Prasanna Kumar

CEO

Bengaluru, Karnataka, India8 yrs 4 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Led security architecture for major cloud service provider.
  • Transformed SOC operations, achieving zero audit findings.
  • Built security function for India's largest streaming platform.
Stackforce AI infers this person is a Cybersecurity Architect with extensive experience in cloud security and risk management.

Contact

Skills

Core Skills

Security Architecture DesignRisk ManagementSecurity OperationsThreat ManagementInfrastructure SecurityRed TeamingApplication Security

Other Skills

Security Strategy DevelopmentInformation Security ManagementRisk AssessmentSecurity Policy DevelopmentCloud SecuritySecurity Operations CenterCoaching & MentoringThreat & Vulnerability ManagementPenetration TestingSecurity ResearchPurple TeamInformation SecurityEnterprise SecurityApplication Security ArchitectureDetection Engineering

About

Experienced in managing security risks across large-scale infrastructure with a business-first approach. Skilled in securing products and infrastructure through both offensive and defensive disciplines. Committed to continuous learning in emerging technologies, security practices, and industry thinking. Believes in transformational leadership — result-oriented, inspirational, feedback-driven, and constantly improving.

Experience

8 yrs 4 mos
Total Experience
2 yrs 1 mo
Average Tenure
3 yrs 8 mos
Current Experience

Ola

3 roles

Security Architect

Promoted

Jul 2025Present · 10 mos · On-site

  • Drive security strategy and architecture across OLA Group's full security landscape — cloud, enterprise, application, GRC, IAM, and security operations — embedding security into business, systems, and processes.
  • Defined end-to-end security architecture for Krutrim, OLA Group's cloud service provider — enabling its first ISO 27001, ISO 27017, ISO 27018, and SOC 2 certifications.
  • Architected security controls to meet RBI Outsourcing Framework requirements, enabling regulated OFS workloads to be hosted on Krutrim infrastructure.
  • Designed security architecture for managed cloud services — Managed Databases, Managed Kubernetes, and Managed Serverless — ensuring each service met enterprise security and compliance standards.
  • Enabled secure migration of OLA Group workloads from AWS and Azure to Krutrim — architecting the security controls and guardrails that made the transition possible without compromising compliance or risk posture.
  • Developed and governed security policy frameworks across Krutrim, OFS, Olacabs, and OLA Electric — authoring net-new policies, standards, and governance structures aligned to ISO and industry best practices.
  • Initiated AI security guardrails for Krutrim's AI infrastructure, establishing foundational controls for model and data pipeline security.
  • Drove AI adoption across security operations, elevating team capabilities in threat modelling, attack surface management, and supply chain security.
  • Led enterprise security budget planning and management across OLA Group's security programmes.
  • Aligned security risk posture with business objectives — contributing to CEO and board-level risk reporting
Security Strategy DevelopmentInformation Security ManagementSecurity Architecture DesignRisk Management

Associate Director, SOC, VM & Red Team

Promoted

Apr 2024Jun 2025 · 1 yr 2 mos · On-site

  • Led 24/7 SOC, Vulnerability Management, and Red Team operations across OLA Group — OLA Consumer, OLA Electric, OLA Money, and Krutrim — ensuring security resilience across one of India's largest mobility, EV, finance and tech businesses.
  • Ensured strong continuous compliance across RBI, ISO, PCI-DSS, and GDPR frameworks across security programmes of OLA Group, achieving zero significant audit findings during tenure.
  • Transformed SOC operations through tooling optimisation and operational excellence — delivering savings in crores while significantly improving detection coverage and response efficiency.
  • Leveraged Red Team operations to uncover blind spots and deficiencies across security programmes — translating offensive findings into tangible improvements in OLA Group's defensive posture.
  • Strengthened OLA Group's threat posture by operationalising an intelligence-driven threat management framework — enabling proactive hunting and early detection of sophisticated threats.
  • Eliminated manual vulnerability management overhead across OLA Group by building a custom automated platform — accelerating risk prioritisation and patch management at scale.
  • Optimised hybrid SOC operations across in-house and outsourced resources, establishing ITSM-integrated SLA tracking and working closely with vendors to build custom security solutions.
  • Built and scaled cross-functional security teams across SOC, VM, Red Team, AppSec, GRC, and Cloud Security — developing talent through training, mentorship, and deliberate succession planning.
Security Operations CenterRed TeamingSecurity OperationsThreat Management

