetration Testing Network Security Mobile Application Security (Android, iOS & Windows) Thick Client Application Security Web Services Security Assessment Wireless Security Payment Gateway Security Cloud Security Secure Code Review API Testing War-Dialing Mobile Device Management

Experience

J.p. morgan

3 roles

Lead Security architect

Promoted

Feb 2025Present · 1 yr 1 mo

Security Architect

Feb 2024Feb 2025 · 1 yr

Senior Penetration tester

Nov 2019Feb 2024 · 4 yrs 3 mos

Bnp paribas

Product Security Engineer

Nov 2018Nov 2019 · 1 yr · Singapore · On-site

  • Conduct security reviews, threat modeling, and design assessments of wealth management products and services.
  • Collaborate with development teams to integrate security controls and secure coding practices into CI/CD pipelines.
  • Perform secure code reviews, static and dynamic analysis, and vulnerability assessments across web, mobile, and API platforms.
  • Define and implement application security standards aligned with financial regulations (e.g., SEC, FINRA, MAS).
  • Identify security gaps early in the development process and recommend architectural improvements.
  • Triage and respond to security vulnerabilities reported through bug bounty or internal testing.
  • Partner with DevOps, Infrastructure, and Cloud Security teams to ensure secure deployment of applications on cloud-native platforms.
  • Develop and maintain security tooling for automation, continuous monitoring, and developer enablement for Wealth Management Division Where I directly wok with the regional CISO to manage the security and compliance posture of all the applications under wealth management.
  • Conduct periodic training and awareness sessions for engineering teams on application security best practices.
Application SecurityThreat ModelingSecure Code ReviewVulnerability Assessment

United technologies research center

Senior Security Engineer

Dec 2017Nov 2018 · 11 mos · Hyderabad Area, India

  • Performing Manual penetration testing for web applications, web services and thick clients.
  • Network Penetration Testing.
  • Mobile Application Pen Testing
  • Bluetooth and Wi-Fi Pen testing.
  • In-house automation.
  • Internet of Things (Hardware Pen-testing).
  • Performing Manual penetration testing for web applications, web services and thick clients.
  • Network Penetration Testing. (Corporate Penetration Tests)
  • Mobile Application Pen Testing
  • Bluetooth and Wi-Fi Pen testing. (Airplay and Miracast)
  • Internet of Things (Hardware Pen-testing).
  • Threat Modelling.
Penetration TestingNetwork SecurityMobile Application SecurityThreat Modeling

Zeotap

Security Operations Specialist

Mar 2017Dec 2017 · 9 mos · bangalore

  • Responsible for Product security including (web, Mobile) application vulnerability assessment &
  • penetration testing and Infrastructure security testing.
  • Plan, develop and manage the application and network secure architecture.
  • Implemented the infrastructure security automation using ansible.
  • Threat modelling and architecture review of product.
  • Implemented the AWS security automation Implemented security awareness programs and instituted
  • compliance metrics to decrease enterprise risks.
  • Enterprise wide penetration tests and reviews conducted on various components to identify security
  • loopholes and subsequently addressed with appropriate controls.
Application SecurityInfrastructure SecurityVulnerability AssessmentThreat Modeling

Goldman sachs

Information Security Analyst

Oct 2015Nov 2016 · 1 yr 1 mo · Bengaluru Area, India

Cigital, inc

2 roles

Associate Security Consultant

May 2015Oct 2015 · 5 mos

intern

Feb 2015May 2015 · 3 mos

  • >vulnerability assesment and penetration testing(Both manual and autonomous)
  • >Business logic testing with zero false positive
  • >mobile application testing(iOS and android)
  • >source code review
  • > network audit(internal network as well as external)
  • >Architecture review

Cdac bangalore

PG diploma in information security

Aug 2014Jan 2015 · 5 mos · Bengaluru Area, India

  • It's a dedicated It security course developed for security persons.I have worked more into developments of tools that can be used for network monitoring , audit , malware analysis. I have also worked in cyber forensics (Both live and dead) .Also developed tools for automated web pentesting.

Education

Indian Institute of Technology, Patna

Masters in Data Science & Artificial Intelligence — Artificial Intelligence

Jun 2023Jan 2025

CDAC Bangalore

PG diploma in cyber security — cyber security

May 2014Feb 2015

Biju Patnaik University of Technology, Odisha

Bachelor's Degree

May 2010Aug 2014

Stackforce found 100+ more professionals with Application Security & Vulnerability Assessment

Explore similar profiles based on matching skills and experience