Building security products for the world's largest retailer and along the way, contributing to open source projects and building a community around it. Here's a summary of my work so far.

Senior Software Engineer, Cybersecurity

July 2021 — Present

I joined Walmart Global Tech when we spun up a new Software Engineering team within the Security Operations Center (SOC). As one of the initial four engineers, I’ve played a pivotal role in expanding the team to 20 engineers. Throughout my tenure, I’ve collaborated on diverse projects, fostering partnerships with various teams across the Security Operations domain, including SOC, IR, Threat Intelligence, Cyber Deception, Red Team, and SOAR.

Key Achievements

  • In late 2024, I internally moved to the Adversary Emulation team, developing and executing realistic threat actor simulations.
  • Earlier in 2023, I was promoted to Tech Lead, overseeing a subgroup dedicated to developing applications for Cyber Deception, Red Team, and SOAR platforms.
  • I led the backend development group for our innovative Cyber Intelligence Platform. The platform uses an event-driven architecture, built on Azure, is highly distributed and executes automated playbooks based on YAML configurations (similar to Nuclei templates) with features like retries and scheduling, enabling the processing and automated response of hundreds of alerts under 5 minutes.

Apart from building applications, I train and mentor new engineers and interns. Additionally, I extend mentorship to associates from Walmart stores and help them transition into Software or Security Engineering roles. Occasionally, I provide consultation to other teams within Security Operations, offering expertise in architecture design and infrastructure.

Application and Cloud Security Intern

October 2020 — April 2021

I joined HBO Max soon after its launch, contributing to the application and cloud security team. My focus included automating security controls for the HBO Max platform.

Cloud Security

Within the Cloud Security team, I created an application to monitor, analyze, and remediate DNS records and AWS resources to prevent potential subdomain takeover attacks. I also designed a tool for automating the detection and correction of security misconfigurations in AWS resources.

Application Security

Transitioning to the application security team, I developed a Slack bot to block and unblock IPs on WAFs and CDNs. Additionally, I conducted application security reviews and triaged bug bounty reports.

Software Engineer (iOS)

January 2017 — January 2019

Zoho Corporation is an Indian multinational technology company that makes computer software and web-based business tools. I was part of the mobile development team that built the Zoho Vault (Password Manager) and ServiceDesk Plus (ServiceNow alternative) mobile apps.

As a product engineer at Zoho Corp, I engaged in the complete software development lifecycle, from customer interactions to designing, developing, testing, and deploying the apps. Additionally, I took on a mentoring role for junior engineers and interns within the team.

I frequently explored and implemented proof of concepts using cutting-edge technologies such as on-device ML, ARKit, VoiceKit, multiplatform SDKs, and more.