S
ping
dossier.sh — sat-portfolio
v1.0
// operator profile

A short field manual — not a résumé. If you want the structured version, jump to the mission log.

operator.idverified
S/S
field-ops
callsignSatyajeet Sendha
roleCloud & AI Security Consultant
tenure9+ years · since 2016
statusAVAILABLE FOR ENGAGEMENTS
modesblue · red · purple
$ cat /etc/operator/bio.txt

I design secure-by-default cloud and AI systems, then test them like an adversary would. Nine years in, embedded at FedEx, Finastra, KPMG, and Wipro — environments where a misconfiguration becomes a headline before the next standup.

Most of my work sits at the intersection of CNAPP, GenAI threat modeling, and the unsexy half of security: the operating model that keeps a posture program useful six months after launch, not just on demo day.

I think in controls and consequences. I write Python and Bash when a human shouldn't be doing the same task for the hundredth time. I break things on purpose, on platforms like HackTheBox, TryHackMe, and in CTFs, so the things I build hold up when someone else does the same.

Off the clock: chasing the next thing to learn, refusing to call LLM security a solved problem.

BASED IN
Hyderabad, India
REGIONS
APAC · EMEA · AMERICAS
FOCUS
Cloud + AI + Adversary sim
// system diagnostics

A live readout of the tools, platforms, and frameworks I lean on. Levels reflect depth of operational use, not just exposure.

sys.diag: okprocs: 8avg load: 88%
● all systems nominal

Cloud Platforms

96%
  • Azure
  • AWS
  • GCP
  • Oracle Cloud
module.loaded · cloud

CNAPP / CSPM / DSPM

95%
  • Wiz
  • Prisma Cloud
  • Aqua Security
  • Dig Security
module.loaded · cnapp

AI Security

88%
  • OWASP LLM Top 10
  • NIST AI RMF 1.0
  • MITRE ATLAS
  • RAG threat modeling
module.loaded · ai

DevSecOps

90%
  • Docker
  • Kubernetes
  • Terraform
  • Ansible
  • Jenkins
  • SonarQube
  • Trivy
  • Prowler
module.loaded · devsecops

Scripting & Automation

86%
  • Python
  • Bash
  • Power Automate
  • OpenAI / LLM APIs
module.loaded · script

Governance, Risk & Compliance

84%
  • GDPR
  • HIPAA
  • ISO 27001
  • PCI DSS 3.2.1
  • NIST CSF
module.loaded · gov

Blue Team / SecOps

90%
  • Azure Sentinel
  • MITRE ATT&CK mapping
  • Threat modeling
  • CVE triage
module.loaded · blue

Offensive Practice

72%
  • HackTheBox
  • TryHackMe
  • CTF
  • Adversary simulation
module.loaded · offense
// mission log

A reverse-chronological log of roles, with the work I'm proudest of and the numbers that came with it.

  1. since
    NOV 2024
    → now
    activeLEVEL: SENIOR 2GLOBAL · MISSION-CRITICAL

    Cyber Security Analyst — Senior 2

    @ FedEx
    • Built a GenAI Security Evaluation Framework covering model vulnerabilities and data-leakage risks for autonomous AI agents (Google AgentSpace POC).
    • Authored enterprise Secure Configuration Guidelines and Architectural Design Patterns for RAG-based and GenAI applications.
    • Engineered an automated Threat Modeling tool (Python + RAG + OpenAI + SSO) — replaced days of manual assessment with on-demand, high-fidelity risk profiles.
    • Drove the multi-cloud CNAPP rollout with Wiz across AWS, Azure, GCP, and OCI — moved the org from reactive scanning to context-aware, proactive risk posture.
    • Cut manual reporting time by 70% with a Power Automate workflow that aggregates Wiz alerts into a centralized remediation hub (100% visibility).
    • Authored the Wiz Operations SOP and a Multi-Cloud Health Check framework; runs daily integrity checks across all four cloud estates.
    • Daily CVE triage and Threat Advisory briefings for cross-functional product teams — focused, prioritized, actionable.
    engagement record·verified
  2. from
    OCT 2023
    → NOV 2024
    LEVEL: SENIOREMEA · FINTECH

    Data Governance & Privacy Engineer

    @ Finastra
    • Led the Dig Security rollout that now protects 3M+ sensitive records across 60+ Azure-based products.
    • Built and enforced cloud security policies aligned to GDPR and internal regulatory requirements.
    • Ran the technical CSPM/DSPM RFP assessment — feature, pricing, integration analysis — for the security tooling renewal.
    • Integrated CrowdStrike Falcon with the rest of the security stack and authored endpoint security policy.
    • Designed a product data security dashboard giving real-time visibility on data access, anomalies, and potential breaches.
    engagement record·verified
  3. from
    MAR 2022
    → OCT 2023
    LEVEL: LEADGLOBAL SOC

    Global-SOC Team Lead (Assistant Manager)

