A

Annie Thomas

CEO

London, England, United Kingdom20 yrs 2 mos experience
Highly StableAI ML Practitioner

Key Highlights

  • Led major digital transformation initiatives.
  • Filed 40+ patents with 38 granted.
  • Active mentor in women in technology networks.
Stackforce AI infers this person is a Cybersecurity Architect specializing in Cloud Security and Digital Transformation.

Contact

Skills

Core Skills

Security ArchitectureCloud SecurityCybersecurityProgram ManagementBlockchainProduct ManagementApplication SecurityResearch And DevelopmentSystems DesignProduct Development

Other Skills

Stakeholder ManagementIT Security AssessmentsSecurity ConsultingGoogle Cloud Platform (GCP)Global DeliveryEndpoint SecurityCoachingSecurity Architecture DesignInfrastructure SecuritySolution ArchitectureSecurity ControlsRisk ManagementBusiness ContinuityLearning & SharingSecurity Management

About

Passionate Technologist in IT Security driving large digital transformation programs What makes my day fulfilling: * Leading digital transformation initiatives with security maturity and business agility * Business-centric security advisor having strong technical acumen translating strategy into secure architecture & engineering * Proven experience in securing systems, apps, platforms * Been in the trenches and trusted by engineers & senior leaders * Leading IT Infrastructure Security Assessments * Niche speciality in Security Consulting, Security Advisory with actionable recommendations and visible results * I'm alive where harmony of values, synergy, deep respect, growth mindset and complementary skills truly matter * I have a high sense of agency and bring resourcefulness to the ecosystem * When I am in a state of flow, I set superior standards surpassing targets * I take extreme ownership to co-create and deliver differentiated product/solution offerings * I’m a continual learner and a curious seeker with a bias for action * I'm an optimist, who believe we are living in the best times * I'm a Certified Workplace Coach aligned to International Coaching Federation (ICF) Code of Ethics Core Specialities: CISSP, CCSP, Cybersecurity, Cloud Security, Bank-grade & Enterprise-scale Security, Data Privacy, Architecture, Research, Innovation, Consulting, Agile Development I've filed 40+ patents as co-inventor, 38 patents are granted. Our team got featured in TCS Blitz event. Outside work responsibilities, I actively engage in women in technology networks, practice purpose-driven life, mentoring for students, and volunteering for pay-it-forward initiatives.

Experience

20 yrs 2 mos
Total Experience
20 yrs 2 mos
Average Tenure
20 yrs 2 mos
Current Experience

Tata consultancy services

8 roles

Enterprise Security Architect

Promoted

Jun 2025Present · 11 mos

  • Security Architect for UK's major Telecommunications and Media provider for Digital Consumer Security Engineering & Operations for the Transformation Program
  • Led security architecture reviews and senior stakeholder alignment for identified security risks. Partnered with consumer engineering product squads to embed secure design and architecture principles. Documented architecture decisions, pinpointed risks with mitigations and clear ownership, and established security guardrails. Co-created threat models for adversarial attacks, mapped traffic flows, and balanced operational risk with delivery timelines. Defined pentest strategies and scoping, while developing reusable secure design patterns and reference architectures for digital front-end engineering. Lead enterprise with cyber-resilient strategies for cloud security architectures deployed on Google Cloud.
Stakeholder ManagementIT Security AssessmentsSecurity ConsultingGoogle Cloud Platform (GCP)Security ArchitectureCloud Security

Security Architect. Enterprise Cloud Platform Security. Cloud Infrastructure

Apr 2023May 2025 · 2 yrs 1 mo

  • Private Cloud Security Solutions Architect for a large Swedish customer for IT Infrastructure security technologies, processes and tooling around vulnerability management, endpoint security, container security, web application security, secure network design, data center physical security, zero trust architecture, identity and access management, privileged access management, database security, multi-factor authentication methods, logging, security testing, cryptography, secure storage design, data leak prevention, audit, governance, risk & compliance, business continuity, Security Operations, Security Assessments.
Stakeholder ManagementGlobal DeliveryCloud SecurityIT Security AssessmentsEndpoint SecurityCoaching+13

