Ripon Majumder

Angestellt, Principal security Consultant, AON

Munich, Deutschland

Über mich

Multi-faceted information security expert with extensive experience in varied domains of information security process including strategic architecting and vendor management. Over 9 years with hands-on implementation, rich consulting, advisory in the information technology. Skilled in implementing threat modeling, security requirements, architecture review, risk assessment, penetration testing, secure code review. Current responsibilities include recommend security requirements, security assessment, threat modeling, performed architecture review, strategies, secure code analysis, Penetration Testing, implement DevSecOps, and guidelines for security technologies to develop effective secure solutions. Perform physical walkthrough & provide people awareness trainings. Managed and driven security testing activities end-to-end and was the security point of contact. Good knowledge about Docker , Kubernetes implementation and Container Security and managing Micro-service architecture.

Fähigkeiten und Kenntnisse

Java
Consulting
OWASP
DAST
SAST
CICD
DevSecOps
Pentest
Thread modelling
Security design review
Code review
Python
kali
Application Security
Design Review
Source Code analysis
AWS Security
Threat modeling
Container Security
Penetra
Penetration Testing
CI/CD
ISO27001

Werdegang

Berufserfahrung von Ripon Majumder

  • Bis heute 7 Jahre und 2 Monate, seit Apr. 2017

    Principal security Consultant

    AON

    Over 10 years with hands-on implementation, rich consulting, advisory in the information technology. Current responsibilities include recommend security requirements, security assessment, threat modeling, performed architecture review, strategies, secure code analysis, Penetration Testing, implement DevSecOps, and guidelines for security technologies to develop effective secure solutions. Provide people awareness training. Managed and driven security testing activities end-to-end.

  • 3 Jahre und 5 Monate, Juli 2013 - Nov. 2016

    Senior Analyst - Information Security

    PTW

    Conducted Penetration testing and vulnerability assessment on web application, network, infrastructure and web services using security methodology like OWASP and Sans. Conducted Static Code Analysis on application to minimize the vulnerabilities at the code level in development phase. Hands-on experience in Develop and test exploits and scripts ( Python/Bash Scripting )

Sprachen

  • Englisch

    Fließend

  • Hindi

    Fließend

  • Bengali

    Gut

Interessen

Yoga
Cooking
Psychology
Music
Interior design
security research

21 Mio. XING Mitglieder, von A bis Z