Vi Krant Puranik: Contact Profile
Vi Krant Puranik: Contact Profile
Contact Profile
Experienced Techno-functional leader with a continuous learning attitude, having 13
(+91) 7768867678 years of experience & leading a multidisciplinary security team. Skilled in securing SaaS
& On-prem environments with focus on Cloud Security, Container/K8s Security,
puranik.vikrant@gmail.com DevSecOps, Security Architecture, Security Operations etc.
Professional Experience
B6/102, Alcon Renaissant,
Kharadi, Pune, MH 411014
MANAGER-CLOUD SECURITY OPERATIONS AUG 2020
TRACELINK,INC – Pune, MH – Present
linkedin.com/in/vikrant-
puranik-cissp-b9544229 Established the India cloud security & corporate security team, currently leading
and managing the cloud security function and reporting to CISO.
Develop and maintain security strategy and goals in line with Business for
Education Tracelink’s SaaS environment.
Regularly assess KPIs for security, prepare data-points for Management Review
(Jun 2011) meetings.
Bachelor of Engineering in Implemented and operationalized the various cloud-native security services such
as GuardDuty, SecurityHub, Config, Inspector etc. for the workloads hosting SaaS
Computer Science,
applications.
Nagpur University
Implemented cloud security posture management (CSPM) to identify insecure
– Nagpur, MH configurations, compliance risks & track vulnerable assets in cloud environment.
Undertaken various security initiatives as IAM policies fine-tuning, K8S RBAC,
granular firewall rules for egress/ingress traffic, best practices for security logging
Key Skills Implemented in-house security observability tooling on AWS and integrated
logging of various cloud native security services.
Cloud Security(AWS) Implemented tooling and operationalized process for conducting vulnerability
assessment against cloud workloads such as EC2 servers, Container Images.
Container Security Operationalize “Infrastructure-as-Code” (Terraform, Helm charts) security
scanning & integrated the same with Jenkins CI/CD Infra pipelines.
Security Architecture/Reviews Regularly participate in new systems design & architecture (HLD, LLD) review
discussions to ensure security is “baked” in the system.
Vulnerability Management Partner with DevOps, CloudOps and SRE for DevSecOps strategy.
Implemented kubernetes security controls such PSP, service-mesh, control-plane
Security Operations security logging & worker-nodes hardening in Microservices environment.
Stakeholder for ISO 27001 & SOC 1/2 compliance and part of the ISO Internal
Cyber Security Frameworks
advisory team for ensuring proper controls are implemented.
(NIST 800-53, MITRE, CSA CCM)
Participate, represent Cloud-Sec in the Third-party Risk assessment & Tracelink’s
DevSecOps, IaC Security customer audits.
Microservices: Security Deputed as Single Point of Contact (SPOC) for SIEM administration at client
location.
Involved in the end-to-end SIEM implementation, upgrade & migration activities.
Personal Details Integration of various log sources such servers, network devices, security devices
and critical applications with SIEM.
Date of Birth: 11-Oct-1989 Configuring, modifying, fine-tuning correlation rules to identify suspicious
activities in the client network by means of security alerts
Nationality: Indian Configuring dashboard and ad-hoc reports according to client requirements
Update NIPS signatures and whitelist IPs on the client network
Marital Status: Married Blocking the unwanted, malicious websites and creating the user group policies on
Websense proxy.
Visa Status: Valid US B1/B2 Visa Preparing, updating SOP document for security tools
Performing active role and work with incident management team during security
incident for investigating the incident root-cause
Contribute in the preparation of root-cause analysis (RCA) report of security
incident