Kishore Reddy

Cloud Security Engineer @CyberArk

Jersey City, NJ, US
MOBILE NUMBERS
+91 *********19

Signup · Get unlimited contacts

WORK HISTORY

Dec 2024 — Present

Cloud Security Engineer @CyberArk

View department →

Houston, TX, US

Project: Multi-Cloud Security Hardening & Compliance AutomationLed end-to-end security architecture and DevSecOps enforcement across AWS and Azure for enterprise workloads at scale. Focused on hardening identity, network, and runtime layers while driving compliance automation and threat visibility.Enforced least-privilege access using AWS IAM, Azure AD, and Cognito with MFA, OAuth2.0, and SAML embedded into multi-cloud identity frameworks.Hardened cloud perimeters with AWS Security Groups, NACLs, Azure Firewall, and WAF, blocking untrusted ingress/egress and enforcing segmentation.Integrated Prisma Cloud CSPM and Wiz to detect misconfigurations and compliance drift across CIS, NIST 800-53, and CSA CCM baselines.Secured containers via Prisma CWPP, Aqua Security, and Sysdig, embedding image scanning and runtime defense into EKS and AKS clusters.Centralized secrets with AWS Secrets Manager, Azure Key Vault, and Vault, embedding secret injection into Terraform and Kubernetes deployments.Managed encryption posture with KMS, HSM, and automated key rotation for cloud-native storage, DBs, and queues.Operationalized CIEM to audit and remediate overprovisioned IAM/RBAC roles across tenants.Automated threat detection using GuardDuty, Wiz Attack Pathing, and Sentinel to surface identity misuse, lateral movement, and data exposure.Built hardened Terraform modules with OPA Rego, Azure Policies, and SCPs to enforce “security-by-default” in CI/CD.Engineered remediation flows with Lambda, Logic Apps, and Config Rules to enforce tagging, encryption, and quarantine policies.Applied OPA Gatekeeper and Kubernetes PSPs to block insecure workloads and restrict privileged container access.Delivered executive dashboards visualizing CSPM, CIEM, CWPP, and runtime alerts for leadership and audit teams.Tools: AWS, Azure, KMS, Key Vault, Prisma Cloud, Wiz, Terraform, Vault, CWPP, CIEM, OPA, EKS, AKS, WAF, Sentinel, Bash, Python

EDUCATION

N/A

Osmania University

Bachelor's degree, Computer Science

ABOUT KISHORE REDDY

I build secure, durable cloud-native systems thinking not about visibility—but survivability. While other teams establish dashboards and alerting, I ensure architectures that assume compromise, contain damage, and quickly bounce back.I recently worked with:Constructing kill-switch patterns for fast privilege revocationGraph-based IAM modeling for identifying privilege escalation pathsGitOps pipelines for automated configuration drift healingCommit-time entropy checks to catch weak secrets earlyIncorporating threat modeling into sprint cycles, instead of just into auditsI believe cloud security isn\'t just about hardening—it\'s about engineering systems that can adapt and withstand real-world failure.Open to the exchange of ideas with like minds focusing on security in modern environments. Contact me.

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.