Sandeep Kumar Singh Email and Phone Number
Sandeep Kumar Singh personal email
- Valid
Over 19 years of experience in the software industry involving security assessment, SDLC, security automation, and development. Expertise in managing and leading global security teams with over 10 years of experience in cybersecurity leadership roles.Expertise includes:- End-to-end security assessment, covering planning security review efforts, prioritization, execution, release decision, incident response, and resolution.- Managing global security teams.- Driving & enforcing Security Development Lifecycle practices across the organization.- Launching & Setting up the Security Champions Program.- Experience in collaborating with B2B partners and vendors on security-related topics.- Well-versed in threat modeling, CVSS scoring, security automation, PSIRT, and code review.- Mentoring and grooming team members on security review.- Pentesting and Security Development Lifecycle (SDL).- Researching new and emerging attack vectors.- Conducting training and tech talks on security-related topics.- Proficient in applying adversarial thinking.- Planning and leading security teams.- Security automation.Certifications: ■ Cloud Security Alliance's CCSK (Guidance v3.0), ■ CEH, ■ CompTIA Security+, ■ Stanford's Software Security Foundations and more.
Factset
View- Website:
- factset.com
- Employees:
- 14462
-
Director, Product Security And Vulnerability ManagementFactsetBengaluru, Ka, In -
Director, Application & Product SecurityFactset Aug 2022 - PresentNorwalk, Connecticut, UsAs the Director of Application & Product Security at FactSet, I lead comprehensive security assessments to ensure the integrity and security of all our products and applications. This role requires strategic oversight of the entire security lifecycle, encompassing everything from initial planning to incident resolution.Responsibilities:• Direct security assessment initiatives for FactSet’s products and applications, ensuring robust defenses against potential threats.• Implement and manage end-to-end security processes including planning, prioritization, execution, release decisions, incident response, and resolution.• Oversee security automation and secure development lifecycle protocols to proactively address security concerns.• Conduct vendor reviews to evaluate and ensure compliance with security standards, enhancing the security posture of third-party engagements.• Collaborate closely with clients to align security strategies with their specific requirements and to fortify mutual cybersecurity objectives.• Provide leadership and strategic direction in all areas of application and product security. -
Security Researcher & Geo Lead India/ApacMcafee Apr 2009 - Aug 2022San Jose, California, UsManaged Security Assessment for McAfee's Consumer Products. Responsible for E2E Security Assessment covering planning security review efforts, prioritization, execution, release decision, incident response, and resolution.• Responsible for driving Security Assessment efforts of all Consumer Releases (E2E ownership including planning, prioritization, execution, and release decision)• Managing efforts of the Security team, responsible for enforcement of Security Development Lifecycle (SDL) across the organization• Responsible for vendor evaluation and engagement with B2B partners for security-related collaborations• Responsible for Secure Design Reviews & Threat Model Creation• Responsible for developing tools & PoCs for security vulnerability assessment• Responsible for automation of Security Tools and Tests• Responsible for training & mentoring co-workers on Secure Product Development• Responsible for handling PSIRT issues, writing Security Bulletins, CVSS scoring and design of security vulnerability fixes.• Well versed in Static Analysis, Dynamic Analysis, Security Code review and defect fixing.• Experienced in Third-Party Library evaluation for known vulnerabilities.• Expertise in Fuzzing using Peach fuzzer, Owasp ZAP, COM fuzzer, Defensics, etc• Expertise in DLL Injection, Insecure DLL Loading for horizontal and vertical privilege escalation.• Expertise in Web Application Security Testing for Web Platform Projects using tools like OWASP ZAP, Burp Suite, NetSparker, Fiddler, etc.• Experienced in Manual review for OWASP Top 10 Vulnerabilities like Injection attacks, XSS, CSRF, XML Injection and Session Management, etc.• Experienced in Product Hardening by designing apt migrations and Least privilege implementation.• Pentesting -
Senior Automation EngineerSap Labs 2007 - 2009Walldorf, Bw, DeProject: UI Patterns in Visual Composer Netweaver----------------------------------------------------------UI patterns is SAP’s web-based tool integrated with Netweaver.This tool ensures a unified layout of Web Reporting across all applications and easy creation and maintenance of Web Applications.My Responsibilities:--------------------------------• Automation of the Regression tests & New feature tests using QTP 9.1• Development of Automation Test Framework. • Development of Plug-ins using WebDynPro & JAVA.• Computing the Code Coverage using Emma tool. • Extensive maintenance of all the SAP J2EE Application Servers for Local development• Test Coordinator and Mentor for the Offshore Testing Center, Cognizant • Mentoring new joiners and giving product-specific training.• Provide technical consultation to the other integration projects -
Software EngineerNess Technologies 2005 - 2007New York, Ny, UsHuman Inference is the European market leader in data quality solutions with a focus on high-quality solutions developed for large databases and critical systems.My Responsibilities:------------------------------------At Ness, I primarily worked as an Automation Engineer. I was also involved in UI development using Java. Prime responsibilities were:• GUI Development using Java• Writing Shell scripts for unit testing & performance testing. (AWK/SED) • Daily Interaction with the onsite team for discussion involving requirements specification, test planning & issue resolution.• Development of Demo Project along with demo database design.• Timely and accurate escalation of problems. • Mentoring new joiners and giving product specific training's.
Sandeep Kumar Singh Skills
Sandeep Kumar Singh Education Details
-
Kumaon Engineering College, Almora UttaranchalComputer Science & Engg. -
Church School Beldih, Jamshedpur, TatanagarChemistry & Maths -
Church School Beldih, Jamshedpur, TatanagarScience+History Geography+ English
Frequently Asked Questions about Sandeep Kumar Singh
What company does Sandeep Kumar Singh work for?
Sandeep Kumar Singh works for Factset
What is Sandeep Kumar Singh's role at the current company?
Sandeep Kumar Singh's current role is Director, Product Security and Vulnerability Management.
What is Sandeep Kumar Singh's email address?
Sandeep Kumar Singh's email address is sa****@****ail.com
What schools did Sandeep Kumar Singh attend?
Sandeep Kumar Singh attended Kumaon Engineering College, Almora Uttaranchal, Church School Beldih, Jamshedpur, Tatanagar, Church School Beldih, Jamshedpur, Tatanagar.
What are some of Sandeep Kumar Singh's interests?
Sandeep Kumar Singh has interest in Social Services, Children, Economic Empowerment, Education, Environment, Poverty Alleviation, Disaster And Humanitarian Relief, Human Rights, Animal Welfare.
What skills is Sandeep Kumar Singh known for?
Sandeep Kumar Singh has skills like Test Automation, Security Testing, Security, Security Analysis, Test Planning, Pentesting, Threat Modeling, Testing, Agile Methodologies, Test Cases, Qtp, Manual Testing.
Who are Sandeep Kumar Singh's colleagues?
Sandeep Kumar Singh's colleagues are Sarala Kashipaka, Deepthi Priya, Prudvi M, Vanney Morato, Sambashivarao Narayana, Ujwal Kumar Godasu, John Michael Mojica.
Free Chrome Extension
Find emails, phones & company data instantly
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial