S

Subrat Padhy

DevOps Manager

Bengaluru, Karnataka, India21 yrs 8 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Proven track record in incident response and investigation.
  • Expertise in designing robust security architectures.
  • Extensive experience in risk assessment and management.
Stackforce AI infers this person is a Cybersecurity Expert specializing in IT Security and Risk Management.

Contact

Skills

Core Skills

CybersecuritySecurity Architecture DesignCloud SecurityNetwork Security

Other Skills

Product SecuritySCAPenetration TestingThreat ModelingVulnerability ManagementWeb Application SecurityRegulatory RequirementsDevSecOpsThreat & Vulnerability ManagementSASTApplication Security ArchitectureVulnerability AssessmentNISTCISSPCIS

About

Result-oriented Cybersecurity Professional with extensive experience in safeguarding information systems, infrastructures and application. Demonstrates a deep understanding of security protocols, risk management, and compliance across diverse environments. Proven track record in: Security Architecture & Implementation: Designing and implementing robust security solutions to protect against evolving threats and vulnerabilities. Risk Assessment & Management: Conducting comprehensive risk assessments and developing strategies to mitigate security risks and ensure regulatory compliance. Incident Response & Investigation: Leading incident response efforts and forensic investigations to address and resolve security breaches effectively. Team Leadership & Development: Leading and mentoring cybersecurity teams, fostering talent development, and driving initiatives to enhance organizational security posture. Strategic Consulting: Advising on security best practices, policy development, and integration of advanced security technologies to align with business objectives.

Experience

21 yrs 8 mos
Total Experience
2 yrs 8 mos
Average Tenure
3 yrs 3 mos
Current Experience

Tesco bengaluru

Security Partner/Security Architect

Feb 2023Present · 3 yrs 3 mos · Bengaluru, Karnataka, India · Hybrid

  • Spearheaded cyber security program for Retail Engineering at Tesco Bengaluru, driving initiatives to enhance security posture and reduce shrink.
  • Led risk frameworks development and execution, ensuring alignment with business goals.
  • Collaborated with product and engineering teams to securely deliver new business features.
  • To ensure that products for video technology and retail theft & colleague safety are secure by design, and secure software and firmware being released. By incorporating Secure by design principles into the product development life-cycle.
  • Drive Security Program for Body Worn Camera for Retail for Colleague safety.
  • Drive a robust security architecture for self-checkout systems and shrink reduction in large-format stores by addressing physical security, digital security, Secure by deign, Product security and network security, able to significantly reduce shrinkage, improve operational efficiency, and enhance customer experience.
Product SecurityCybersecuritySCAPenetration TestingThreat ModelingVulnerability Management+11

Wipro

Principal Security Consultant/ Cyber Security Site Leader

May 2018Jan 2023 · 4 yrs 8 mos · Bengaluru Area, India · Hybrid

  •  Next Generation Firewall Refresh: Designed and consulted on the replacement of legacy firewalls with Palo Alto Next Generation Firewalls for a user base of 50,000 in the APAC region which help business to reduce cost of $50k for managing Legacy infra
  •  Cloud Security Transition: Designed and consulted on the migration from on-premises security proxies
  • and firewalls to a cloud proxy solution, achieving cost savings of up to $5 million and ROI upto $1 million.
  •  Site of the Future Project: Designed and consulted on a serverless site architecture, minimizing network infrastructure requirements and integrating cloud network security.
  •  Firewall Assurance: Architected and implemented zero-touch firewall rule application and business
  • workflow to ensure PCI compliance across approximately 1,000 firewall devices globally.
  •  Security Standardization: Developed and standardized security policies for security devices, SOC, and
  • ransomware playbooks.
  •  Automation Development: Created automated tool/processes for URL whitelisting and blacklisting to
  • streamline security management.
  •  Secure LDAP Migration: Designed and consulted on the migration from LDAP-based services to Secure
  • LDAP with Microsoft PKI.
  •  Azure Firewall Design: Designed and implemented Azure Native Firewall capabilities to enhance cloud security reducing the attack surface for the business
Product SecurityNetwork SecurityCybersecurityCloud SecurityTeam LeadershipCritical Thinking+19

Royal bank of scotland business

Global Lead Perimeter Security

Dec 2014May 2018 · 3 yrs 5 mos · Bengaluru Area, India · Hybrid

  •  Attack Prevention: Enhanced organizational security by leveraging expertise in firewalls, VPNs, proxies, andvarious encryption layers, serving as the second line of defense against cyber threats.
  •  Security Architecture Consulting: Consulted on designing security architecture elements to effectively
  • mitigate emerging threats.
  •  Design and Review: Conducted comprehensive reviews of security designs, perimeter infrastructure, and
  • production architecture for approximately 150 sites.
  •  Perimeter Security Refresh: Led the Perimeter Security Refresh project, including the integration of mobile
  • banking and lending applications, to modernize and secure perimeter defenses.
  •  Firewall Assurance: Directed the successful deployment of Skybox for firewall assurance, enhancing the
  • management and visibility of firewall configurations.
  •  Regional Security Advisory: Provided perimeter security advisory services across APAC, UK, and EMEA regions,
  • including pre-change and post-change security assessments, regulatory compliance, and adherence to local laws.
Network SecurityCybersecurityComputer ForensicsEnterprise Risk ManagementFirewallsCyber Defense+7

