About
Cloud Security Engineer with 3+ years of experience in securing cloud and enterprise environments through Zero Trust architecture, secure access controls, and proactive threat management. Specialized in Web Application Security using Cloudflare WAF and FortiWeb to protect against OWASP Top 10 vulnerabilities, application-layer attacks, and unauthorized access. Experienced in implementing secure access solutions using Zscaler ZIA and ZPA to enforce identity-based access and reduce organizational attack surface.
Skills & Expertise (11)
Work Experience
Cloud Security Engineer
Emerson
Jan 2023 - Present
Administered and managed Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) to provide secure internet and private application access based on Zero Trust principles. Configured access policies, URL filtering, SSL inspection, and application access controls to prevent unauthorized access and strengthen security posture. Monitored user traffic, investigated security events, and supported secure remote access to enterprise applications while reducing exposure to external threats. Configured and managed WAF policies using Cloudflare and FortiWeb to protect web applications from OWASP Top 10 attacks, bots, and malicious traffic. Implemented custom security rules, rate limiting, geo-blocking, and IP reputation filtering to enhance application security. Monitored WAF logs, analyzed attack patterns, and fine-tuned security policies to ensure maximum protection and application availability. Monitored and governed cloud application usage using CASB solutions to ensure secure access, data protection, and compliance with organizational security policies. Identified shadow IT, enforced access controls, and implemented security policies to prevent unauthorized data access and strengthen cloud security posture. Implemented cloud security controls including session monitoring, access governance, and policy enforcement to protect sensitive organizational data. Utilized Splunk for log monitoring, event correlation, and security analysis to detect potential threats and abnormal activities. Performed vulnerability assessments using Nessus to identify security weaknesses across servers, applications, and network infrastructure. Analyzed vulnerability reports, prioritized risks based on severity, and coordinated with relevant teams for remediation and mitigation. Conducted regular vulnerability scans and validation to ensure compliance with organizational security standards and reduce security risks. Supported implementation and maintenance of security controls aligned with compliance standards and organizational security policies. Assisted in audit preparation, documentation, and validation of security controls to ensure adherence to regulatory and internal compliance requirements. Ensured security best practices were followed across cloud and application environments to maintain compliance readiness. Monitored security alerts and logs using Microsoft Sentinel, performed incident analysis, and supported threat detection and response activities. Created and managed analytics rules, investigated security incidents, and assisted in improving visibility across cloud and enterprise environments.
Education
B.Tech in ECE - JNTU-Kakinada
- · Afghanistan
Certifications
Zscaler ZIA Administrator
· 2026
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
H1B
Relocation
Open to Relocation
Skills (11)
Click a skill to find developers with the same skill