    @ KPMG India
    • Owned Prisma Cloud CSPM coverage — continuous monitoring, posture reporting, and trend analysis.
    • Container hardening at scale: Dockle + Trivy for image analysis across CI/CD pipelines.
    • Used Prowler to find and remediate cloud misconfigurations before they became incidents.
    • SonarQube for code-quality gates; MITRE ATT&CK for threat-detection coverage evaluation.
    • Implemented 50+ critical security controls across Azure with Prisma Cloud — materially reduced vulnerability exposure.
    engagement record·verified
  4. from
    DEC 2015
    → MAR 2022
    LEVEL: SENIORAPAC · MULTI-CLIENT

    Senior Project Engineer

    @ Wipro Technologies
    • Deployed and operated Azure Sentinel: data connectors, logic-app playbooks that auto-isolate VMs on alert.
    • Built Azure Monitor alert rules and suppression logic for noise reduction.
    • Hardened Azure SQL with TDE and Always Encrypted; configured AD-integrated access.
    • Enabled Azure Defender and advanced threat protection; configured anti-malware extensions.
    • Mitigated live DoS and MITM attempts with custom detection and response playbooks.
    engagement record·verified
// operations / engagements

Hover or tap a card to request access. Five engagements, the ones that had the most measurable impact.

TIER-1 // GENAI2024 — Present

GenAI Security Evaluation Framework

@ FedEx

A reusable framework to systematically assess model vulnerabilities, prompt-injection paths, and data-leakage risks in LLM-powered applications.

request access
access granted
stack
PythonRAGOpenAISSOVector eval suites
outcomes
  • Codified the trust boundaries and access controls for the Google AgentSpace POC.
  • Set the internal baseline for evaluating new GenAI features before they ship.

// Drives the Secure Configuration Guidelines shipped org-wide.

AUTOMATION // AI-ASSISTED2024

Automated Threat Modeling Tool

@ FedEx

Internal tool that ingests architecture data via RAG + prompt engineering and emits threat models in a consistent, reviewable format.

request access
access granted
stack
PythonRAGOpenAISSOPrompt engineering
outcomes
  • Reduced manual assessment time while increasing finding accuracy.
  • Standardized threat-model output across product teams.

// Built to make threat modeling boring — in a good way.

MULTI-CLOUD // CNAPP2024 — 2025

Wiz Multi-Cloud CNAPP Rollout

@ FedEx

End-to-end deployment of Wiz across AWS, Azure, GCP, and OCI — plus the operating model (SOP, health-checks, alert workflow) to keep it useful.

request access
access granted
stack
WizAWSAzureGCPOCIPower Automate
outcomes
  • Multi-year roadmap from reactive scanning to context-aware, proactive risk posture.
  • Alert aggregation workflow — 70% reduction in manual reporting, 100% visibility into remediation.
  • Daily multi-cloud health checks codified into the Wiz Operations SOP.

// Process as much product as the product itself.

DSPM // AZURE2023 — 2024

Data Security Posture @ Scale

@ Finastra

Deployed Dig Security across 60+ Azure products to give the business real-time visibility into where sensitive data actually lives and who can reach it.

request access
access granted
stack
Dig SecurityAzureCrowdStrike Falcon
outcomes
  • 3M+ sensitive records now under continuous monitoring.
  • Instant visibility into data risk and exposure paths.
  • Custom dashboard driving data-protection decisions at the product level.

// If you can't see it, you can't protect it.

CSPM // AZURE2022 — 2023

50+ Cloud Security Controls Rollout

@ KPMG India

Designed and implemented 50+ critical security controls across the Azure estate using Prisma Cloud — with MITRE ATT&CK coverage validation throughout.

request access
access granted
stack
Prisma CloudAzureProwlerTrivySonarQube
outcomes
  • Significant reduction in vulnerability exposure across the estate.
  • Continuous container-image analysis baked into CI/CD.
  • Threat-detection tooling chosen and tuned against real-world ATT&CK scenarios.

// Coverage you can defend in a review.

// clearance & credentials

Verified across cloud, AI, and adversary frameworks. Grouped by issuing body.

PA

Palo Alto

2 certs
  • Cloud Security Engineer
  • Cyberforce Defender
MS

Microsoft

4 certs
  • Azure Security Engineer
  • Security, Compliance & Identity Fundamentals
  • Azure AI Fundamentals
  • Azure Fundamentals
AW

AWS

2 certs
  • Security Specialty
  • AI Practitioner
GC

Google Cloud

1 cert
  • Professional Cloud Security Engineer
MI

MITRE

3 certs
  • Cyber Threat Intelligence
  • Security Operations Center Assessment
  • Attack Fundamentals
verifiable on request · credly / vendor portals
// establish secure channel

Open to senior cloud / AI security roles, advisory engagements, and the occasional collaboration. Email is fastest.

channel.sh — handshake
tls 1.3 ✓
$ ping satyajeet.sendha
negotiating channel...
ready
status: ready