Kishore Reddy
Cloud Security Engineer @CyberArk
Signup · Get unlimited contacts
WORK HISTORY
Cloud Security Engineer @CyberArk
Houston, TX, US
Project: Multi-Cloud Security Hardening & Compliance AutomationLed end-to-end security architecture and DevSecOps enforcement across AWS and Azure for enterprise workloads at scale. Focused on hardening identity, network, and runtime layers while driving compliance automation and threat visibility.Enforced least-privilege access using AWS IAM, Azure AD, and Cognito with MFA, OAuth2.0, and SAML embedded into multi-cloud identity frameworks.Hardened cloud perimeters with AWS Security Groups, NACLs, Azure Firewall, and WAF, blocking untrusted ingress/egress and enforcing segmentation.Integrated Prisma Cloud CSPM and Wiz to detect misconfigurations and compliance drift across CIS, NIST 800-53, and CSA CCM baselines.Secured containers via Prisma CWPP, Aqua Security, and Sysdig, embedding image scanning and runtime defense into EKS and AKS clusters.Centralized secrets with AWS Secrets Manager, Azure Key Vault, and Vault, embedding secret injection into Terraform and Kubernetes deployments.Managed encryption posture with KMS, HSM, and automated key rotation for cloud-native storage, DBs, and queues.Operationalized CIEM to audit and remediate overprovisioned IAM/RBAC roles across tenants.Automated threat detection using GuardDuty, Wiz Attack Pathing, and Sentinel to surface identity misuse, lateral movement, and data exposure.Built hardened Terraform modules with OPA Rego, Azure Policies, and SCPs to enforce “security-by-default” in CI/CD.Engineered remediation flows with Lambda, Logic Apps, and Config Rules to enforce tagging, encryption, and quarantine policies.Applied OPA Gatekeeper and Kubernetes PSPs to block insecure workloads and restrict privileged container access.Delivered executive dashboards visualizing CSPM, CIEM, CWPP, and runtime alerts for leadership and audit teams.Tools: AWS, Azure, KMS, Key Vault, Prisma Cloud, Wiz, Terraform, Vault, CWPP, CIEM, OPA, EKS, AKS, WAF, Sentinel, Bash, Python
EDUCATION
Osmania University
Bachelor's degree, Computer Science
ABOUT KISHORE REDDY
I build secure, durable cloud-native systems thinking not about visibility—but survivability. While other teams establish dashboards and alerting, I ensure architectures that assume compromise, contain damage, and quickly bounce back.I recently worked with:Constructing kill-switch patterns for fast privilege revocationGraph-based IAM modeling for identifying privilege escalation pathsGitOps pipelines for automated configuration drift healingCommit-time entropy checks to catch weak secrets earlyIncorporating threat modeling into sprint cycles, instead of just into auditsI believe cloud security isn\'t just about hardening—it\'s about engineering systems that can adapt and withstand real-world failure.Open to the exchange of ideas with like minds focusing on security in modern environments. Contact me.
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.