Lakshmi Sudheer

Engineering Manager

Pacifica, California, United States13 yrs 7 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Proven expertise in application security and threat modeling.
  • Strong background in penetration testing and vulnerability assessments.
  • Experience leading security initiatives across multiple organizations.
Stackforce AI infers this person is a seasoned Application Security professional with a focus on vulnerability management and secure software development.

Contact

Skills

Core Skills

Application SecurityInformation Security

Other Skills

Security TestingThreat ModelingCode ReviewsManual TestingAutomated TestingPenetration TestingBug Bounty ManagementSecurity Awareness TrainingPythonNetwork Penetration TestingSource Code AnalysisVulnerability AssessmentDynamic Application Security TestingCore JavaUnix Shell Scripting

Experience

13 yrs 7 mos
Total Experience
2 yrs 2 mos
Average Tenure
4 yrs 3 mos
Current Experience

Netflix

3 roles

Engineering Manager, Application Security

Jun 2025Present · 11 mos

Engineering Manager, Application Security Reviews & Assessments

Promoted

Feb 2022Jul 2025 · 3 yrs 5 mos

Staff Security Partner

Sep 2019Mar 2022 · 2 yrs 6 mos

Hackerone

Technical Advisory Board Member

Jan 2025Apr 2025 · 3 mos

Rsa conference

Program Committee Member

Oct 2020Jan 2025 · 4 yrs 3 mos · San Francisco Bay Area

Adobe

Security Researcher

Apr 2017Sep 2019 · 2 yrs 5 mos · San Francisco Bay Area

  • o Guide product team’s security and privacy initiatives by participating in design reviews,
  • threat modeling and code reviews.
  • o Architect secure solutions for multiple teams across various products
  • o Manual and automated security testing of platforms, applications and services
  • o Reviewing Partner Apps for Security flaws
  • o Guide partners build Secure integrations
  • o Designed and conducted threat modeling workshops for non security folks
  • o Help Security Champions identify and drive high impact security initiatives
Security TestingThreat ModelingCode ReviewsManual TestingAutomated TestingApplication Security+1

Zenefits

Application Security Engineer

Jan 2016Apr 2017 · 1 yr 3 mos · San Francisco Bay Area

  • Pentesting internal web applications for security vulnerabilities
  • Managing bug bounty programs like HackerOne : Triaging security bugs reported,
  • assessing the impact and awarding bounties
  • Conduct Third Party Vendor Security assessment and help improve Zenefits security posture
  • Perform Threat modeling for new features and help with architectural design reviews
  • Educating and training developers about OWASP top 10 and secure coding practices
  • Manage Phishing campaigns to improve security awareness and establish a security culture.
Penetration TestingBug Bounty ManagementThreat ModelingSecurity Awareness TrainingApplication SecurityInformation Security

Bishop fox

Security Analyst Intern

May 2015Aug 2015 · 3 mos · Atlanta Metropolitan Area

  • Developed a tool in Python to convert CIDR notation to a list of IP addresses, List the number of hosts for each notation, check if the clients owns the domains and checks for overlapping address spaces.
  • Automated and manual Source Code Analysis to identify Security vulnerabilities
  • Network Penetration Testing : Internal Assessment
  • Web Application pentesting
  • Evaluated Security tools for the organization and provided evaluation reports and proposal documents
  • Draft detailed security reports with actionable recommendation for clients.
PythonNetwork Penetration TestingSource Code Analysis

Massmutual financial group

Information Security Intern

Jul 2014Dec 2014 · 5 mos · Greater Boston

  • Perform vulnerability assessment of web applications
  • Dynamic Application Security Testing using IBM AppScan Standard
  • Manual Penetration Testing of internal applications
  • Compile and Publish Weekly Threat Reports for the Threat Intelligence team
Vulnerability AssessmentDynamic Application Security Testing

Harvard university

Security Research Intern

May 2014Jun 2014 · 1 mo · Cambridge,MA

  • Research on big data security for the Institute of Quantiative Social Sciences,Harvard University.

Tata consultancy services

Systems Engineer

Dec 2010Jul 2013 · 2 yrs 7 mos · India

  • Project :Nielsen Encoders
  • Designed Category based Test strategies and methodologies to certify encoders for audio/video watermarking.
  • Developed scripts for Performance testing of the encoders.
  • Encoded NTSC and PAL signals and broadcasted them through OTA,DVB-C and QAM.
  • Project: SMART CARD:USIM
  • Contributed as a QA engineer for a Smart card Project in Tata Consultancy Services.
  • Designed Test strategies and methodologies for the Global Platform in USIM.
  • Developed Smart Card scripts for testing of the Global Card Platform.
  • Validated Card content management operations: Installation, Key management, Deletion in Security Domains on the smart card.

Education

Northeastern University

Master's degree — Computer and Information Security/Information Assurance

Jan 2013Jan 2015

Visvesvaraya Technological University

Bachelor of Engineering (BE)

Jan 2006Jan 2010

Stackforce found 100+ more professionals with Application Security & Information Security

Explore similar profiles based on matching skills and experience