Genpact headstrong capital markets

Principal Security Consultant -Network & Security

May 2014Dec 2014 · 7 mos · Noida Area, India · On-site

  •  Security Best Practices Consulting: Consulted and engineered the development and design of security best
  • practices, implementing robust security principles across the organization to meet business goals, customer needs,
  • and regulatory requirements.
  •  Technical Solutions Translation: Assessed customers' business drivers and requirements, translating them
  • into effective technical solutions.
  •  System Security Reporting: Prepared comprehensive system security reports by collecting, analysing, and
  • summarizing data and trends to inform decision-making and improve security posture.
  •  Disaster Recovery Planning: Created and developed disaster recovery (DR) plans for the IT organization to
  • ensure business continuity and resilience in the face of disruptions.
  •  Traffic Filtering Advisory: Provided advisory services on traffic filtering techniques, including standard and
  • extended access lists, distribute lists, and route maps, to enhance network security and performance.
Network SecurityCybersecurityEnterprise Risk ManagementPenetration TestingInformation SecurityCyber Defense+5

Canon india

Senior Network Security Consultant

May 2008May 2014 · 6 yrs · Gurgaon, India · On-site

  • Security Risk Assessment: Conducted comprehensive security risk assessments across all division
  • departments to identify and address potential vulnerabilities.
  •  Disaster Recovery (DR) Plan Testing: Periodically tested disaster recovery plans and provided support
  • to ensure compliance with external audits and regulatory requirements.
  •  Security Solutions Design and Implementation: Designed and implemented security solutions,
  • including continuous monitoring and improvement, in collaboration with the information security team.
  •  Digital Protection: Protected digital files and information systems from unauthorized access, modification,
  • or destruction, ensuring data integrity and confidentiality.
  •  Incident Support and Investigation: Provided support for security incidents and investigations,
  • including root cause analysis (RCA) and resolution.
  •  Audit and Compliance Services: Delivered services for internal audits, ISMS documentation, risk
  • analysis, incident investigation, RCA, risk mitigation plans, and compliance with ISO 27001 and ISO 22301
  • security requirements.
  •  Vulnerability Management: Scanned for, identified, and assessed vulnerabilities in IT systems, including
  • computers, networks, software, information systems, and applications.
CybersecurityNetwork AdministrationProtection SystemsVulnerability ManagementRegulatory RequirementsIT Risk Management+7

Pcs technology ltd.

Network Security Engineer

Feb 2007Feb 2008 · 1 yr · New Delhi Area, India · On-site

  • Network Security Assessment: Conducted comprehensive security assessments for network security projects
  • to identify vulnerabilities and enhance protection measures.
  •  Vulnerability Assessment: Utilized Nessus for in-depth vulnerability assessments to detect and address security
  • weaknesses in IT systems.
Network SecurityCybersecurityVulnerability ManagementIT Risk ManagementISO 27001

Cms info systems pvt. ltd.

Network Security Engineer

Jul 2005Feb 2007 · 1 yr 7 mos · New Delhi Area, India

  •  Security Infrastructure Administration: Administered antivirus and antimalware network security
  • infrastructure across the network in India, ensuring comprehensive protection against threats.
  •  Hardening Standards Development: Created and documented hardening standards for network and
  • security devices to strengthen security configurations and improve overall resilience
  •  Network and Security Setup: Played a key role in commissioning the network and security setup for 65 retail
  • outlets across Delhi, Haryana, Uttar Pradesh, Uttarakhand, Tamil Nadu, and West Bengal. Successfully
  • implemented credit and
Network SecurityCybersecurityManaged Security ServicesNetwork Security Implementation

Netinfo solutions

System Security Engineer

Feb 2004Apr 2005 · 1 yr 2 mos · New Delhi Area, India · On-site

Network DesignNetwork Security Implementation

Education

Sambalpur University

Bachelor of Science (B.Sc.)

Jan 2000Jan 2003

Sikkim Manipal University (SMU)

Master of Business Administration - MBA — Computer and Information Systems Security/Information Assurance

Jan 2017Jan 2019

Stackforce found 100+ more professionals with Cybersecurity & Security Architecture Design

Explore similar profiles based on matching skills and experience