M

Manju Lalwani

DevOps Engineer

Hyderabad, Telangana, India11 yrs 1 mo experience
Highly Stable

Key Highlights

  • Reduced investigation time from hours to minutes.
  • Built regional Detection & Response functions from scratch.
  • Led post-incident security maturation initiatives.
Stackforce AI infers this person is a Security Engineering Manager with expertise in SaaS and cloud security.

Contact

Skills

Core Skills

Security EngineeringDetection & ResponseCloud SecurityThreat DetectionSecurity ResearchIncident Response

Other Skills

AWS SecuritySOAR automationDetection EngineeringThreat ModelingSOAR playbook developmentAzureGCPLog AnalysisMITRE ATT&CKLog ParsingField ExtractionCyber Threat HuntingCSPMRisk ManagementContinuous Integration and Continuous Delivery (CI/CD)

About

I am a Security Engineering Manager with over 12 years in Detection & Response, Cloud Security, and Automation. My approach is built on two things that don't usually go together: 1. I'm a packet and log geek at heart. I believe the best security leadership is grounded in understanding how data actually moves and how adversaries actually behave — not just how the org chart looks. 2. I think about detection differently. Most teams are still anchored to traditional perimeters. My background sits at the intersection of Detection Engineering and Cloud Architecture — building programs that incorporate threat modeling and supply chain security into the detection stack, addressing risks that legacy approaches consistently miss. In practice this has meant cutting investigation timelines from hours to minutes, driving cloud risk reductions through developer-aligned programs, and building regional D&R functions from the ground up — hiring, roadmap, the whole thing. The work I find most meaningful is the hard reset. Joining organizations after a significant incident and building the controls, processes, and team culture that should have existed — doing it properly this time, with the benefit of knowing exactly what broke and why. Currently doing exactly that at a 10,000+ employee global organization. Also completing the IIM Calcutta Advanced Programme in Strategic Leadership

Experience

11 yrs 1 mo
Total Experience
3 yrs 8 mos
Average Tenure
--
Current Experience

Enterprise saas

Manager, Security Engineering

Nov 2025Present · 6 mos · Hybrid

  • Joined to help rebuild the security engineering function following a major organizational incident. Serving as Lead Incident Commander for a high-severity multi-account AWS supply chain compromise — directed containment, led post-incident CI/CD threat modeling, and drove architectural remediation to close critical gaps.
  • Re-engineering Detection & Response workflows from the ground up: introducing service-owner partnership models, structured runbooks, and SOAR automation for malware and identity-based threats. Guiding the team through AI-powered SecOps tooling and structured L&D to accelerate capability maturity.
  • Scope: 10,000+ employee organization, AWS multi-account environment, hybrid infrastructure.
Security EngineeringDetection & ResponseAWS SecuritySOAR automation

Confluent

Senior Security Engineer 2 - Cloud Detection and Response

Oct 2022Oct 2025 · 3 yrs · Greater Hyderabad Area · Remote

  • Confluent - Creators of Kafka
  • Owned the end-to-end Detection & Response lifecycle: threat modeling internal services, log prioritization, cloud ingestion pipeline development, detection engineering, incident response, and SOAR playbook development.
  • Architected multi-cloud log ingestion pipelines across AWS, Azure, and GCP to close critical visibility gaps — replacing expensive vendor tooling with purpose-built in-house solutions. Recognized with a spot bonus award for cost savings delivered.
  • Designed and built in-house SOAR capabilities using native AWS services, establishing the automation foundation that would later scale to reduce investigation time from 2 hours to under 5 minutes.
  • Drove cross-functional influence by partnering with large-scale Data Engineering teams to build in-house search infrastructure for security investigations — reducing MTTR without additional security headcount.
Cloud SecurityDetection EngineeringIncident ResponseSOAR playbook developmentDetection & Response

Salesforce

Lead Security Engineer - Threat Detection

Jul 2018Oct 2022 · 4 yrs 3 mos · Hyderabad, Telangana, India

  • Built and scaled Detection & Response capabilities across endpoint, network, and cloud environments — developing high-fidelity detections mapped to MITRE ATT&CK, custom C2 frameworks, and novel attack vectors with full log parsing and field extraction pipelines.
  • Founded and scaled the Purple Team function from zero — bridging siloed Red and Blue operations through a metrics-driven collaboration model that converted Red Team findings directly into detection coverage and control gap remediation. Promoted to Lead Threat Detection Engineer as a result.
  • Served as Interim Product Owner for the APAC Detection Engineering & Purple Team — owned quarterly roadmap prioritization, hiring decisions, and technical mentorship for the regional team. Represented Security as an org-wide champion, leading new hire onboarding across the Hyderabad office.
Threat DetectionSecurity ResearchLog AnalysisMITRE ATT&CK

Ca technologies

Senior Information Security Analyst

Sep 2014Jul 2018 · 3 yrs 10 mos

  • Early-career role spanning SOC operations, incident response, cloud security, and infrastructure security at a global semiconductor company. Promoted to Senior Cybersecurity Analyst within the role.
  • Led end-to-end incident response for a large-scale incident — from initial triage through root cause analysis and executive stakeholder communication, driving corrective action closure.
  • Owned the full deployment of Palo Alto Prisma Cloud CSPM — onboarded the platform, identified critical cloud misconfigurations, and drove remediation in partnership with developer teams. Achieved a 45% reduction in cloud risk metrics within 3 months. Recognized with an Above & Beyond award.
  • Managed CA Email DLP, McAfee Endpoint DLP, and Proofpoint — inherited a high-severity email flow incident affecting multiple business units in the first week of handover; delivered root cause analysis and remediation with minimal business impact, earning leadership recognition for ownership under pressure.
Incident ResponseCloud SecurityCyber Threat HuntingCSPM

Education

Jawaharlal Nehru Technological University

Bachelor of Technology (B.Tech.) — Electronics and Communications Engineering

Stackforce found 100+ more professionals with Security Engineering & Detection & Response

Explore similar profiles based on matching skills and experience