Shashi Ramgopal

Software Engineer

Bengaluru, Karnataka, India11 yrs 7 mos experience
Most Likely To SwitchAI Enabled

Key Highlights

  • Led enterprise-wide firewall audits reducing complexity by 30%.
  • Implemented automation workflows improving SLA adherence by 65%.
  • Managed Cortex XDR deployment enhancing endpoint security.
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in network security and incident response.

Contact

Skills

Core Skills

CybersecurityFirewall ManagementComplianceAutomationIncident ResponseEndpoint SecurityNetwork SecurityConsultingNetwork ManagementSecurity Implementation

Other Skills

Risk AssessmentTufinServiceNowPower AutomateManaged Security ServicesNetwork Security ImplementationCortex XDRProfessional ServicesAccess Control ListsVPNMentorshipLearningGuidanceCareer DevelopmentNetworking Events

About

PCNSE | PCNSA | NSE 1 | NSE 2 | Oracle cloud | Python Using AI Tools | Power BI Certified | Lean SIx Sigma AI Yellow Belt

Experience

11 yrs 7 mos
Total Experience
2 yrs 3 mos
Average Tenure
2 yrs 10 mos
Current Experience

Visa

Senior Cybersecurity Engineer

Jul 2023Present · 2 yrs 10 mos · Bengaluru, Karnataka, India · Hybrid

  • 1) Spearheaded enterprise-wide firewall rule audits and cleanup initiatives using Tufin and ServiceNow, streamlining 10,000+ rules, removing 6,500+ obsolete rules, achieving a 30% reduction in rule complexity, and ensuring alignment with PCI DSS, SOX, ISO 27001, and internal audit controls.
  • 2) Designed and implemented Power Automate workflows to automate firewall rule review and approval processes, reducing manual effort by 65%, improving SLA adherence, enhancing audit traceability, and accelerating secure change delivery.
  • 3) Leveraged automation agents to validate firewall rule hygiene and streamline pre-change risk assessments, improving change accuracy by 35% and reducing configuration errors.
  • 4) Partnered with Risk and Compliance teams to map firewall rules to business-critical assets, enabling risk-based rule reviews and reducing exposure windows by 50%, in compliance with ISO 27001 and SOX requirements.
  • 5) Led a multi-region firewall decommissioning and consolidation program, retiring legacy rulebases and consolidating 12 firewalls, reducing the attack surface by 35% and simplifying governance through Tufin policy templates.
  • 6) Collaborated with Red Team to analyze attack patterns and implement proactive firewall controls, resulting in a 45% reduction in recurring security incidents.
  • 7) Conducted quarterly network security control reviews and risk assessments, presenting findings and remediation strategies to senior leadership to support informed security decision-making.
  • 8) Acted as a security liaison across global infrastructure, GRC, and network teams, driving consistent security governance and standardized firewall practices across regions.
  • 9) Mentored junior engineers on firewall rule analysis, automation, and endpoint protection, strengthening team capability and operational independence.
  • 10) Chaired weekly Change Control Board (CCB) meetings to review and approve high-risk firewall changes, balancing security, compliance, and business agility.
Risk AssessmentComplianceCybersecurityFirewall Management

7-eleven

Lead Engineer

Feb 2022Jul 2023 · 1 yr 5 mos · Bengaluru, Karnataka, India

  • 1. Owned full-cycle deployment, stabilization & performance tuning of Cortex XDR, ensuring high availability,real-time detection & minimal disruption across enterprise endpoint environments.
  • 2. Led advanced incident response operations by analyzing real-time Cortex XDR alerts,system logs & behavioural patterns to detect & respond to targeted attacks, reducing response time by 40% & minimizing business impact.
  • 3. Performed live malware attack investigations, conducting deep-dive forensic analysis of malicious payloads,persistence mechanisms & lateral movement attempts, resulting in the containment of multiple zero-day threats.
  • 4. Engineered custom detection rules and threat hunting queries in Cortex XDR & SIEM (Splunk), enabling proactive identification of threats & cutting false positives by 35%, significantly boosting analyst efficiency.
  • 5. Reduced the organization's attack surface by 45% through endpoint hardening, rule base refinement, policy enforcement and decommissioning of legacy controls, in alignment with NIST & ISO 27001 standards.
  • 6. Collaborated with threat intel and vulnerability management teams to correlate global attack trends with internal telemetry, proactively identifying IOCs & delivering remediation strategies before exploitation.
  • 7. Performed malware reverse engineering sessions in collaboration with SOC analysts & red team members, enhancing internal capabilities in detecting obfuscated and polymorphic threats.
  • 8. Built playbooks for malware containment, eradication & recovery, automated repetitive investigation and enrichment tasks by integrating Cortex XDR with SOAR workflows & threat intelligence feeds, significantlyimproving response time & consistency.
  • 9. Contributed to post-incident reporting, RCA documentation & threat briefings, translating technical findings into executive-level insights & strengthening organizational cyber readiness.
  • 10. Developed hands-on training & threat simulation labs on Cortex XDR investigation best practices.
Managed Security ServicesNetwork Security ImplementationIncident ResponseEndpoint Security

