Skip to content
View vinayb-devsecops's full-sized avatar
  • Hyderabad, India
  • Joined Jun 10, 2026

Block or report vinayb-devsecops

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
vinayb-devsecops/README.md

Hi, I'm Vinay Butty

Senior Product Security Engineer | Security Platform Builder | DevSecOps

Building security platforms, AI-assisted security operations, secure software delivery processes, and security governance frameworks for enterprise products.

About Me

  • 7+ Years in Cybersecurity, Product Security, and DevSecOps
  • Secure SDLC and Vulnerability Management Program Ownership
  • Product Security Engineering for DNS, DHCP, IPAM, ADC, Discovery, and Portal Platforms
  • Security Platform Development and Automation
  • Security Governance and Compliance Programs
  • Customer Security Assurance and Security Assessments
  • Application Security, Threat Modeling, and Detection Engineering

Security Program Ownership

Experience building and operating security capabilities across:

  • Secure SDLC Programs
  • Product Security
  • Vulnerability Management
  • Security Governance
  • Customer Security Assurance
  • Security Advisory Management
  • Threat Modeling
  • Security Platform Engineering
  • AI-Assisted Security Operations

Focused on enabling engineering teams to ship securely while improving visibility, automation, governance, and risk management across the software development lifecycle.

Flagship Security Platforms

Security Command Center

Centralized Security Operations, Governance, Risk, Compliance, and Executive Reporting Platform providing visibility into security posture, risk exposure, compliance readiness, customer security assurance activities, and security program health.

OpenSentinel

AI-Assisted Vulnerability Intelligence and Security Operations Platform supporting vulnerability intelligence collection, risk classification, security analytics, advisory workflows, governance reporting, and executive visibility.

Pipeline Guardian

DevSecOps Security Platform integrating security scanning, release gates, vulnerability validation, remediation workflows, and security policy enforcement across CI/CD pipelines.

AttackMapper

Detection Engineering and MITRE ATT&CK Coverage Platform enabling ATT&CK coverage analysis, detection mapping, threat hunting support, monitoring gap identification, and security operations reporting.

DDI Security Lab

Product Security Platform focused on DNS, DHCP, and IPAM security assessments, detection engineering, threat hunting methodologies, attack simulations, and security validation.

Covenant Lite

Infrastructure Security Platform delivering infrastructure provisioning, security baseline enforcement, hardening automation, environment validation, and operational readiness workflows.

Security Blueprints

Security Governance Platform providing Secure SDLC frameworks, vulnerability management lifecycles, threat modeling methodologies, security advisory workflows, governance models, and security program operating procedures.

AI-Assisted Security Operations

Building AI-assisted workflows for:

  • Vulnerability Intelligence
  • Security Triage
  • Evidence Correlation
  • Risk Classification
  • Security Advisory Generation
  • Governance Reporting
  • Security Analytics

All security decisions remain human-reviewed and human-approved.

Core Competencies

Security Engineering

  • Product Security
  • Vulnerability Management
  • Secure SDLC
  • Application Security
  • Threat Modeling
  • Security Architecture
  • Detection Engineering
  • Threat Hunting

DevSecOps

  • Jenkins
  • GitHub
  • GitLab
  • Semgrep
  • Snyk
  • Trivy
  • OWASP Dependency Check
  • GitLeaks
  • SonarQube

Technologies

  • Python
  • Flask
  • PostgreSQL
  • Linux
  • Docker
  • REST APIs
  • SQL

Security Governance

Experience supporting and operationalizing:

  • ISO 27001
  • NIST CSF
  • CIS Controls
  • SOC 2 Security Principles
  • Security Metrics and Reporting
  • Risk Management Processes

Current Focus

  • AI-Assisted Security Operations
  • Security Platform Engineering
  • Product Security Engineering
  • Vulnerability Intelligence Platforms
  • Security Governance Automation
  • Secure SDLC at Scale
  • Security Data Platforms

Certifications

  • Certified Ethical Hacker (CEH)

Popular repositories Loading

  1. vinayb-devsecops vinayb-devsecops Public

    Lead DevSecOps Engineer | Product Security | AI-Augmented Security Operations

  2. opensentinel opensentinel Public

    AI-Assisted Vulnerability Intelligence and Security Operations Platform

    Python

  3. covenant-lite covenant-lite Public

    Zero-Touch Security Infrastructure Orchestration Framework

    Shell

  4. attackmapper attackmapper Public

    Detection Engineering and MITRE ATT&CK Coverage Platform

    HTML

  5. pipeline-guardian pipeline-guardian Public

    DevSecOps Security Orchestration and Release Gate Platform

    HTML

  6. security-advisories security-advisories Public

    Product Security Advisories, Vulnerability Assessments, and Customer Security Response Frameworks