Cyber Security Technical Program Manager

Feb 2022Mar 2023 · 1 yr 1 mo

  • Driving Enterprise DevOps Secret Remediation Program for a global leading Insurance organization in remediating their source code and CI/CD DevOps config using Hashicorp Vault as Secrets Store for cloud & on-prem applications.
  • Overseeing the technical team of 40+ developers, quality assurance, weekly status reporting and reviews of completed apps
  • Stakeholder Communication, Weekly Executive Dashboard Report , Dependencies & Risk Reporting, Program Scoping, managing deliverables and schedules, defining change management, managing delays and risks, cost budgeting, skilled talent mapping, reviewing Standard Operating Procedure (SOP) Handbooks with Business Owners, approve Quality Assurance deliveries, overseeing execution of Enterprise-wide Secret Remediation by Development Team - from feature branch remediation changes in GitHub Repository to app-team managed Pull Request and subsequent trigger of Continuous Integration / Continuous Deployment pipelines by DevOps team in customer environments and rotation of secrets
Stakeholder ManagementGlobal DeliveryCloud SecurityCybersecurityCoachingLeadership+18

Solution Architect, Quartz Blockchain Solutions - Product & Implementations

Apr 2020Jan 2022 · 1 yr 9 mos

  • Defining purpose-centric enterprise-grade Blockchain solutions as Solution Architect
  • https://www.tcs.com/what-we-do/products-platforms/quartz
  • Responsible for analysis, requirements finalization, design, deployment architecture, Secure by Design (SbD) and Privacy by Design (PbD) principles, development team requirements & solution walk-through, test cases review, product documentation, product discovery and roadmap research, support IP Safety activities for Quartz Gateway & Command Center, Smart Solutions.
  • Quartz Blockchain Implementations include:
  • Interbank borrowing Solution for a top Indian bank in their Trade finance operations in 8 jurisdictions
  • Digital Guarantees Platform for Israeli Bank Guarantees for government and private beneficiaries
  • Proxy resolution (security requirements) for South African Payments Industry Real Time Payments (RTP)
  • Contract Monitoring Solution for a leading Pharma leader in Basel, Switzerland in their vendor services payment triggered at milestone.
Technical PresentationsStakeholder ManagementGlobal DeliveryBlockchainRequirements AnalysisCybersecurity+25

Security Architect & Product Specialist, TCS BaNCS Digital - Product Security

Promoted

Jul 2014Mar 2020 · 5 yrs 8 mos

  • Product Specialist, BaNCS Digital
  • Defined the narrative for user story and acceptance criteria as Product Owner for Agile Product development on Security, Authentication, Privacy and Regulatory Compliance for proactive and effective security controls
  • Responsible for Application Security Sign-off for Product Releases & Implementation Deliveries
  • Bootstrapped and fostered security culture in the product team as Data Privacy Manager, Security Architect, IP Safety Champion for Product
  • Authored research paper for publication in TCS.com and BaNCS Journal
  • Contributed to RfP/Proposal, analyst questionnaire and blue-penciled the responses for the pre-sales team
  • Involved in Product Management Review and Road map finalization
  • Benchmarked security and non-functional specifications for IP Safety initiative aligned to TOGAF Enterprise Architecture
  • In-Depth Working Knowledge of industry regulations, standards, baselines and compliance such as PCI DSS, GLBA, SOX, SOC2 Report, CCPA. GDPR, HIPAA, APRA CPS234, regional Reserve Bank / Central Bank regulations, CIS Benchmarks, NIST Special Publications 800-53, ISO 20022, CSA STAR, CCM, ISMS, OWASP ASVS, FIPS standards, MITRE ATT&CK
  • Involved in IPR activities - Filing disclosures on utility, design and user experience/interaction design patent applications for multiple jurisdiction
  • Assess security posture of our customers, highlight observations/deviations on current processes /workflows and provide actionable recommendations to fill the security gaps to meet industry-best practices.
  • Championed the tech-talk initiatives showcasing accomplished women in tech to inspire juniors and build their confidence to take up technical roles.
Technical PresentationsStakeholder ManagementProduct ownerGlobal DeliveryIT Security AssessmentsRequirements Analysis+27