Senior Manager, Security Operations & Red Team

Aug 2022Jul 2024 · 1 yr 11 mos · On-site

Hotstar

2 roles

Senior Security Engineer, Team Lead (Infrastructure Security | Red Teaming | Detection Engineering)

Promoted

Jan 2021May 2022 · 1 yr 4 mos

  • One of the founding security hires at Hotstar, instrumental in building the security function from the ground up for India's largest streaming platform serving hundreds of millions of users.
  • Built and matured Hotstar's cloud and infrastructure security posture on secure-by-default and defense-in-depth principles, while leading Security Incident Response and Management at streaming scale.
  • Drove content security for Hotstar's most high-stakes releases — IPL, live sports, major OTT movie launches, and direct-to-OTT COVID releases — managing security across the full lifecycle from storage to delivery while combating piracy through threat intelligence.
  • Strengthened product security across B2C and B2B platforms through SSDLC, penetration testing, and risk assessments — providing security assurance to consumers, broadcasters, advertisers, and production houses.
  • Contributed to Trust and Fraud security programs, providing threat intelligence and solution recommendations to combat credential stuffing, account takeovers, subscription fraud, and content distribution abuse.
  • Owned GRC for Hotstar, managing compliance and regulatory requirements before scaling and transitioning the function to a dedicated team. Reported security KPIs directly to the CISO, CTO, and CPO.
  • Built Hotstar's security team across InfraSec, AppSec, GRC, and Red Team through strategic hiring, training, and mentoring.
Coaching & MentoringSecurity OperationsInfrastructure SecurityRed Teaming

Security Engineer II (Infrastructure & Cloud Security)

Aug 2019Dec 2020 · 1 yr 4 mos

Security OperationsCoaching & MentoringInfrastructure Security

Ola (ani technologies pvt. ltd)

Security Engineer (Application Security, Cloud Security, Enterprise & IT Security)

Feb 2018Aug 2019 · 1 yr 6 mos · Bengaluru, Karnataka, India · On-site

  • Championed security in every product and feature before go-live for millions of Ola consumers, operating in a fast-paced agile environment.
  • Owned security for payment gateway integrations handling millions of national and international consumer transactions, identifying security issues leading to double refunds, frauds, and financial losses — directly strengthening Ola's fraud management capabilities.
  • Ensured security and GDPR compliance of systems handling customer data, meeting regulatory requirements ahead of planned UK market expansion.
  • Spearheaded cloud security at Ola, leveraging security automation to uncover critical infrastructure risks — directly influencing the CISO to establish cloud security as an organisational priority.
  • Proposed and drove secure infrastructure initiatives across databases, message queues, and streaming infrastructure — identifying and addressing critical security gaps before they impacted operations.
  • Assessed and risk-rated third-party tools across HRMS, board management, and enterprise IT — ensuring only vetted, security-cleared vendors were onboarded into Ola's ecosystem.
  • Initiated Ola's Zero Trust architecture programme — defining the framework and aligning the CISO on the vision ahead of any organisational mandate.
  • Drove security awareness across Ola through phishing simulation campaigns, secure coding training, and custom exploits and proof-of-concepts that demonstrated real-world vulnerability impact to engineering and product leadership.
Application SecurityCloud Security

Apogee tech global

Security Engineer

Nov 2016May 2017 · 6 mos · Bangalore · On-site

  • Early career role at a cybersecurity product startup spanning antivirus product testing, web application security assessments, cloud security on AWS EC2, and network and host security monitoring.
Threat & Vulnerability ManagementPenetration TestingThreat Management

Education

National Institute of Technology Karnataka

Bachelor of Technology (B.Tech.) — Information Technology

Jan 2012Jan 2016

Alva's Pre University College

Jan 2010Jan 2012

Kendriya Vidyalaya

Jan 2005Jan 2010

Stackforce found 100+ more professionals with Security Architecture Design & Risk Management

Explore similar profiles based on matching skills and experience