Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic

KARTHIK NUTHALAPATI

Amsterdam

Summary

Seasoned Information Security Officer with 14+ years of expertise in security operations, compliance, risk management, and incident response. Experienced in securing enterprise environments by implementing robust security frameworks and policies. Proficient in handling McAfee products (EPO, VSE, ENS, MOVE AV agentless, HIPS), Forcepoint Proxy, Forcepoint DLP, Carbon Black Application Control (Bit9), CrowdStrike EDR, and Nessus Tenable Hardening and Vulnerability Tool. Adept in ITIL processes, customer handling, team leadership, and regulatory compliance (GDPR, HIPAA, PCI-DSS). Proven ability to drive security initiatives, mitigate risks, and enhance the security posture of organizations.

Overview

14
14
years of professional experience

Work History

Manager - Projects

Cognizant Technologies
08.2016 - Current
  • Develop and enforce enterprise-wide security policies using Microsoft E5 Security tools.
  • Develop and enforce enterprise-wide security policies and best practices
  • Oversee risk assessment, compliance audits, and security incident management
  • Investigating, containing and remediating cyber security incidents
  • Based on incidents identify the security gaps and guide respective
    teams to configure the secure solution
  • Deploying and managing the Microsoft Defender EDR solution.
    Migrating from CrowdStrike EDR to MS Defender
  • Staying informed of cyber security developments and their impact to
    the network
  • Providing clear verbal and written updates to stakeholders throughout
    the incident lifecycle
  • Documenting cybersecurity incidents and reviewing incident reports
    Create roadmap and identify the gaps in Cybersecurity frameworks
    currently DORA (previously NIST)
  • Ensure events are being forwarded to Splunk SIEM log integration tool
    and maintain the coverage.
  • Lead security incident investigations and implement remediation strategies
  • Conduct security awareness training and develop security frameworks
  • Manage and optimize security products including Proofpoint Email Security, Carbon Black App Control, and CrowdStrike EDR
  • Ensure regulatory compliance with GDPR, HIPAA, and PCI-DSS standards

Senior Engineer

Wipro Technologies
07.2016 - 08.2017
  • Managed endpoint security solutions and conducted forensic investigations
  • Assisted in compliance audits and security policy enforcement
  • Deployed and monitored endpoint protection tools
  • Provided security advisories and incident response support
  • Developed and implemented endpoint security policies and procedures to protect organizational data.
  • Monitored security alerts and incidents, performing forensic analysis to identify threats and vulnerabilities.
  • Collaborated with IT teams to deploy and maintain endpoint protection solutions, ensuring compliance with security standards.

IT Security Engineer

Unitforce Technologies Consulting Pvt Ltd.
07.2015 - 06.2016
  • Transition and transformation of client's perimeter security devices to
    a new mode of operation
  • Designed and implemented security architectures aligned with business needs
  • Conducted security risk assessments and implemented mitigation strategies
  • Developed security baselines and compliance reports

IT Team Lead (Security & Infrastructure)

RCS Technologies
07.2012 - 06.2015
  • Developed and implemented IT security policies and incident response plans
  • Migrated systems to secure cloud environments
  • Led a team in maintaining secure IT infrastructure

System Engineer (Security & Support)

IMABABA Services & Solutions Pvt Ltd.
03.2011 - 06.2012
  • Provided security support and resolved system vulnerabilities
  • Performed security monitoring and log analysis
  • Assisted in implementing security solutions and incident response

Education

Bachelor of Engineering - Computer Science

Anna University
India
01.2010

Skills

  • Information Security Governance & Compliance
  • Risk Management & Threat Analysis
  • Security Incident Response & Forensic Analysis
  • CIS Benchmark Baseline Hardening
  • Microsoft Defender for Endpoint (MDE)
  • Microsoft Defender for Identity
  • Microsoft Purview DLP & Information Protection
  • CrowdStrike EDR
  • Nessus Tenable Hardening & Vulnerability Management
  • Carbon Black Application Control (Bit9)
  • McAfee EPO,VSE,ENS,Move AV Agentless, HIPS
  • SIEM/Log Analysis Tools - Splunk and AlienVault
  • Forcepoint DLP and Proxy
  • Regulatory Compliance (GDPR, HIPAA, PCI-DSS)
  • Security Awareness Training & Policy Development

Accomplishments

  • Enterprise Security Strategy: Developed security governance frameworks aligning with ISO 27001 and NIST standards.
  • Migration of Security Solutions: Led the migration of CrowdStrike Falcon EDR to MDE and McAfee EPO to CrowdStrike.
  • Implementation of Forcepoint Security Products: Configured Forcepoint DLP and Proxy, including policy management.
  • Security Awareness & Compliance: Conducted enterprise-wide security training to improve compliance adherence.
  • Automation & Process Optimization: Developed PowerShell scripts to automate security device health checks.

Timeline

Manager - Projects

Cognizant Technologies
08.2016 - Current

Senior Engineer

Wipro Technologies
07.2016 - 08.2017

IT Security Engineer

Unitforce Technologies Consulting Pvt Ltd.
07.2015 - 06.2016

IT Team Lead (Security & Infrastructure)

RCS Technologies
07.2012 - 06.2015

System Engineer (Security & Support)

IMABABA Services & Solutions Pvt Ltd.
03.2011 - 06.2012

Bachelor of Engineering - Computer Science

Anna University
KARTHIK NUTHALAPATI