Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
 
Contact Information
Name: sriram sarma
Email: sriramakrishna.sarma (at) gmail (dot) com [email concealed]
Location: Chennai, Tamil Nadu, India
Resume
Position/Title: Application Security Architect
Resume: Sriramakrishnan S Sarma

Chennai, India.

+91-98840-69333

 Sarma.Sriram (at) Gmail (dot) com [email concealed]

Career Summary

I am a technology driven IT professional involved in design and development of products on the Microsoft Windows platform. I have over nine years of experience, with specialization in Single Sign-On systems, Authentication systems (Biometric and non-biometric) and Application Security product development. I have been awarded the ‘i-appreciate’ award for excellent leadership performance and appreciations from the client. I am in the process of preparation of the CISSP certification.

Technical Skill-set

Design Tools and Patterns Design Patterns and UML 2.0.

Requirement Tracking DOORs 7.3 (Basic Knowledge)

Project Status Tracking and Management MS Projects

Technology

Cryptography, Application Security and Authentication, Non-intrusive Single Sign-On using VC++ (6.0) and .NET framework 2.0 (using C#).

Biometric device interactions, enterprise SSL & PKI infrastructure.

Application Development for Palm PDAs (Palm OS 3.5.1) using Metrowerks Code Warrior (C++ with PALM APIs).

Multi threaded application development using VC++/C++/C#.

Win32 SDK, Microsoft .NET framework 2.0, C#.

Debugging and Memory tracking Compuware Bounds Checker v7.2.

Provisioning Tools IBM Tivoli and MIIS.

Internet Technology XML Web Services.

Identification Engine Identix’s ABIS engine for Biometric identification.

To Access my MCP transcripts:

Visit : https://mcp.microsoft.com/authenticate/validatemcp.aspx

Transcript ID :721761

Access Code :SarmaSriram2006



Experience Summary

Symantec Corporation

Senior Software Engineer October 2007 – Till Date

Individual contributor for Symantec’s NIS/Norton 360 Add-on pack and CRT.

i-flex Solutions Ltd/Inc.

Consultant (Project Lead) December 2003 – April 2007

Worked as a Project Lead in Single Sign-On, Authentication and access control based product development.

Lumley Technology

Analyst Programmer October 2002 – November 2003

Worked on a Life Insurance product as a senior developer.

Solution Centre Private Limited

Associate Consultant/ Senior Software Engineer October 2000 – September 2002

Worked on mobile ERP and insurance product development in the mobile platform (Palm OS).

PSI Data Systems

Software Engineer June 2000 – September 2000

Primary Development using Forte 4GL.

Advanced Technology Labs

Developer/ Technical Trainer February 1999 – June 2000

Worked on development of multi-tier application and as a technical trainer.

Project Classification by employer

Symantec Software and Services Pvt. Ltd.

Norton Add-on Pack for NIS/N360 (AOP v2.1)

The Norton AOP suite is a free download for customers using Norton Internet Security or the Norton 360 product suite. The AOP delivers important components that cater to Anti-spamming and provides Parental Control feature for monitoring and providing restricted internet access to users within the workgroup. The users are categorised as Adult, Teen or Child and their internet access policy is configured accordingly.

Role : Individual Contributor

My role as an individual contributor is to integrate the Parental Control feature with the Home Networking module that allows remote configuration of Parental Control settings across system in a workgroup. I am also involved in converting the application to ensure its MUI compatible. The product has been developed using C++, COM, Win32 API and supports WinXP and Windows Vista. Additionally, as a part of the CRT team, I am responsible for coming up with tools for various issues faced by customers of Symantec consumer products. The role also involves regular RnD that go as inputs for various Symantec product development and troubleshooting consumer issues in various Symantec Consumer Internet Security products.

i-flex Solutions Ltd/Inc.

Bionetrix Authentication Suite (BAS) (BNX Systems Corp./CitiGroup N.A.)

Bionetrix Authentication Suite addresses the issues of application access and identity management. These result in stronger and efficient method of user logon, dramatically streamlining access to critical front and back office applications. The BAS is a strong Authentication and Single Sign-On Application developed using C++/COM/STL/MFC/VB/Sockets/.NET 2.0 under the Win32 Platform (BNX 6.0 currently under design would be completely developed ground’s up using Microsoft’s .NET framework 2.0 and XML web services). Its storage options are in the form of MS SQL Server 2000 and MS ADS. The application provides strong authentication using complex authentication profiles and rules. It uses the services of both Biometric and Non-Biometric devices for authentication. The application also provides complex secret management facility with both legacy and modern applications. It provides authenticated Single Sign-On capability for win32, Web and TE applications. The communication between the server and the clients has the option of exploiting secured communication in the form of E-SSL by using SSPI interfaces and windows sockets.

Role : Project Lead

As a Consultant my responsibilities include development/Unit Testing/Defect fixing of new product features. I also participate in technical design of new features that would be included in the core product. Periodically, I also shoulder the responsibility of increasing the performance of the suite by checking the complete code base for memory leaks and code changes for improving performances.

Web Sign-On using Aladdin Knowledge System’s WSO eToken

The WSO is a Web Single Sign-On product used for providing Single Sign-On facility for web sites accessed using Microsoft’s Internet Explorer. The credentials of the user are stored on his private eToken and are accessed for providing SSO facility. The product enhancement involved development of the WSO component for Firefox in Windows and Linux. The primary development was carried out using C++ and PKCS #11 standards.

Role : Consultant (Design/Development)

My role as a Consultant involved designing the solution and providing technical inputs to the development and testing team involved in the project. One of the main goals of the project was to provide backward compatibility with the existing WSO product and transparently allow the user to use their credentials (stored in the eToken) across any browser in Windows and Linux. My prior experience in developing SSO/Authentication product was used to the maximum to develop the product and to ensure backward compatibility with the existing version.

Lumley Technology Pvt. Ltd.

Gennetic@ Life (eLITE) (Product development for Lumley Technology Ltd., Austraila through PWC Consulting (IBM), Australia)

This is a Life Insurance Product being developed to include capabilities of Client Management, Policy Maintenance & servicing, Product Maintenance & Marketing & Finance Management. Managed by PWC consulting (a division of IBM, Australia), the project is split into three major teams & was developed in UDS using Forté TOOL & deployed in the Win NT platform. A Unix/Solaris deployment is on the cards.

Role : Analyst Programmer

My responsibilities as an Analyst Programmer includes preparation of concise Technical Design for Policy, Reinsurance, Renewals, Distribution and Product definition sub-systems, execution of Technical Design & testing of peer code.

Gennetic@ General (Product development for Lumley Technology Ltd, Australia.)

This is a general insurance product being used/in the process of being implemented for clients like Australian Unity, AIIL, Lumley General Australia, Lumley General New Zealand & AMP Cobalt.

Role : Analyst Programmer

My role as a part of the data conversion team for the AMP Cobalt implementation is to port the existing data into the new product installation.

Solution Center Pvt. Ltd.

ecMobile – LIC Insurance Companion

This is a Palm application targeted towards insurance agents, by automating their interaction with their clients. The application includes premium tracking, policy updates, agent’s commission details and product features. Later the data stored in the PDA is synchronized with the back end data source.

Role : Senior Software Engineer

As a Senior Software Engineer/Associate Consultant, my responsibilities included participation in the design and development of the modules that made up this project. I also wrote the code that synchronizes the data between the PDA and the desktop back-end.

Premia on Palm (Product development for Solution Center Pvt. Ltd. With Insyst Tech. MEA)

This is a General Insurance application extended on Palm based PDAs. The features of the application include claims management & survey utilities with capabilities of taking photograph of the claim site & directly transferring the data into the back-end database hosted by an Oracle server.

Role : Team Leader (Development)

My responsibilities included the development of the core product on Palm and the interface to transfer the data between the PDA and the desktop.

Orion on Palm (Product development for Solution Center Pvt. Ltd. With Insyst Tech. MEA)

This is an extension of Orion, an ERP developed by Insyst Technologies/ ICICI InfoTech, into the PDA. Orion is a well-established product with more than 300 installations overseas. The first phase that is nearing completion extends Van Sales Person’s modules into the PDA. The software also incorporates features such as online Credit Control, Product Stock Status, Inter van Stock Transfer. The application also includes support for printing on all popular printers. The back-end database is provided by Oracle. The primary language used for development is C/C++/STL. The front-end application for this extension was designed and developed using VC++.

Role : Team Leader (Development)

My responsibilities included the collection of requirements from the client (requirement collection), preparation of the requirement document (SRS) followed by design of the product and development/testing/deployment of the software.

eSFA – Sales Companion (Product development for Solution Center Pvt. Ltd.)

This project acted as a development prototype for the sales/marketing team who could exhibit the capabilities of the PDA. This application is responsible for taking sales order entry, invoice information, stock details etc in the Palm, which is later synchronized to the desktop backend such as SQL Server v7.0. This application is targeted towards company’s dealing in Fast Moving Consumer Goods, in order to do away with their manual entry system.



Other Achievements

I have been awarded certificate of excellence by i-flex for my excellent performance and contribution to the team and the client.

Been highly appreciated by my clients for the quick turnaround time of critical issues being faced in the production site and for the design and execution of new enhancements to the product.

Recognition of by performance by my previous employer (i-flex Solutions Ltd) by awarding L1 (L1>L5) rating since the last couple of years.

 







 

Privacy Statement
Copyright 2007, SecurityFocus