Sankalp Sandeep Paranjpe

DevOps Engineer

Pune, Maharashtra, India3 yrs 10 mos experience

Key Highlights

  • Achieved 96% compliance with CIS Benchmarks.
  • Delivered 25+ sessions in cloud and security community.
  • Successfully remediated 1000+ findings for ISO certification.
Stackforce AI infers this person is a Cloud Security and DevSecOps expert with a focus on compliance and vulnerability management.

Contact

Skills

Core Skills

DevsecopsAws SecurityComplianceSecurity EngineeringLeadershipCybersecurity

Other Skills

Amazon Web Services (AWS)Information Security Engineeringaws devopsDevOpsCIS BenchmarksISO 27001:2022Audit RemediationTeamworkManagementDeveloper RelationsVulnerability AssessmentApplication SecurityPenetration TestingOWASPVulnerability

About

👋 Hello, I’m Sankalp Sandeep Paranjpe — a DevSecOps Engineer, AWS Community Builder (Security), Former AWS Cloud Captain and AWS User Group Pune Volunteer Lead. I specialize in integrating security into CI/CD pipelines and cloud infrastructure, strengthening AWS environments through CIS Benchmarks, IAM best practices, Kubernetes RBAC, and secure deployment workflows. My work spans cloud security architecture, DevSecOps, incident response, and compliance — with proven success in achieving ISO 27001:2022 certification and driving 96% compliance with CIS Benchmarks v3.0.0 across multiple AWS accounts 💡 Key Highlights - Manage multiple AWS accounts, used AWS Organizations, demonstrating centralized management and streamlined security and compliance processes. - Reviewed cloud architecture against AWS's Well-Architected Framework, ran it through the stakeholders, and recommended best practices for scalability, cost optimization, and security. - Built secure CI/CD pipelines (GitHub Actions, CircleCI, SonarQube SAST, Scancode compliance) with IAM role–based deployments.- Strengthened Kubernetes/EKS security with RBAC and OIDC authentication for observability dashboards (Grafana, Kiali). - ISO 27001:2022 audit remediation (1000+ findings) using Sprinto. - Delivered security awareness training, reducing recurring vulnerabilities and enabling faster remediation. - Engaged with customers to address third-party risk assessments and cloud and product security inquiries. 🎤 Speaking EngagementsI’m an active voice in the cloud and security community delivered 25+ sessions and workshops, having spoken at AWS Community Days (Bengaluru, Aurangabad), re:Invent Recap Meetups, Serverless Days Bengaluru, Bsides Pune & Mumbai, SecConf by Thoughtworks, and multiple user group meetups.🌱 Community & LearningI believe in Meet → Connect → Network → Learn → Grow → Repeat. - Co-organized 5 AWS User Group Pune meetups and volunteered at 6 AWS Community Days Pune.- Supported 8 monthly AWS User Group Pune meetups as a volunteer. - Led 6 technical events as an AWS Cloud Club Captain.- Authored 20+ technical blogs in my security and DevSecOps series. 🏆 Certifications AWS Certified SysOps Administrator – Associate AWS Certified Solutions Architect – Associate AWS Certified Cloud Practitioner 📧 Let’s connect and collaborate on cloud security, DevSecOps, and AWS → paranjpe.sankalp@gmail.com

Experience

Intangles

2 roles

DevSecOps Engineer

Jun 2024 – Dec 2025 · 1 yr 6 mos · On-site

  • Cloud Security & Compliance – Performed security assessments across multiple AWS accounts, achieving 96% compliance with CIS Benchmarks v3.0.0 and enforcing robust security controls. Implemented IAM/SCP/RBAC Policies.
  • Secure CI/CD Engineering – Built secure pipelines with GitHub Actions, CircleCI, and SonarQube (SAST), implementing IAM role–based deployments and Scancode compliance for license and dependency checks.
  • Kubernetes & EKS Security – Enforced fine-grained RBAC policies, AWS Cognito authentication for Kiali/Grafana dashboards, and collaborated with SREs to strengthen secure infrastructure design.
  • ISO 27001:2022 Certification – Partnered with auditors using Sprinto to remediate 1000+ findings, ensuring security-first governance across cloud infrastructure.
  • Threat Detection & Incident Response – Engineered detection and response strategies using GuardDuty, Inspector, SecurityHub, CloudTrail, and Config to fortify AWS environments.
  • Customer-Facing Security – Acted as the primary point of contact for customer-led Third-Party Risk Management (TPRM) assessments, addressing security questionnaires, pentest reviews, and product/cloud security inquiries.
  • Security Awareness & Culture – Delivered developer training sessions to reduce recurring vulnerabilities, accelerating remediation and fostering a security-first culture across teams
AWS SecurityAmazon Web Services (AWS)CybersecuritySecurity EngineeringInformation Security EngineeringDevSecOps+2

Site Reliability Engineer Intern

Apr 2024 – May 2024 · 1 mo · On-site

  • Manage multiple AWS accounts, used AWS Organizations, demonstrating
  • centralized management and streamlined security and compliance processes.
  • Reviewed cloud architecture against AWS's Well-Architected Framework, ran it through the stakeholders, and recommended best practices for scalability, cost optimization, and security.
  • Assisted in automation, monitoring, and reliability improvements.
Amazon Web Services (AWS)AWS Security

Aws cloud club - mit adtu

AWS Cloud Captain

Mar 2023 – Jun 2024 · 1 yr 3 mos · Pune District, Maharashtra, India · On-site

Mit adt university

Student Placement Coordinator

Jul 2022 – May 2023 · 10 mos · Pune District, Maharashtra, India

TeamworkManagement

Mit cybersecurity and blockchain club

Cybersecurity Team Head

Apr 2022 – Oct 2022 · 6 mos · Pune District, Maharashtra, India

LeadershipDeveloper RelationsCyber-securityCybersecurity

Aces mitsoe

Technical Team Member

Sep 2021 – Jun 2022 · 9 mos

Google developer student clubs

Technical Team Member - Cybersecurity Domain

Sep 2021 – Jun 2022 · 9 mos

Ibcom

Security Researcher and Advisory of Risk

Aug 2021 – May 2022 · 9 mos

  • Engaged in the bug-bounty program and Researched, analyzed, and reported 40+ vulnerabilities.
  • Vulnerability assessment, analysis, management.
  • Manual testing, as well as automated testing, using tools such as Tenable Nessus Essentials, Netsparker, Burpsuite Pro, and scripts.
  • Helped to improve the security by advising about the risk due to existing vulnerabilities.
Vulnerability AssessmentApplication SecurityCyber-securityPenetration TestingCybersecurityOWASP+1

Education

MIT ADT University

Bachelor of Technology - BTech — Computer Science with specialization in Networks and Security

Sep 2020 – Jun 2024

Joy Senior Secondary School

Class 12th — Science Stream

Jan 2020 – Present

Stackforce found 100+ more professionals with Devsecops & Aws Security

Explore similar profiles based on matching skills and experience