As a Lead Product Security Engineer at Medtronic, I apply my 13 years of IT experience and 8 years of security testing expertise to protect the company's medical devices and software from cyber threats. I have earned the KLCP and OSWP certifications and have extensive knowledge of tools such as Burp Suite, IBM App Scan, Nmap, Nessus, Nikto, Qualys, Dependency Track , Threat Intelligence Tools (Sternum, Recorded Future) and vulnerability management tools like CodeDX.I am passionate about creating and delivering high-quality security solutions that meet the industry standards and best practices. I am passionate about my team and the work we deliver as a team and i perform dynamic application security testing on web applications, APIs, and mobile applications, identify and validate potential vulnerabilities, and provide remediation guidance and support to developers. I also conduct security awareness programs and ethical hacking trainings, and share my knowledge through online courses and content creation. I am always eager to learn new technologies and skills, and to collaborate with other cybersecurity professionals.
Medtronic
View- Website:
- medtronic.com
- Employees:
- 97718
-
Principal Product Security EngineerMedtronicHyderabad, In -
Lead Product Security EngineerMedtronic Aug 2021 - PresentHyderabad, Telangana, India -
Technical Lead Application SecurityLegato Health Technologies Jun 2020 - Aug 2021Hyderabad, Telangana, India -
Senior Information Security AnalystWells Fargo Jul 2014 - May 2020Hyderabad Area, IndiaCrypto Compliance ProjectTools Used: Apache Tomcat, JBoss, Channel Secure Authentication, Java. SQL Server.Description:Wells Fargo has several assets; all the relevant assets undergo a compliance check using Crypto Compliance Tool to identify ones under compliance and non-compliance using policies and action plans to move the assets from non-compliance to compliance.Roles and Responsibilities:• Analyze requirements given from business team in Jira.• Perform POC for Crypto Compliance and assign the tasks to the team.• Perform Web Application penetration testing.• Follow OWASP Top 10 including XSS, SQL Injection, Broken Authentication, Session Hijacking, Clickjacking and others.• Responsible for channel secure authentication testing, application security testing and system testing.• Follow Agile model.• Discuss defects with development teams based on reports. -
Senior Qa AnalystValue Labs Technologies Llp Jul 2012 - Jun 2014Hyderabad Area, IndiaProject Name: OFRSTools Used: Bugzilla, Tortoise SVN, QCProject Description: OFRS: ONLINE FLEET RESERVATION SYSTEM is bus ticketing reservation system for B to C, B to B, Aggregator modes. Worked on more than 30 travel names (KESINENI, MGB, and ODHISHA). Tested Mobile Apps of several travels which the end-user can install and download. Tested several Web Services of all travels where aggregator is used (Example: Red Bus).Roles and Responsibilities: Analyzing Requirement from travels (clients). Responsible for preparing the test cases. Responsible for Web Application Functional Testing, Admin, Web Services Testing Executing the Manual test cases. Sanity Testing, Regression testing, Adhoc Testing Bug Reporting in Bugzilla Tool Discussion of bugs with Development teams. -
Qa AnalystKnoahsoft Inc. Jun 2010 - May 2012Hyderabad Area, IndiaProject Name: Speech Analytics Tools Used: TRAC, Tortoise SVN, QC 9.2Environment: Avaya Call Manager, Cisco Call Manager 6.0, 7.0, 8.0.Project Description: Harmony Speech Analyzer, powered by Aurix, enables call center supervisors and management to perform "precision monitoring" on keywords or phrases, using the smart Phonetic based search. This detailed level of refining recordings provides valuable insights into the operation of the call centre. Aurix libraries are used to identify words, phrases and interactions such as silence, emotion, talk-over buried in the audio data and transform them into valuable intelligence. Calls recorded by Harmony recorder are later speech indexed and required results are retrieved based on the analysis performed by the speech analyzer.Roles and Responsibilities: Requirement analysis of Speech Analytics and created process flow diagrams using Mind Map tool. Tested all components in different environments like Cisco Express, IPT, and Enterprise in 6.0 and 7.0 versions and also in Avaya environment. Involved in Functionality, Regression, Security, Performance, Concurrency testing. Prepared bug reports and tracked defects using defect tracking form. Created Deployment Architecture Diagrams Installed product at client places through Remote access.
Hema Kumar Skills
Hema Kumar Education Details
-
Vignan'S Institute Of Information Technology, Beside Vsez, Duvvada, Gajuwaka,Vadlapudi (P.O)Pin-530049 (Cc-L3)Computer Science -
CybraryPenetration Testing Career Path -
Information Technology
Frequently Asked Questions about Hema Kumar
What company does Hema Kumar work for?
Hema Kumar works for Medtronic
What is Hema Kumar's role at the current company?
Hema Kumar's current role is Principal Product Security Engineer.
What schools did Hema Kumar attend?
Hema Kumar attended Vignan's Institute Of Information Technology, Beside Vsez, Duvvada, Gajuwaka,vadlapudi (P.o)pin-530049 (Cc-L3), Cybrary, Icfai University.
What skills is Hema Kumar known for?
Hema Kumar has skills like Penetration Testing, Rsa Security, Archer, Web Application Security, Archer Configuration And Testing, Burp Suite, Nmap, Web Application Security Assessment.
Who are Hema Kumar's colleagues?
Hema Kumar's colleagues are Teresa Easterling, Grete Hagen, Ian Macfarlane, Nathan Kofahl, Archana Divekar, Kamelia Davari, Andrew Sorensen.
Not the Hema Kumar you were looking for?
-
-
-
Hema Kumar
Techops Noc Engineer @Gainsight | Linux | Aws | Sumologic | Datadog | Xymon | Nagios | Jenkins | Rundeck | Kibana | TerraformHyderabad1gainsight.com -
2reznext.com, gmail.com
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial