Debshikhar Das
Application Security | Infra Security | DevSecOps | Agentic AI | Threat Modeling | Zero Trust | Automation
- Role
- Devsecops Engineer at BNP Paribas CIB
- Location
- New York, NY, US
- LinkedIn followers
- 500 followers
About Debshikhar Das
I’m a Cybersecurity Engineer specializing in vulnerability management, AI-driven automation, and secure infrastructure orchestration. I design agentic AI systems that turn fragmented vulnerability data into real-time, contextual, actionable insights, helping organizations stay ahead of evolving threats. I’ve built:• 🤖 AI-powered RAG agents (LangChain + LangGraph + Vector DBs) that contextualize data from scanners and endpoints. With dual flexibility (API-driven retrieval or SQL), these agents deliver 60% faster triage and more accurate remediation guidance.• Patch intelligence pipelines & obsolescence dashboards enriched with CVE feeds, providing a single source of truth for remediation teams while cutting manual investigation time.• Automated workflows using FastAPI, Streamlit, REST APIs, WebSockets, and Autosys—seamlessly integrating into enterprise environments. Beyond AI-driven vulnerability management, I’ve:• Enhanced DevSecOps pipelines (SAST, SCA, DAST, container security) within Jenkins, embedding automation across CI/CD workflows.• Strengthened privileged access security with CyberArk and simplified infrastructure automation via Ansible—reducing overhead while improving compliance.• Delivered secure SDLC frameworks & threat modeling accelerators, lowering risk exposure and enabling agile, secure delivery. How I Create Value• Future-Proofing → Embedding agentic AI into workflows, turning static playbooks into adaptive, intelligence-driven defense.• Efficiency & Scale → Reducing time-to-triage and strengthening compliance posture via automation-first practices.• 🧩 End-to-End Skillset → From infrastructure defense to AppSec to AI integration, bridging silos with scalable solutions.• 🤝 Collaboration → Partnering across engineering, security, and operations to deliver resilience at scale. Core Technical Skills AI & Automation: RAG, LangChain, LangGraph, Vector DBs, LLMs Security: Vulnerability Management, AppSec, Privileged Access (CyberArk) Engineering: FastAPI, Streamlit, REST APIs, WebSocket, Angular, Autosys CI/CD & Automation: Jenkins, Ansible, Bitbucket, PyCharm, OpenSearch Data Enrichment: CVE Integration, Patch Intelligence, Obsolescence Dashboards I’m a future-ready AI + Security engineer, enabling organizations to scale, automate, and evolve their vulnerability management and DevSecOps practices—shifting from reactive defense to proactive, AI-driven resilience.
Experience
Devsecops Engineer
Jul 2024 — Present · NY, US
Designed and deployed an AI-powered RAG agent that vectorized vulnerability data from Nexpose, Tanium, and other sources into a vector database; enabled remediation teams to query insights via natural language, with dynamic flexibility to pull from APIs or construct SQL queries, improving response time and decision accuracy by 60%.• Engineered automated pipelines integrating patch and vulnerability intelligence into the bank’s internal vulnerability obsolescence and patch management platform, enhancing remediation prioritisation and reducing manual triage efforts by approximately 30%.• Developed a secure, Angular-based documentation portal using Docusaurus for controlled management of vulnerability obsolescence and patching processes, accelerating team onboarding by approximately 40%.• Orchestrated a high-integrity migration strategy from legacy JIRA tracking to the bank’s internal vulnerability platform, implementing data validation pipelines and audit trails to uphold data integrity and compliance.• Integrated enriched Red Hat CVE remediation intelligence, including CVSS scoring and exploit indicators, into the platform, facilitating risk-prioritised remediation and achieving ~95% SLA compliance on critical vulnerabilities.• Orchestrated and operationalised a real-time obsolescence tracking system fed into OpenSearch, enabling predictive identification of end-of-life components and driving proactive patch planning.• Laid the foundation for agentic AI adoption in vulnerability workflows to automate queue updates, prioritisation, and predictive remediation timelines informed by exploitability trends and historical data.
Education
Stevens Institute of Technology
Master of Science - MS, Cyber Security
Amity University Kolkata
Bachelor of Technology (B.Tech.), Computer Science
2015 — 2019
Skills
- Orcad
- Microsoft Office
- Tcp/Ip
- Autocad
- Microsoft Excel
- Powerpoint
- Java
- C
- Python
- C++
- Matlab
- Microsoft Word
- Project Management
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.