n
narayanan_k_01

Narayanan K

@narayanan_k_01

I will do security, QA, and performance testing for your web and mobile app

Inde
Anglais
Certaines informations sont présentées en anglais.
À propos de moi
Senior DevSecOps & Security Engineer with 5+ years in Application Security, Penetration Testing, Vulnerability Management, and QA. I offer: - Web, Mobile & API security testing (VAPT, OWASP Top 10) - DevSecOps: SAST, DAST, SCA, CI/CD security automation - Manual & automated functional testing (Selenium, Appium) - Performance & load testing (JMeter) Tools: Burp Suite, OWASP ZAP, MobSF, Frida, Nuclei, SonarQube, Trivy, DefectDojo Every project includes a clear report with severity ratings, reproduction steps, and fix guidance.... Plus d’infos

Compétences

n
narayanan_k_01
Narayanan K
hors ligne • 
Temps de réponse moyen de 1 heure

Voir mes services

Test de logiciels
I will do selenium web automation testing for your website
Test de logiciels
I will do appium mobile automation testing for android and ios apps

Expérience professionnelle

M2P_Fintech

Senior DevSecOps Analyst L4

M2P Fintech • Temps plein

Jun 2024 - Present • 2 yrs 4 mos

𝗗𝗲𝘃𝗦𝗲𝗰𝗢𝗽𝘀 𝗔𝗻𝗮𝗹𝘆𝘀𝘁 with proven expertise in embedding security best practices throughout the software development lifecycle (SDLC). 𝗞𝗲𝘆 𝗔𝗰𝗵𝗶𝗲𝘃𝗲𝗺𝗲𝗻𝘁𝘀 : • Integrated SAST, DAST, SCA, and mobile security scanning into CI/CD pipelines using SonarQube, Dependency-Track, MobSF, and Trivy, reducing vulnerabilities by 40% and strengthening application security across web, API, and mobile platforms. • Developed the M2P Compliance Dashboard using Next.js and TypeScript and integrated Grafana and Prometheus for security observability, reducing manual follow-up efforts for Security Analysts and the GRC team by 80%.

Pepul

Security Engineer - L1 & L2

Pepul • Temps plein

Sep 2021 - Jun 2024 • 2 yrs 9 mos

𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗘𝗻𝗴𝗶𝗻𝗲𝗲𝗿 with expertise in fortifying digital infrastructure, developing secure code, and integrating security into DevSecOps practices. 𝗞𝗲𝘆 𝗔𝗰𝗵𝗶𝗲𝘃𝗲𝗺𝗲𝗻𝘁𝘀 : • Implemented SAST, DAST, and SCA pipelines, reducing critical vulnerabilities by 35% during early SDLC stages. • Conducted Web, Mobile, and API penetration testing, identifying and remediating 150+ security issues across applications. • Performed code reviews and applied security controls, preventing 25+ high-risk security flaws before production deployment. • Implemented network security controls and system hardening measures, reducing potential attack vectors by 30% across corporate systems. • Conducted vulnerability scans and remediation, identifying and mitigating 100+ security issues in production and development environments. • Provided security awareness and guidance to development teams, improving secure coding adherence by 25%.