Application Security Specialist

Jul 2012Jun 2014 · 1 yr 11 mos

  • TCSFS Alpha Labs,Mobility, Digital
  • Analyzing and drafting security requirements for Retail & SME Banking Mobile Solutions
  • Understanding the trends in regulatory landscape in major geographies and compliance requirements for digital transformation projects
  • Understand known security vulnerabilities and spread awareness
  • Track market trends, solutions and understand competitor offerings, market analysis / Feature study, Conceptualize solution and use cases for Proof of Concept build
  • In-charge for Conducting brainstorming sessions in the team
  • Solution Envisioning workshops and analyzing patent portfolio for application in TCS BaNCS
  • First responder to RfP/Proposal for cybersecurity, analyst questionnaire and help pre-sales team with technical solution
  • Involved in Product Management Review and Road map finalization
  • Involved in IPR activities- Filing disclosures on utility, design and user experience/interaction design patent applications for multiple jurisdictions
  • Cited among “Top 3 Performers” in TCS Financial Services for Tata Innovista
Technical PresentationsGlobal DeliveryIT Security AssessmentsRequirements AnalysisCybersecuritySystems Design+19

Technical Lead, Banking Integration Lab , TCSFS - R&D, Consulting & Service Innovation

Promoted

Jul 2010Jun 2012 · 1 yr 11 mos

  • Banking Integration Lab , TCSFS - R&D, Consulting & Service Innovation
  • Proof of Concept and productization for biometric integration as per ISO 19092 standards and multi-factor authentication framework for TCS BaNCS
  • Developed and integrated Proof of Concept, Pilot implementation and subsequent Production rollout of Liferay collaborative portal for internal team use for Research ideas repository
  • Multi-channel integration (Internet, Mobile, IVR, CTI, Branch) with TCS BaNCS Universal Banking, Wealth Management, Loan Origination System
  • Configuration of BMC Remedy Tool for IT Service Management for Retail Banking Operational scenarios with Service Catalog and incident/request fulfillment workflows
  • Involved in the IPR activities of refining brainstorming ideas, initial prior art search, Invention Disclosure document drafting, liaising with Corporate IPR Cell and Patent Attorneys in drafting claims and complete specification
  • Handled Model Bank for US geography with 5 branches and 25000 customer base for Service Operations based on ITIL® practices
Global DeliveryRequirements AnalysisResearch and Development (R&D)Systems DesignIP Creation ChampionAnalytical Skills+11

Developer, Technical Designer & Implementation Specialist

Aug 2005Jun 2010 · 4 yrs 10 mos

  • 1. A leading Bank, Johannesburg, South Africa.
  • Customization and enhancements to the TCS BaNCS Payments Product (QUARTZ) in 5 modules - Accounts, Business Relations, Instruments, Parameterization and Interfaces
  • Supported development, PAT, SIT, UAT phases and Go-Live support
  • Handover/Transition to Global Support Center
  • 2. Enhancement and Technology Upgrade of existing Banking Software - TCS BαNCS Payments & Architecture/Tools
  • Base lining the source code and data model for the Java/J2EE version of BANCS Payments from c++ version
  • Involved in the SWIFT SwiftReady Gold Certification for Payments
  • Involved in Online/Reporting/Batch Architecture of BFS
  • Module Leader - Handled a team of 20 freshers in mentoring on foundation and baselining activity
  • Code review, mentoring, analysis of technical / functional requirements, Release & Configuration Management
  • Migrating legacy Code in C++ to Java
  • 3. A leading European Central Securities Depository, Luxembourg
  • Developer and responsible for first code drop delivery and Pre-Acceptance Test with customer
  • Joined Implementation team at onsite for rollout of Linkup implementation to European Central Securities Depository for TCS BaNCS Corporate Actions/Service Integrator Solution
  • Go-Live and Early Life Support to Operations team
  • Offshore Support Handover Transition to Global Support Center
  • 4. TCS BaNCS Service Integrator Product Enhancements:
  • Technical Designer / developer for product enhancements from v4.5.3 till v6.3 releases and transition support for existing customer implementations in v3.0 for smooth rollout to v6.0
Product DevelopmentGlobal DeliveryRequirements AnalysisSystems DesignAnalytical SkillsSolution Architecture+11

Education

College of Engineering, Guindy

Master of Engineering

INSEAD

Executive Education — Leading Digital Transformation and Innovation

Stackforce found 100+ more professionals with Security Architecture & Cloud Security

Explore similar profiles based on matching skills and experience