Ranjith Menon

DevOps Engineer

Oxford, England, United Kingdom15 yrs 7 mos experience
Most Likely To Switch

Key Highlights

  • Over 15 years of experience in security engineering.
  • Led successful cloud migration projects ensuring security compliance.
  • Passionate about mentoring and community engagement in cybersecurity.
Stackforce AI infers this person is a Security Engineering Leader specializing in Cloud and Platform Security across Healthcare and Financial Services.

Contact

Skills

Core Skills

DevsecopsCloud SecuritySecurity AutomationVulnerability ManagementThreat ModelingPenetration TestingSecure Sdlc

Other Skills

Identity and Access Management (IAM)Container SecuritySecurity Architecture DesignVulnerability AssessmentCybersecurityEthical HackingABAPJavaScriptXMLJavaASP.NETSQLHTMLCore JavaC++

About

Security engineering leader with over 15 years of experience building and securing cloud and platform environments across healthcare, financial services and technology sectors. Experienced in designing secure architectures, implementing DevSecOps pipelines and leading teams to reduce vulnerabilities and improve compliance. Passionate about continuous learning and community engagement through research, open source contributions and mentoring. Looking to drive security strategy and innovation in forward thinking organisations.

Experience

Oxa

Security Engineering - Platform

May 2023Present · 2 yrs 11 mos · Oxford, England, United Kingdom · Hybrid

  • Led application security and DevSecOps initiatives across Oxa projects, embedding secure SDLC practices and reducing critical vulnerabilities.
  • Secured containerized environments by integrating security controls for Docker and Kubernetes within CI/CD pipelines, improving build security and compliance.
  • Spearheaded the complete cloud migration from AWS to Google Cloud Platform (GCP), ensuring secure configurations, IAM hardening and Just-in-Time privilege management.
  • Designed and developed an AI-powered internal security automation tool to streamline vulnerability reporting, reduce false positives and optimise risk acceptance tracking.
  • Performed penetration testing and vulnerability assessments on platform services to identify and remediate security flaws.
  • Conducted organisation wide developer training and Capture the Flag (CTF) programs, scaled Security Champions initiatives and fostered a security first culture.
  • Championed security automation and standardised remediation playbooks, cutting manual review efforts and improving risk management.
Identity and Access Management (IAM)Container SecuritySecure SDLCThreat ModelingSecurity AutomationSecurity Architecture Design+3

Beckman coulter diagnostics

Staff Engineer - Product CyberSecurity

Oct 2022May 2023 · 7 mos

  • Embedded security throughout the development lifecycle for clinical information systems, aligning with privacy requirements and regulatory compliance (e.g., HIPAA, GDPR).
  • Led application security reviews, vulnerability remediation and penetration testing for both internal and external engagements across on‑premise, Azure and AWS environments.
  • Integrated DevSecOps policies and tools into CI/CD pipelines to enforce secure coding practices and automate security checks.
  • Managed security for cloud‑based healthcare products, including privacy and security plans, risk assessments and SBOM management, in collaboration with product and compliance teams.
  • Managed security for the cloud offering products, ensuring robust protection and privacy.
  • Performed penetration testing activity for both internal and external engagements to proactively identify and remediate vulnerabilities.
  • Implemented DevSecOps policy and tool integration for Azure and AWS, enhancing automation and compliance.
  • Developed privacy and security plans, risk assessments and SBOM management for cloud products.
Identity and Access Management (IAM)Container SecuritySecure SDLCThreat ModelingSecurity AutomationSecurity Architecture Design+3

Wipro limited

Technical Lead

Apr 2021Oct 2022 · 1 yr 6 mos · London, England, United Kingdom

  • Managed triaging for vulnerability reports for a leading UK bank, reproducing issues and assessing severity.
  • Delivered rapid threat assessments and design overviews to guide remediation efforts.
  • Conducted SAST and DAST evaluations for critical products to identify and mitigate security vulnerabilities.
  • Designed metrics driven dashboards for vulnerability tracking and developer engagement KPIs.
Identity and Access Management (IAM)Container SecuritySecure SDLCThreat ModelingSecurity AutomationSecurity Architecture Design+3

Lloyds banking group

Technical Lead

Apr 2021Oct 2022 · 1 yr 6 mos

Container SecuritySecure SDLCThreat ModelingSecurity AutomationSecurity Architecture DesignDevSecOps+2

Ibs software services

Lead Security Engineer

May 2016Apr 2021 · 4 yrs 11 mos · Trivandrum

  • Led offensive security testing for aviation and logistics clients, including Lufthansa, Qantas, Etihad and Chevron, delivering comprehensive VAPT for web, mobile and thick‑client applications.
  • Built and mentored offensive security team, fostering expertise in penetration testing and secure development practices.
  • Delivered secure code review training and contributed to secure SDLC adoption across products, enhancing vulnerability detection and remediation.
  • Collaborated with cross functional teams to integrate security requirements into product development and ensure compliance with industry standards.
Container SecuritySecure SDLCThreat ModelingSecurity AutomationSecurity Architecture DesignDevSecOps+3

Payatu technologies pvt ltd

Security Consultant

Feb 2015Apr 2016 · 1 yr 2 mos · Pune, Maharashtra, India

  • Executed advanced penetration testing for client applications and infrastructure, identifying vulnerabilities and improving security posture.
  • Organized and facilitated major InfoSec conferences (nullcon, hardwear.io), fostering collaboration among industry leaders.
  • Developed comprehensive threat models to ensure proactive risk management in application security.
  • Implemented secure coding practices within development teams, promoting secure SDLC adoption.
Secure SDLCSecurity AutomationDevSecOpsCloud SecurityVulnerability ManagementPenetration Testing

Waybeo

Security Consultant

Jun 2012Jan 2015 · 2 yrs 7 mos · trivandrum

  • Executed comprehensive security assessments for the Bounzd product, identifying and mitigating vulnerabilities.
  • Conducted infrastructure hardening and application testing to ensure a robust security posture.
  • Developed and implemented security best practices and policies across teams.
  • Collaborated with development teams to integrate security into the software development lifecycle.

Jivity

Software Engineer

Jul 2011May 2012 · 10 mos · Bangalore

  • Developed e‑commerce applications using CakePHP, integrating front‑end and back‑end functionalities to deliver customized online brand stores.
  • Managed Linux server operations (FTP, SSH and Samba) and automated file uploads to Amazon EC2, ensuring efficient deployment and updates.
  • Implemented MySQL database management, Linux shell scripting and test automation to improve application reliability and performance.
  • Collaborated with clients to gather requirements, deliver technical solutions and ensure quality through unit testing and regression testing.

Paradigm it

Software Engineer

May 2010Jun 2011 · 1 yr 1 mo · Ernakulam

  • Coding, Unit Testing and test case validation
  • Impact Analysis for new requirements
  • Preparing monthly work status report and updating technology specific documents
  • operate FTP SSH Samba Server in Linux Environment
  • Linux Shell Scripting
  • Analyzing test results and communicating, findings/recommendations to team for issue resolution.

Education

DR.GRD College of Technology

Master of Computer Applications (MCA) — Computer Science

Jan 2007Jan 2010

DeVry University

Maintaining Cyber Security — Information Security

Jan 2016Jan 2016

Sree Narayana Guru College

Bachelor's in Computer Application — Computer Science

Jan 2004Jan 2007

St.Joseph H.S.S , Trivandrum

Jan 2002Jan 2004

Stackforce found 100+ more professionals with Devsecops & Cloud Security

Explore similar profiles based on matching skills and experience