Prashanth Reddy (Praseudo ®)

DevOps Engineer

Hyderabad, Telangana, India11 yrs 4 mos experience

Key Highlights

  • Over 11 years of experience in application security.
  • Expert in integrating security into CI/CD pipelines.
  • Proven track record in conducting extensive penetration testing.
Stackforce AI infers this person is a seasoned Application Security Engineer with expertise in DevSecOps and penetration testing in SaaS environments.

Contact

Skills

Core Skills

DevsecopsPentestingAutomationPenetration TestingSecurity Engineering

Other Skills

Team LeadershipAutomation ScriptsCorporate TrainingSecure Code ReviewVulnerability Assessment and Penetration Testing (VAPT)Team ManagementSecure SDLCSecure CodingNetwork SecurityCloud SecurityPythonApplication ArchitectureKali LinuxOWASPSecurity Research

About

Experienced and dedicated Application Security Engineer with overall 11+ years of experience out of which 5+ years of experience as DevSecOps Engineer on embedding security into CI/CD pipeline and automation for robust protection.

Experience

11 yrs 4 mos
Total Experience
1 yr 10 mos
Average Tenure
--
Current Experience

Head digital works

Lead Security Engineer (Product Security)

Jun 2024Sep 2025 · 1 yr 3 mos · Hyderabad · Hybrid

  • Performed pentesting on internal and external Network, Web, Android, iOS, Windows, MAC applications and API endpoints.
  • Integrated security tools like SCA, SAST, DAST into CI/CD pipeline on every stage of SDLC.
  • Conducted PoCing on various security tools (Open-Source and Commercial) and finalise the tools that best fits to the application architecture.
  • Conducted Threat Modeling using STRIDE at planning phase of the applications.
  • Develop and implement Red Team strategies, methodologies, and tools.
  • Showcase vulnerabilities to stakeholders, developers and various other teams to make understand the attack and impact.
  • Involved in managing third-party security audits performed on our applications and infrastructure.
  • Proposed code level mitigations to developer teams to expedite the fix in every latest sprint.
  • Built custom scripts in Python which does internal and external network scanning and identify exploits based on the CVE's.
  • Implemented Continuous Monitoring of critical assets by running cron jobs with custom built scripts and send report via mail on any vulnerability triggered.
  • Trained on security vulnerabilities over 100+ employers across various teams (Developers, QA, Admin, etc).
  • Gained knowledge and performed Cloud security audit (AWS, Azure) and Container Security (Docker, Kubernetes).
  • Lead with a team of 5 to perform pentesting tasks and remediating vulnerabilities.
Team LeadershipDevSecOpsAutomation ScriptsCorporate TrainingPentestingSecure Code Review+6

Accenture

Security Delivery Specialist

Sep 2021May 2024 · 2 yrs 8 mos · Hyderabad, Telangana, India · Remote

  • Done Penetration Testing for Web, Android, iOS, Thick Client Applications and API endpoints by following OWASP & OSSTMM methodologies.
  • Worked with various clients and done corporate training on Application Security.
  • Conducted Live-Exploitation sessions with client developers to demonstrate application security related attacks.
  • Prepared customised security checklist for pentesting applications.
  • Built Reporting Template Engine (RTE) to automate report writing for the identified issues, which saves a lot of time for the team.
  • Responsible for meeting deliverables by the team on/before proposed timelines to the client.
DevSecOpsApplication ArchitecturePenetration TestingKali LinuxOWASPSecurity Engineering+1

Copart india technology center

Sr. Application Security Engineer

Mar 2019Jul 2021 · 2 yrs 4 mos · Hyderabad, Telangana, India · Remote

  • Implemented secure by defaults into SDLC using open source tools.
  • Fine-tuning false positives on SAST, DAST scan results.
  • Perform end-to-end pentesting on Web, Mobile and API endpoints.
  • Follow OWASP & OSSTMM methodologies primarily to perform Mobile and Web application penetration testing.
  • Perform applications secure source code review (NodeJS, JAVA) to find out vulnerabilities in code level.
  • Interacting with developers on discussing attack approach and helping developers in fixing the reported vulnerabilities.
DevSecOpsPenetration TestingSecurity EngineeringApplication ArchitectureKali LinuxOWASP

Wesecureapp (now strobes security)

Senior Information Security Analyst

Jun 2016Feb 2019 · 2 yrs 8 mos · Hyderabad Area, India · On-site

  • Conduct end-to-end pentesting (Black Box, Grey Box) on client applications like Web, API, Android, iOS, Thick Client applications by following OWASP, OSSTMM, WebAppSec pentesting methodologies.
  • Acknowledged by CTO, Director for my contribution in improving the organization’s security posture by providing Critical Vulnerabilities in applications.
  • Done Pen testing on complete Network as well as all Internal Web Applications.
  • Worked with various International clients and completed the project successfully.
  • Involved in complete client engagement, right from client discussion, requirements gathering, VAPT, Reporting, Follow up with clients, remediation guidance, client closure.
Kali LinuxOWASPPenetration TestingSecurity EngineeringSecurity ResearchSecurity Assurance+2

Globallogic

Senior Analyst

Mar 2015Jun 2016 · 1 yr 3 mos · Hyderabad Area, India

  • Responsibilities were to analyse malware and other client/server side attacks and discover vulnerabilities on web applications.
  • Interact with client application walk-through and client follow-ups.
  • Have good hands-on on SAST, DAST scanners.
OWASPPenetration TestingKali Linux

Wipro

Analyst

Jan 2014Mar 2015 · 1 yr 2 mos · Hyderabad Area, India · On-site

  • Performing research on web applications to avoid spam.
  • Conduct FP analysis on SAST scan results.
OWASPPenetration TestingKali Linux

Education

Jawaharlal Nehru Technological University Hyderabad (JNTUH)

B.Tech — Information Technology

Jan 2009Jan 2013

Sri Chaitanya College of Education

Intermediate; 12th

Jan 2007Jan 2009

Devaki Memorial School - India

10th

Jan 2006Present

Stackforce found 100+ more professionals with Devsecops & Pentesting

Explore similar profiles based on matching skills and experience