Infinity labs india

Senior Network & Security Engineer

Jul 2020Jan 2022 · 1 yr 6 mos · Noida, Uttar Pradesh, India · Remote

  • 1. Delivered expert consulting on Palo Alto Cortex XDR & Strata firewalls, leading successful migrations to the Cortex XDR Cloud platform for global enterprise clients, reducing endpoint vulnerabilities by 25%.
  • 2. Built custom security policies and application signatures tailored to unique client environments, enhancing threat detection accuracy and network protection.
  • 3. Conducted detailed vulnerability assessments and risk analyses, implementing security hardening measures that significantly improved client security posture.
  • 4. Analyzed security logs and events, providing comprehensive threat analysis reports that guided clients in prioritizing and mitigating risks effectively.
  • 5. Collaborated with TAC to troubleshoot and resolve escalated technical issues promptly, minimizing downtime and improving client satisfaction.
  • 6. Acted as a trusted advisor, consulting customers on security best practices and methodologies aligned with industry standards such as NIST, CIS, and ISO 27001.
  • 7. Partnered with sales account teams to develop tailored technical strategies that addressed customer business needs and aligned security deployments with organizational goals.
  • 8. Supported management through detailed weekly reports and Quarterly Business Reviews (QBRs), enabling strategic planning and business growth.
  • 9. Engaged closely with clients to understand their business and technical requirements, ensuring the delivery of customized and effective security solutions.
  • 10. Demonstrated project leadership by leading design meetings, coordinating teams, and managing complex security implementations in large-scale environments.
  • 11. Leveraged a variety of migration tools, scripts, and third-party utilities to streamline client transitions to Cortex XDR Cloud and optimize firewall configurations.
  • 12. Delivered clear, professional technical documentation and communications, showcasing strong written and verbal communication skills to facilitate client understanding and adoption.
Professional ServicesCortex XDRNetwork SecurityConsulting

Hcl technologies

Security Specialist

Sep 2017Jul 2020 · 2 yrs 10 mos · Noida, Uttar Pradesh, India · On-site

  • 1. Designed & supported complex network environments across multiple medical centers, applying strong analytical and troubleshooting skills to configure, implement and optimize network changes with minimal disruption ensuring 99.99 % uptime & continuous delivery of critical healthcare services with minimal downtime.
  • 2. Developed & enforced comprehensive network security architectures, incorporating advanced Access Control Lists (ACLs),VPN gateways and intrusion detection/prevention systems (IDS/IPS) reducing security incidents by 30% through granular access control and segmentation, securing sensitive patient data and achieving full compliance with HIPAA & related healthcare regulations.
  • 3. Established and troubleshot IPsec Site-to-Site VPN tunnels on Cisco devices, resolving tunnel reachability & traffic flow issues to maintain 100% uptime for secure client-vendor communications across multiple sites.
  • 4. Executed critical firewall and DNS change management processes, reviewing & approving over 5000+ change requests annually to ensure compliance and reduce configuration errors by 40%.
  • 5. Directed firewall upgrade initiatives on Cisco ASA, Palo Alto & Juniper SRX, improving security posture & reducing system vulnerabilities by 25%.
  • 6. Designed and implemented F5 Load Balancer configurations including VIP creation and URL redirection, increasing application availability and throughput by 20%.
  • 7. Managed IP addressing and DNS record management using Infoblox DNS, overseeing 10,000+ IPs and ensuring accurate DNS resolution with less than 1% error rate.
  • 8. Deployed and scaled new subnets, network devices, and servers to accommodate 15% annual network growth, maintaining performance and security.
  • 9. Led rapid root cause analysis and incident response efforts that reduced MTTR by 35%,minimizing downtime & service disruptions.
  • 10. Conducted in-depth network traffic analysis and threat modeling, identifying & mitigating 85% of high-risk vulnerabilities before exploitation.
Network Security ImplementationManaged Security ServicesNetwork SecurityCompliance

Wipro ltd.

Project Engineer

Sep 2014Sep 2017 · 3 yrs · Chennai, Tamil Nadu, India · On-site

  • 1. Managed enterprise-grade network infrastructure across multiple client environments, ensuring 99.99% uptime and optimizing performance through proactive maintenance and enhancement activities.
  • 2. Deployed, configured and supported security appliances including Checkpoint SmartDashboard, Juniper NSM, Palo Alto Panorama, and F5 Load Balancers, improving network resilience and security across 20+ customer sites.
  • 3. Established and managed site-to-site VPN tunnels using Juniper SRX, enabling encrypted, secure communications between business units and third-party vendors.
  • 4. Resolved 95%+ of incident and problem tickets within defined SLAs, escalating critical or high-impact issues to engineering or vendor teams to ensure timely resolution and business continuity.
  • 5. Created and enforced ACLs and security policy rules within Checkpoint SmartDashboard, Juniper NSM, and Palo Alto Panorama, ensuring secure network segmentation and compliance with enterprise policies.
  • 6. Diagnosed and monitored health status and reachability of over 1,000+ managed network devices, proactively addressing performance degradation, outages, and hardware alerts.
  • 7. Performed regular network maintenance: firmware upgrades, patch management, password rotations, and configuration backups, contributing to a 25% reduction in security vulnerabilities.
  • 8. Engineered and implemented automation processes (e.g., script-based diagnostics and backups), improving operational efficiency by 30% and reducing manual effort across recurring network management tasks.
  • 9. Coordinated with hardware and software vendors (Cisco, Juniper, Palo Alto, Checkpoint, RSA TAC) to troubleshoot device failures and complex issues, ensuring minimal impact on production systems.
  • 10. Authored detailed Standard Operating Procedures (SOPs) and network documentation to drive standardization, reduce escalations and accelerate issue resolution.
Managed Security ServicesNetwork Security ImplementationNetwork ManagementSecurity Implementation

Education

Mukand Lal National College

Bachelor of Science (B.Sc.) — Electronics

Jan 2011Jan 2014

D.A.V. Public School, Paonta Sahib

School

Jan 2003Jan 2011

Stackforce found 100+ more professionals with Cybersecurity & Firewall Management

Explore similar profiles based on matching skills and experience