Suprajha Kanna

Product Engineer

Arlington, Virginia, United States7 yrs 4 mos experience
Most Likely To Switch

Key Highlights

  • Master's in Cybersecurity with hands-on experience.
  • Proficient in vulnerability management and cloud security.
  • Teaching assistantship enhancing technical and communication skills.
Stackforce AI infers this person is a Cybersecurity professional with expertise in vulnerability management and cloud security.

Contact

Skills

Core Skills

C (programming Language)Vulnerability ManagementCloud Security

Other Skills

Buffer OverflowSMT solverKlee tool testingBinaryNIST 800-53Department of Defense (DoD) Cloud Computing SecurityFedRAMPGovernance, Risk Management, and Compliance (GRC)Information Security GovernanceApplication SecurityAzure security engineerCloud-based data protectionData SecurityMicrosoft threat protectionInformation protection and governance

About

A cybersecurity professional with a Master of Engineering in Cybersecurity from the University of Maryland - A. James Clark School of Engineering (2023). Academic experience includes coursework in Penetration Testing, Cloud Security, and Secure Coding, complemented by serving as a Graduate Teaching Assistant in courses such as Hacking of C & Unix Binaries and Secure Software Testing & Construction. Currently an Information Security Analyst at Rubrik, and aims to continue advancing technical expertise and contributing to organizational security initiatives.

Experience

7 yrs 4 mos
Total Experience
2 yrs 5 mos
Average Tenure
2 yrs 9 mos
Current Experience

Rubrik, inc.

2 roles

Information Security Analyst

Promoted

Jul 2023Present · 2 yrs 9 mos · Palo Alto, California, United States

Information Security

Jun 2022Aug 2022 · 2 mos · California, United States

  • ➜ Perform a comprehensive security assessment for the Vulnerability Management process against NIST SP 800-171, NIST SP 800-53, and the Department of Defense (DoD) Cloud Computing Security Requirements Guide as a means of achieving FedRAMP and DoD Impact Level 4 (IL4)
  • ➜ Developed a continuous process of identifying, reporting, and remediating security risks found within the cloud platform in the FedRAMP environment
  • ➜ The in-scope controls related to the vulnerability management process were implemented against the
  • current process identifying the control gaps, and documenting the same prior implementation of the 3PAO audit
  • ➜ Implement cloud security measures with an extensive cloud vulnerability management system are
  • placed to ensure data and application safety
Vulnerability ManagementNIST 800-53Department of Defense (DoD) Cloud Computing SecurityCloud SecurityFedRAMP

University of maryland - a. james clark school of engineering

2 roles

Graduate Teaching Assistant

Aug 2022May 2023 · 9 mos · College Park, Maryland, United States · On-site

  • Teaching Assistant: Hacking of C & Unix Binaries, Secure Software Testing & Construction
  • ➜ Working with faculty and graduate students to assist in teaching, assignment development and help to troubleshoot issues with C code, assembly language with gdb debugging, buffer overflows, Klee testing, SMT solver, and attacks like SQL Injection, XSS, Path Traversal etc.
  • ➜ Respond to student communications regarding course material and provide feedback on course & student progress to the Professor.
  • ➜ Schedule regular office hours as discussion session for clarifying course queries and aid in their development towards coursework.
  • ➜ Received financial support stipend, gained further expertise and academic administrative experience involving in professional activities.
C (Programming Language)Buffer OverflowSMT solverKlee tool testingBinary

