Kavia Venkatesh

Director of Engineering

Tampa, Florida, United States10 yrs experience
Most Likely To Switch

Key Highlights

  • Led security initiatives for 4 billion Android devices.
  • Spearheaded application security practices at Cigna.
  • Presented at DEF CON 2023 on emerging cybersecurity threats.
Stackforce AI infers this person is a Cybersecurity Leader with extensive experience in application security and M&A processes.

Contact

Skills

Core Skills

SecurityLeadership

Other Skills

Oral CommunicationCommunication TrainingTeam ManagementArticulationSecurity ManagementCommunicationTechnical UnderstandingCybersecurityMobile DevicesMobile ApplicationsMobile SecurityStrategic PlanningProject ManagementProduct DevelopmentProject Planning

About

A seasoned security leader, I currently serve as the Product Security Leader at Cigna, where I am dedicated to fortifying our application security program. With a distinguished background as a Program Manager at Google, overseeing Android security releases for 4 billion devices, I bring invaluable expertise in securing complex ecosystems at scale. Having spoken at multiple conferences, including DEF CON 2023, I am deeply committed to sharing insights and driving innovation in cybersecurity. My presentations reflect a passion for tackling emerging threats and implementing proactive defense strategies. Looking to the future, I aspire to leverage my strategic vision and technical acumen to propel comprehensive cybersecurity initiatives. With a focus on collaboration and continuous improvement, I aim to lead cross-functional teams in safeguarding and ensuring organizational resilience.

Experience

10 yrs
Total Experience
2 yrs
Average Tenure
2 yrs 7 mos
Current Experience

The cigna group

Director of Product Security

Oct 2023Present · 2 yrs 7 mos · United States

  • As Director of Product Security at Cigna, I drive the evolution of application security practices, aligning security goals with business priorities. I currently deliver key strategic projects, enhancing product security capabilities. I lead the redesign of the Product Security Framework, partnering with Digital Site Reliability Engineering to optimize developer efficiency. I spearhead industry engagement, such as the Nullcon recruiting event, boosting talent acquisition. I build high-performing teams, foster a culture of security awareness, and drive operational maturity. I develop long-term security roadmaps and Secure Software Development Lifecycle blueprints to scale security operations.
Oral CommunicationCommunication TrainingTeam ManagementSecurityArticulationLeadership+1

Google

Technical Program Manager

Aug 2021Nov 2023 · 2 yrs 3 mos · Seattle, Washington, United States

  • Managed Android Security Bulletin and release management, partnered with feature teams and OEMs to deliver timely, comprehensive security updates.
  • ● Led the execution and delivery of the Android Security Bulletin, ensuring timely and comprehensive security updates for the Android platform. Managed end-to-end release management processes for monthly, quarterly, and yearly Android security releases, coordinating with cross-functional teams to meet deadlines and maintain high-quality standards.
  • ● Established strong partnerships with feature teams to prioritize and deliver critical security fixes, aligning security requirements with product development timelines. Actively collaborated with OEMs to ensure smooth patch ingestion and distribution, fostering a proactive approach to addressing security vulnerabilities and enhancing overall device security.
ArticulationSecurity

Twilio inc.

Security Program Manager

Mar 2020Aug 2021 · 1 yr 5 mos · Denver, Colorado, United States

  • Conducted a comprehensive analysis of the M&A lifecycle to identify areas for improvement and standardization within the M&A Security Program. Implemented streamlined processes and protocols to enable smooth M&A operations and enhance overall service delivery.
  • Created M&A security playbooks tailored to the specific needs of different security functional teams. These playbooks provided clear guidelines and standardized procedures to accelerate the integration of security practices during M&A activities, ensuring a seamless transition and reducing potential security risks.
  • Leveraged cyber intelligence capabilities to enhance the due diligence process during M&A transactions. Incorporated advanced threat intelligence tools and techniques to assess the cybersecurity posture of potential targets, enabling more informed decision-making and mitigating risks associated with acquired assets.
  • Designed a centralized dashboard or single pane view that offered real-time visibility into the changing security posture during M&A activities. This comprehensive view provided key stakeholders with a holistic understanding of the security landscape, facilitating better decision-making, and enabling timely remediation of any vulnerabilities or gaps discovered throughout the integration process.
Articulation

Kaiser permanente

Technical Execution Leader

May 2017Mar 2020 · 2 yrs 10 mos · Denver, Colorado

  • Took the lead in implementing privacy and security management program projects, aligning cybersecurity investments with guidance from executive leadership. Collaborated with key stakeholders to ensure that resources were allocated strategically to address critical security priorities and enhance overall organizational resilience.
  • Orchestrated the enterprise-wide rollout of (MFA) for securing applications. Developed a comprehensive plan, coordinated with relevant teams, and oversaw the successful implementation of MFA, significantly strengthening the organization's authentication mechanisms and mitigating the risk of unauthorized access.
  • Acted as a facilitator and enabler, collaborating closely with business and IT teams to seamlessly deliver privacy and security initiatives. Provided expertise and support in areas such as application lifecycle management (ALM) technology refreshes and operational maturity programs, ensuring that privacy and security considerations were integrated into organizational processes and practices.
  • Led numerous security initiatives spanning various domains, including network security, data security, device security, identity and access management (IAM), monitoring and response, and application security. Successfully implemented measures to enhance security posture in each of these areas, reducing vulnerabilities and strengthening the overall security framework.
  • Formed partnerships with more than 25 vendors, engaging in Request for Information (RFI) and Request for Proposal (RFP) processes to select and implement technology solutions across multiple security domains.
  • Held a direct reporting line to the Deputy Chief Information Security Officer (CISO) and took charge of spearheading multiple requests. Acted as a trusted advisor to the Deputy CISO, overseeing and managing critical projects and initiatives to support the organization's privacy and security objectives.

Molson coors

IT operations Intern

May 2016May 2017 · 1 yr · Denver

  • Successfully delivered a complex Technology Integration project spanning 86 countries and involving a budget of $770 million. Led cross-functional teams, ensured effective communication and coordination across geographies, and achieved seamless integration of technologies to support business objectives.
  • Played a key role in creating, revising, and assisting in the asset management of devices at Molson Coors. Developed robust processes and workflows to track and manage the organization's device inventory, optimizing asset utilization, minimizing losses, and ensuring compliance with security and regulatory requirements.
  • Developed comprehensive project plans, including timelines, milestones, and resource allocation, and implemented effective tracking mechanisms, dashboards, and key performance indicators (KPIs) to monitor project progress and measure success. Provided regular updates and reporting to stakeholders, enabling informed decision-making and timely intervention, if required.
  • Undertook the sole responsibility of managing the Office IT Relocation project for 100 employees. Oversaw all aspects of the relocation, including planning, coordination, and execution of the IT infrastructure setup at the new location. Ensured minimal disruption to operations during the transition, resulting in a smooth and successful office move while meeting the needs of all employees.

University of denver

University: IT Consultant

Apr 2016May 2016 · 1 mo · United States

  • 1) Accelerated migration of customer support teams to a new customer service platform by educating the community of the change.
  • 2) Daily troubleshooting of 20+ University community computers.

Education

B. M. S. College of Engineering

Bachelor of Engineering (BE) — Biotechnology

University of Denver

Master of Science - MS — Information Technology Project Management

University of Warwick

Master of Science (MS)

Stanford University

Lead — Organizational Leadership

Apr 2023Present

Stackforce found 100+ more professionals with Security & Leadership

Explore similar profiles based on matching skills and experience