Puneet Tutliani

Co-Founder

Boston, MA, United States29 yrs 6 mos experience
Highly Stable

Key Highlights

  • Pioneered business logic security solutions.
  • Led large engineering teams to success.
  • Developed award-winning security products.
Stackforce AI infers this person is a Cybersecurity expert with a focus on SaaS and application security.

Contact

Skills

Core Skills

Application SecurityApi Development

Other Skills

API TestingCybersecurityInformation SecurityCloud SecurityDeep Packet InspectionNetwork SecurityTCP/IPIPSDevice DriversTelecommunicationsComputer SecurityPKICryptographyFirewallsSecurity

About

After spending 25+ years in security, you learn what matters. My journey in building network security products, endpoint solutions, and complex applications revealed a critical gap in our approach to protecting the applications. While everyone focused on application security, they missed the bigger picture - the business logic that makes applications valuable. This understanding both security products and application development showed me how: - Security teams struggle with tool overload - Developers get slowed down by fragmented security - Business logic remains exposed despite all the tools This is what led to starting AppSentinels in 2021. Our focus areas: - Full life-cycle security approaches - Breaking free from point solutions - Enabling business growth through security - Building bridges between security and development The goal was simple but powerful: help enterprises protect their business logic without adding to their tool fatigue or slowing down innovation. Today, this means sharing knowledge gained from decades of experience to help security teams and developers work better together. Let's connect if you're interested in moving security beyond basic application protection to truly securing what matters to your business.

Experience

Appsentinels

Cofounder & CEO

Feb 2024Present · 2 yrs 2 mos · Boston, MA · Hybrid

  • Building the future of application security focused on business logic protection.
  • First continuous stateful API pen-testing solution that understands application workflows and user journeys and works like an army of pen testers or bug bounty hunters working 24x7.
  • Platform Innovations:
  • Zero friction implementation with no code changes required
  • Enhanced collaboration between security and development teams
  • On-premise deployment options for data sovereignty
  • Automated remediation with intelligent threat response
  • Leading the shift from fragmented point solutions to unified security platforms that protect business logic while enabling rapid development.
Application SecurityAPI Development

Appsentinels private limited

Cofounder & CEO

Dec 2020Present · 5 yrs 4 mos · Bengaluru, Karnataka, India

Colortokens, inc.

Vice President Of Engineering and Site Reliability

Apr 2017Sep 2020 · 3 yrs 5 mos · Bengaluru Area, India

  • Identified Zero Trust and Cloud Workload Protection (CWPP) as major disruptions and foundations for proactive security model and successfully pivoted ColorTokens vision towards leadership in Zero Trust
  • Drove company’s vision towards securing next-gen applications running across private data-center and multi-cloud environments across various form-factors VMs, Cloud-Native, Containers and Serverless managed by single Intent Based Policy architecture and secure access to the applications by ZTNA.
  • Built 100+ member team at Color Tokens, Bangalore, including engineering leaders, Security/Big-data/SaaS architects and product management leaders in around eight months. Established various processes and controls to enable Bangalore team’s contributions on all fronts of product development.
  • Drove re-architecture and pivoting of product towards SaaS and built highly scalable SaaS product offering from ground zero with Kubernetes, Micro-services, Bigdata ingestion using Spark, Elastic & MongoDB and fully automated CI/CD DevSecOps pipeline delivering feature releases every week. Product validated with scale of more than 10K workloads and Ingestion capacity of more than 1 billion events/day, supports HA/DR across regions and canary feature roll-out.
  • Setup 24x7 Site Reliability team including requisite processes for SaaS offering. Set vision of team to strive for proactive detections and self-healing system. Expanded CT’s footprint to 7 regions maintaining lean team managing entire operations with highly automated operations
  • As a result, after many years of incorporation, ColorTokens was noticed and awarded at various industry forums winning 5 Gold awards from Cyber Defense Magazine including ‘Security company of the year’ during RSA-2019 and Cyber Security excellence awards during RSA-2020 including 1 Gold and 4 silver.

Juniper networks private limited

Director Engineering

Feb 2007Apr 2017 · 10 yrs 2 mos

  • Led 80+ people cross-geo, cross-functional teams including development, test and security research for Security Business Unit at Juniper. As part of my product portfolio, I owned NGFW product line, DPI, SSL and other key technologies across Juniper. I also owned Juniper Router Services - CG-NAT & IPSec that were Top-2 SW services in Juniper. My teams had direct ownership of multi-100 million US$ annual SW subscription revenues.
  • Led team to deliver first product completely architected and built from Bangalore IEC center in 2007-2008.
  • Architected world’s first 10Gbps IPS appliance - Juniper IDP-8200. Product won Information Security Magazine Readers’ Choice Award in 2009 & 2012. Juniper came from behind and became first major IPS vendor to crack 10Gbps IPS market beating Cisco/McAfee/IBM-ISS and Tipping point.
  • My team was key contributor in World’s Fastest Firewall Juniper’s SRX-5800 of it’s time. This product captured more than 50% of the data-center FW market and maintained market dominance for 5+ years.
  • My team turned-around Juniper’s SRX ratings at industry renowned NSS labs test for NGFW & IPS from cautious to recommended & among TOP-3 in industry in Security Coverage (NSS Labs Security Value Map 2015 onwards). We maintained the leadership position while delivering daily updates to Juniper’s wide customer base.
  • Turned-around IPS product quality in less than a quarter and made internal record of zero P1 escalations for continuous period of 13 quarters. With innovative Test methodology, we reported 15+ memory corruption issues in OpenSSL and submitted fixes to the community.
  • Redesigned Juniper DFA pattern match algorithm and improved it’s performance by a factor of 3x. Worked on industry well known Hyperscan pattern engine (acquired by Intel) and won appreciation by authors for very exhaustive technical evaluation and constructive feedback provided to them to further improve Hyperscan performance.

Ipolicy networks

Manager Engineering

Jun 1996Jan 2007 · 10 yrs 7 mos

  • One of the key architect to develop Single Pass Inspection Engine at iPolicy Networks to process multiple security services in a single pass of the packet in 1999-2000. Architected many other algorithms and extended well known Boyer Moore pattern matching algorithm to work across multiple patterns in single iteration. Filed multiple patents for the work.
  • Architected innovative TCP Proxy solution in Linux kernel replacing Linux’s TCP/IP stack. The proxy had many intelligent features for ultra high performance like session interjection (hijack) in the middle of established TCP session, ability to short-circuit from user-plane process post evaluation of the session to eliminate cost of packet data copy across user and kernel planes.
  • Built L7 DPI protocol parsers for HTTP, FTP, SMTP, DNS, H323, NetBios and modules handling NAT, ALG and DMZ processing.
  • In the initial part of my career, I worked on MPLS, TE-RSVP, LDP/CR-LDP protocol stack development projects.

Education

Delhi College of Engineering

B.E. (Hons) — Computer Science

Jan 1992Jan 1996

Indian Institute of Foreign Trade

Executive MBA — Foreign Trade

Jan 2003Jan 2005

Stackforce found 100+ more professionals with Application Security & Api Development

Explore similar profiles based on matching skills and experience