Vishwanath Gowda

DevOps Engineer

Bengaluru, Karnataka, India13 yrs 11 mos experience

Key Highlights

  • Over 10 years of IT experience in Cloud Security.
  • Expert in designing secure multi-cloud architectures.
  • Proficient in implementing security-focused CI/CD pipelines.
Stackforce AI infers this person is a Cloud Security Engineer with expertise in DevSecOps and multi-cloud environments.

Contact

Skills

Core Skills

Cloud SecurityDevsecopsApplication SecurityData SecurityDevopsSystem Administration

Other Skills

1PasswordAWSAWS SecurityAmazon ECSAmazon EKSAmazon Web Services (AWS)AnsibleAzure DevOps ServicesAzure SecurityAzure SentinelBurp SuiteCCNACIEMCSPMCWPP

About

A dynamic and results-driven IT professional with over 10 years of experience, including 9.5 years in Cloud Security, DevSecOps, SRE, and Security Engineering across AWS, Azure, and GCP environments. Proven expertise in designing secure, scalable multi-cloud architectures and implementing security-focused CI/CD pipelines using tools such as Terraform, Kubernetes, Docker, Ansible, Jenkins, GitHub Actions, and more. Strong understanding of cloud-native security principles, infrastructure as code, and regulatory compliance aligned with standards like CIS, NIST, ISO 27001, SOC 2, and PCI-DSS. Experienced in DevSecOps and cloud governance tools including Veracode, CyberArk, HashiCorp Vault, SentinelOne, SailPoint, SonarQube, OWASP ZAP, Cloud Custodian, Wiz, Prisma Cloud, and other CSPM/CIEM/CWPP platforms. Hands-on with SRE practices and real-time production monitoring using Prometheus, Grafana, Zabbix, and Icinga. Skilled in secure software development lifecycle (SSDLC), threat modeling (STRIDE, DREAD), Zero Trust Architecture, OAuth2, JWT, MFA, and automated certificate management with TLS/SSL. Always open to connecting with professionals, recruiters, and fellow engineers. Let's build meaningful networks and grow together in the security and cloud community. Feel free to connect or message me. vishwa.ciso@gmail.com

Experience

13 yrs 11 mos
Total Experience
2 yrs 4 mos
Average Tenure
1 yr 11 mos
Current Experience

Ghx

CyberSecurity-Staff Cloud Security Specialist/DevSecOps

Jul 2024Present · 1 yr 11 mos

  • Designed secure, scalable cloud architecture across multi-account AWS Organizations,Azure subscriptions, and GCP projects ensuring compliance and threat resilience
  • Used CSPM tools (Wiz, Prowler, Security Hub) to monitor and enforce compliance with CIS, HIPAA, and PCI-DSS standards
  • Policy-as-a-code by Enforced automated guardrails using Cloud Custodian to detect and remediate policy violations in real-time
  • Created and maintained Golden AMIs (pre-hardened EC2 images) to standardize OS-level security.
  • Used 1Password to manage credentials, secrets, and tokens securely in automated workflows and CI/CD
  • Performed advanced red teaming and penetration testing using Core Impact to validate real-world threat scenarios
  • Deployed CWPP tools like Wiz and Tenable for continuous vulnerability scanning and runtime workload protection
  • Applied CIEM controls to audit IAM permissions and eliminate over-provisioned access across accounts
  • Integrated CyberArk, Okta, and SailPoint to manage privileged access, enforce SSO/MFA, and streamline identity governance
  • Automated cloud security workflows and reporting using Python and Shell scripting, reducing manual overhead
  • Implemented Venafi to manage machine identities, automating TLS/SSL cert issuance and rotation
  • Secured applications throughout the SDLC using:
  • SAST: SonarQube, GitHub Advanced Security for early code flaw detection
  • DAST: OWASP ZAP, Venafi for dynamic testing of deployed applications
  • IAST: Contrast Security for real-time, interactive vulnerability detection during testing
  • RASP: Embedded protection for runtime application self-defense
  • Hardened container workloads using Trivy, Wiz, and Kubernetes RBAC/image scanning policies
  • Enabled DevSecOps by embedding security gates into Jenkins, GitHub Actions, and AWS CodePipeline
  • Monitored events and threats via GuardDuty, CloudTrail, Security Hub, and SentinelOne SIEM
  • Participated in threat modeling, incident response drills, and collaborated with Red/Blue teams for continuous improvement
CSPMDevSecopsCWPPCIEMProwlerCloud Security+32

Thermo fisher scientific

DevSecops/Multi-Cloud Security/Senior Cyber Security Engineer/

Oct 2023Jul 2024 · 9 mos · Karnataka, India · On-site

Cloud SecurityDevSecOpsSecurity Information and Event Management (SIEM)Threat & Vulnerability ManagementAWS SecurityQualys+18

Signify

DevsecopEng/CLoud Security

Oct 2021Sep 2023 · 1 yr 11 mos · Bangalore Urban, Karnataka, India · Hybrid

TerraformPowershellKubernetesGoogle Cloud Platform (GCP)Python (Programming Language)Docker+13

Walmart global tech india

DevSecOps/Security Engineer

Feb 2020Sep 2021 · 1 yr 7 mos · Karnataka, India · On-site

Payment Card Industry Data Security Standard (PCI DSS)Information SecurityData SecurityDevSecOpsTerraformAnsible+2

Infinite computer solutions

DevOps Engineer/Cloud Engineer

Apr 2018Jan 2020 · 1 yr 9 mos · Karnataka, India

Azure DevOps ServicesPowershellShell ScriptingSecurity Information and Event Management (SIEM)AWSwindows 2012+3

Infodot technologies private limited

Cloud Engineer/System Engineer

Apr 2012Apr 2018 · 6 yrs · Karnataka, India · On-site

Linux System AdministrationWindows System AdministrationNetwork AdministrationPowershellShell Scriptingnagio+7

Education

Visvesvaraya Technological University (VTU)

Bachelor of Engineering - BE

Aug 2008Aug 2014

Stackforce found 100+ more professionals with Cloud Security & Devsecops

Explore similar profiles based on matching skills and experience