Ishaq Mohammed

DevOps Engineer

Pune, Maharashtra, India9 yrs 7 mos experience
Most Likely To SwitchAI ML Practitioner

Key Highlights

  • Over 9 years of experience in security disciplines.
  • Expertise in Application Security Engineering and DevSecOps.
  • Passionate about Developer Education and Security Culture.
Stackforce AI infers this person is a Security Engineer specializing in Application Security within the SaaS industry.

Contact

Skills

Core Skills

Application Security EngineeringDevsecopsSecure Sdlc

Other Skills

ASPMApplication SecurityArchitecture ReviewsArtificial Intelligence (AI)CC++CI/CDComputer SecurityCryptographyCyber-securityCyberlawDASTDesign ReviewDevOpsE-Learning

About

As an experienced security professional with a proven track record of over 9 years, I possess a comprehensive skill set encompassing various security disciplines. My expertise spans critical areas such as Application Security Engineering and Automation, DevSecOps, Penetration Testing, Vulnerability Assessment, and Secure Code Review. My genuine passions lie in Developer Education, Advocacy, and fostering a Security Culture within organizations. I firmly believe we can create robust and secure software systems by empowering developers with the necessary knowledge and tools.

Experience

9 yrs 7 mos
Total Experience
2 yrs 4 mos
Average Tenure
4 yrs 7 mos
Current Experience

Tiaa

4 roles

Specialist - Application Security Engineer

Feb 2025Present · 1 yr 4 mos · Pune, Maharashtra, India

Associate - Application Security Engineer

Dec 2023Feb 2025 · 1 yr 2 mos · Pune, Maharashtra, India

  • Led the engineering and deployment of IAST agent operator in OpenShift/K8s environments
  • Automated the deployment of IAST agents for Java-based applications on Tomcat and WebLogic servers
  • Subject Matter Expert for SAST and SCA
  • Led cross-functional collaborations with DevOps and AppDev teams
  • Mentored team members to enhance their skills and performance.
IASTOpenShiftK8sSASTSCADevOps+2

Senior Analyst - Application Security Engineer

Promoted

Jan 2023Dec 2023 · 11 mos · Pune, Maharashtra, India

  • Led technical evaluations and proof-of-concepts for ASPM and other AppSec tools, resulting in informed tooling decisions
  • Developed the Security Champions Program Roadmap, crafted the budget and resourcing strategy, and devised the program rollout plan
  • Supporting BAU activities for DAST, SAST, and SCA
ASPMSecurity Champions ProgramDASTSASTSCAApplication Security Engineering+1

Analyst - Application Security Engineer

Oct 2021Dec 2022 · 1 yr 2 mos · Pune, Maharashtra, India

  • Owned DAST operations, onboarding applications into DAST and SAST, streamlining the secure SDLC pipeline
  • Managed and oversaw application security testing in CI/CD
  • Troubleshooting issues related to the DAST platform
  • Collaborated with developers to analyze vulnerabilities and recommend mitigating
  • strategies
  • Documented the application security tools and process
  • Educate engineers on application security practices
DASTSASTCI/CDApplication Security EngineeringSecure SDLC

Appdirect

Application Security Engineer

Mar 2020Oct 2021 · 1 yr 7 mos · Pune, Maharashtra, India · Remote

  • Performed pentesting and security reviews of AppDirect products and services
  • Designed and documented the security champions program
  • Evaluated tools available widely to integrate and implement SSDLC
  • Managed private bug bounty program
  • Coordinated with engineering teams to ensure that solid security practices were applied in the SDLC
  • Proactive research on the latest vulnerabilities and exploits
pentestingsecurity reviewsSSDLCbug bounty programApplication Security EngineeringSecure SDLC

Qualys

Application Security Analyst

Mar 2018Mar 2020 · 2 yrs · Pune, Maharashtra, India

  • Performed pentesting of Qualys products and services
  • Performed security reviews of inhouse extensions and plugins
  • Performed regular dynamic and static security testing for product builds
  • Automated software composition analysis using open-source tools
  • Proactive research on the latest vulnerabilities and exploits
pentestingsecurity reviewsdynamic testingstatic testingApplication Security EngineeringSecure SDLC

Securelayer7

Security Consultant

Sep 2016Feb 2018 · 1 yr 5 mos · Pune Area, India

  • Performed automated and manual vulnerability assessment and penetration testing
  • Creating and setting up pentest labs
vulnerability assessmentpenetration testingApplication Security Engineering

Education

University of Mumbai

Bachelors of Science in Information Technology — Information Technology

Stackforce found 100+ more professionals with Application Security Engineering & Devsecops

Explore similar profiles based on matching skills and experience