Grigory Streltsov is a Application Security Tech Lead at Wildberries. Colleagues describe him as "I've worked closely with Grigory over the past five years. Grigory showed excellent professional skills. On a personal level, he's charismatic and well-spoken, both qualities that have served him well in his role as responsible security engineer. First, Grigory brought great value to Wrike by consistently enhancement of software development. Second, he has a very strong grasp of technology. He knows Wrike application inside and out and helps to develop new security features… Show more"
-
Application Security Tech LeadWildberriesBelarus -
Application Security Tech LeadWildberries Jul 2023 - Present -
Application Security LeadPaysend Jan 2022 - Jun 2023- Responsible for security into company's CI/CD- Responsible for identification of product security gaps and issues- Quarterly and yearly planning of Application Security Team’s activities- Allocating jobs and workloads to individual staff members based on their skills and ability- Coaching and mentoring new starters in Application Security Team- Development and implementation of Secure Software Developing Process along with metrics covering the whole process.-… Show more - Responsible for security into company's CI/CD- Responsible for identification of product security gaps and issues- Quarterly and yearly planning of Application Security Team’s activities- Allocating jobs and workloads to individual staff members based on their skills and ability- Coaching and mentoring new starters in Application Security Team- Development and implementation of Secure Software Developing Process along with metrics covering the whole process.- Continuous improving of SDLC practices in order to make the process fully automated and measurable.- Implementing, conducting annual application security trainings for developers, QA(A), architects, team leads.- Developing, maintaining and refining internal Application Security Requirements to Development.- Performing threat modelling and design review.- Obtaining and collating information around information security risks and remedial action.- Creating and maintaining partnerships across software engineering, application security- Applying a risk based approach to address issues and vulnerabilities found in both production and pre-production applications- Responsible for driving security initiatives Show less -
Application Security LeadWrike Nov 2020 - Dec 2021- Responsible for identification of product security gaps and issues- Quarterly and yearly planning of Application Security Team’s activities- Allocating jobs and workloads to individual staff members based on their skills and ability- Coaching and mentoring new starters in Application Security Team- Development and implementation of Secure Software Developing Process along with metrics covering the whole process.- Continuous improving of SDLC practices in order to make the… Show more - Responsible for identification of product security gaps and issues- Quarterly and yearly planning of Application Security Team’s activities- Allocating jobs and workloads to individual staff members based on their skills and ability- Coaching and mentoring new starters in Application Security Team- Development and implementation of Secure Software Developing Process along with metrics covering the whole process.- Continuous improving of SDLC practices in order to make the process fully automated and measurable.- Implementing, conducting annual application security trainings for developers, QA(A), architects, team leads.- Developing, maintaining and refining internal Application Security Requirements to Development.- Performing threat modelling and design review.- Obtaining and collating information around information security risks and remedial action.- Creating and maintaining partnerships across software engineering, application security- Applying a risk based approach to address issues and vulnerabilities found in both production and pre-production applications Show less -
Application Security EngineerWrike Jan 2017 - Nov 2020Санкт-Петербург, Россия- Development and implementation of Secure Software Developing Process.- Continuous improving of SDLC practices in order to make the process fully automated and measurable.- Implementing, conducting annual application security trainings for developers, QA(A), architects, team leads.- Developing, maintaining and refining internal Application Security Requirements to Development.- Performing threat modelling and design review.- Performing manual security assessment and source… Show more - Development and implementation of Secure Software Developing Process.- Continuous improving of SDLC practices in order to make the process fully automated and measurable.- Implementing, conducting annual application security trainings for developers, QA(A), architects, team leads.- Developing, maintaining and refining internal Application Security Requirements to Development.- Performing threat modelling and design review.- Performing manual security assessment and source code review of web and mobile applications.- Customization and integration of several SAST tools into SDL (HP Fortify, Gixy, OWASP Dependency Check, Sonarqube); Implementation and integration static security analyzer for Dart language.- Customization and integration of several DAST tools into SDL (Burp Suite, WPScan);- Obtaining and collating information around information security risks and remedial action.- Creating and maintaining partnerships across software engineering, application security- Applying a risk based approach to address issues and vulnerabilities found in both production and pre-production applications- Coaching and mentoring new starters in Application Security Team. Show less -
Security Software EngineerSystem Technologies May 2014 - Jan 2017Беларусь- Development and implementation of Secure Software- Development Lifecycle.- Implementing, conducting annual application security- trainings for developers.- Creating internal application security requirements.- Performing threat modelling and design review.- Application Security assessment: * Automated static application security testing * Automated dynamic application security testing * Manual black box assessment * Manual source code review-… Show more - Development and implementation of Secure Software- Development Lifecycle.- Implementing, conducting annual application security- trainings for developers.- Creating internal application security requirements.- Performing threat modelling and design review.- Application Security assessment: * Automated static application security testing * Automated dynamic application security testing * Manual black box assessment * Manual source code review- Leading small projects (3 people).- Verifying compliance to PCI DSS and customer’s securityrequirements.- Consulting on security best practices in softwaredevelopment: ASP.NET MVC 5 (C#), Entity Framework,JQuery, WCF services. Show less
Grigory Streltsov Education Details
-
8,7 Of 10
Frequently Asked Questions about Grigory Streltsov
What company does Grigory Streltsov work for?
Grigory Streltsov works for Wildberries
What is Grigory Streltsov's role at the current company?
Grigory Streltsov's current role is Application Security Tech Lead.
What schools did Grigory Streltsov attend?
Grigory Streltsov attended Belarusian State University.
Not the Grigory Streltsov you were looking for?
-
1profi.ru
-
Grigory Streltsov
Astana, Kazakhstan
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial