•Transitioned the BlackDuck scanning process from a static, ad hoc list to a dynamic, automated framework utilizing GitHub Actions, facilitating continuous scans throughout the day for elevated code security.
•Led the creation of an intuitive, React-based dashboard, offering real-time insights into scanned repositories, their statuses, and forthcoming scans, promoting a streamlined and proactive code security management approach.
•Effectively oversee and prioritize vulnerability reports on Bugcrowd, ensuring swift resolution of critical issues.
•Enhanced product security through meticulous reviews of Threat Models and Design Architecture, along with analysis of findings from SAST and DAST tools, optimizing the secure development life cycle.
•Coordinated third-party penetration tests, achieving a 20% decrease in identified vulnerabilities and a 30% acceleration in resolution time, contributing to bolstered system security and compliance.