Madhu Nandyala
@madhunandyala
Results-driven Application Security Consultant with 13+ years of experience.
What I'm looking for
I am an experienced Application Security Consultant with over 13 years of expertise in DevSecOps, Secure Code Review, and Application Security Tooling. My career has been dedicated to mitigating security risks through the seamless integration of security practices within the development cycle. I have a proven track record of leading Application Security initiatives and integrating security into CI/CD pipelines, ensuring that security is not an afterthought but a fundamental aspect of the development process.
Throughout my career, I have successfully collaborated with numerous teams across various organizations, onboarding applications into security tools such as Sonarqube and Blackduck. My efforts have led to the identification and remediation of vulnerabilities, significantly enhancing the security posture of the applications I have worked on. I am passionate about mentoring and training others in secure coding practices and have received multiple awards for my contributions to security automation and team development.
Experience
Work history, roles, and key accomplishments
Staff Application Security Engineer
Alteryx
Oct 2023 - Present (1 year 7 months)
Responsible for performing Static Application Security Testing (SAST) and Software Composition Analysis (SCA) by onboarding applications into security tools like Sonarqube and Blackduck. Integrated security tools with CI/CD pipelines and collaborated with multiple teams to identify and remediate vulnerabilities.
Staff Information Security Analyst
Cadence Design Systems
Mar 2022 - Oct 2023 (1 year 7 months)
Built and managed the Fortify tool for Static Application Security Testing (SAST) and Software Composition Analysis (SCA). Collaborated with over 80 teams to onboard applications and remediate vulnerabilities, ensuring tool availability and scan efficiency.
Senior Advisory Consultant
IBM
Feb 2021 - Apr 2022 (1 year 2 months)
Led cloud migration and modernization for 35 applications, ensuring security compliance and performing SAST scans. Integrated security tools into CI/CD pipelines and guided development teams on security mandates.
Consultant Specialist
HSBC
Oct 2019 - Mar 2021 (1 year 5 months)
Focused on Secure Development Lifecycle by implementing secure coding practices and providing training on security tools. Developed an API for automating user onboarding to security tools and supported development teams in utilizing these tools effectively.
Application Security Consultant
IBM
Oct 2014 - Oct 2014 (0 months)
Managed SAST and DAST remediation efforts, achieving significant reductions in vulnerability mitigation time. Integrated security tools with DevOps pipelines and led a team to ensure effective offshore delivery.
Process Specialist
Infosys
Nov 2012 - Oct 2014 (1 year 11 months)
Involved in the complete project execution cycle, including design, build, test, and production support. Acted as the primary contact for offshore testing phases and documented changes and issues.
Education
Degrees, certifications, and relevant coursework
Anna University
Master of Engineering, Engineering
2008 - 2010
Grade: 8.11 CGPA
Completed a Master of Engineering with a focus on advanced engineering principles and practices, achieving a CGPA of 8.11.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Madhu?
You can contact Madhu and 90k+ other talented remote workers on Himalayas.
Message MadhuFind your dream job
Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