Graduate Student

Aug 2021May 2023 · 1 yr 9 mos · College Park, Maryland, United States · On-site

  • ➜ As Suprajha Kanna, a Cybersecurity graduate student at the University of Maryland College Park, my college experience has been both enriching and hands-on. Throughout my program, I have taken various courses like Penetration Testing, Cloud Security, Secure Coding etc., that have provided me with a comprehensive understanding of the field. In these courses, I had the opportunity to apply my learning through projects and assignments. This practical experience allowed me to develop a deeper understanding of the concepts and enhanced my problem-solving skills.
  • ➜ Additionally, I had the privilege of serving as a Teaching Assistant for the course "Hacking of C & Unix Libraries" and "Secure Software Construction & Testing." As a Teaching Assistant, I worked closely with faculty and other graduate students to assist in teaching and the development of assignments where I helped troubleshoot issues related to C, assembly code, and buffer overflows, providing valuable guidance to students.
  • ➜ One of my responsibilities included proper response to student communications regarding course material and provide their progress to the Professor. This allowed me to contribute to their learning experience.
  • ➜ I also held regular office hours to clarify any queries students had about the course. As a result of my Graduate Assistantship, I not only received financial support in the form of a stipend but also gained further expertise and academic administrative experience. Involvement in professional activities expanded my knowledge and allowed me to stay updated with the latest trends and advancements in the field.
  • ➜ Overall, my college experience as a Cybersecurity graduate student at the University of Maryland College Park has been immensely rewarding. The combination of rigorous coursework, hands-on projects, and the Teaching Assistant opportunity has provided me with a strong foundation in cybersecurity and practical skills that will benefit me in my future career endeavors.

Aashman foundation

Social Media Marketing Intern

Dec 2020Mar 2021 · 3 mos · India

  • ➜ Actively made use of the social media platforms to create awareness about Aashman Foundation, make their voice reach to masses using social media
  • ➜ Generated funds for the organization to support the needy, collaborated with brands & individuals for gathering either funds or brand awareness, branding, lead generation, client relationship management, etc
  • ➜ Collected funds and essentials were supplied to help the people in need

Tata consultancy services

2 roles

Cyber Security Analyst

Sep 2018Jul 2021 · 2 yrs 10 mos · Chennai, Tamil Nadu, India

  • ➜ Engaged in General Data Protection Regulation and Payment Card Industry Data Security Standards on customer applications handling "Personally identifiable information” across customer enterprise.
  • ➜ Implemented data protection and privacy controls on customer applications ensuring GDPR compliance prior to onboarding on Azure cloud.
  • ➜ Strengthened PCI environment with governance, controls, and management system, crucial to preventing and securing customer information assets across all their enterprise networks for which I was recognized with "On the Spot" award.
  • ➜ Collaborated with the cross-functional development team to work on Splunk Linux configuration and incident handling.
  • ➜ Operated as an Information Security Risk Assessor in scheduling and conducting security risk assessments to determine compliance with applicable security controls and standards (ISO 27001, NIST 800-53) ensuring controls are operating as intended and meet the security requirements using Archer GRC tool.
  • ➜ Based on risk identification and analysis, the assessment was driven on qualitative and quantitative methods for risk evaluation. Reviewed violations of security procedures, developed suitable mitigation plans and strategies during gap assessment.
  • ➜ Established governance and monitored compliance with the organization's security policies and procedures among employees, contractors, and other third parties taking corrective action on roles and responsibilities regarding information ownership, classification, accountability, and protection of information assets.
  • ➜ Utilized processes within security assessment and authorization environments such as information categorization, development of security and contingency plans, and continuous monitoring.
  • ➜ Performed in a cooperative manner with Technology, Audit, and other units of the organization to provide appropriate information security control recommendations and policies that enable business objectives while meeting regulator obligations.

Software Engineer Intern

May 2016Jun 2016 · 1 mo · India

  • ➜ Developed a gaming application using JavaScript during my internship period.
  • ➜ Debugged and modified software components.

Education

University of Maryland - A. James Clark School of Engineering

Master of Engineering - MEng — Cybersecurity

Aug 2021May 2023

Shanmugha Arts, Science, Technology and Research Academy

Bachelor of Technology — Information Technology

Jun 2014May 2018

Stackforce found 100+ more professionals with C (programming Language) & Vulnerability Management

Explore similar profiles based on matching skills and experience