Karthikeyan
Sadayamuthu

Principal Software Engineer | Cybersecurity, Trust Engineering & Cloud Security

Intro

What I am all about.

Principal Software Engineer specializing in cybersecurity, trust engineering, and cloud security. Expert in building resilient, FedRAMP aligned cloud platforms that strengthen national cybersecurity infrastructure. Passionate about delivering secure, transparent, and trust-driven technology solutions that advance cybersecurity and digital resilience.

Trust Engineering & Compliance: FedRAMP, NIST 800-53, Zero Trust, GDPR/CCPA

Cloud & Security: AWS Security, Google Security, Azure Security, Divvy, Blackduck, GitHub Advanced Security, Burp Suite, SentinelOne, CrowdStrike Falcon

Data & ELT: Apache Airflow (Astronomer), DBT, Fivetran, Snowflake, data pipelines

Languages & Automation: Python, SQL, Terraform, observability/alerting, Claude/LLM-assisted development

AWS & Azure Experience: AWS serverless services, Azure AD, App Proxy, SSO, Identity, Permission, certificate management

CI/CD & Platforms: Spinnaker, Jenkins, GoCD, Concourse, Cloud Foundry

Observability & Standards: Structured logging, metrics logging, Dynatrace, Grafana, CloudWatch metrics; building standards for observability

Alerting & Synthetic Monitoring: PagerDuty, synthetic canary, custom synthetic checker frameworks

Experience

I build the real value to.

Portfolio Image
Hide

Autodesk

Principal Software Engineer

Lead architect for Autodesk's Trust Data Platform and Trust Dashboard, supporting FedRAMP and Commercial environments. Designed end-to-end security frameworks aligned with industry standards.
Architected and implemented a FedRAMP compliant Trust Dashboard with secure data ingestion, transformation, and analytics; integrated third-party FedRAMP authorized vendor APIs using service-to-service authentication and least privilege IAM.
Built production-grade ELT pipelines using Apache Airflow (Astronomer), DBT, Fivetran, and Snowflake; implemented schema versioning, data quality checks, and automated compliance validations for trust and security telemetry.
Designed a Trust Engineering framework aligned with NIST 800-53, FedRAMP and Zero Trust principles, integrating real-time security signals from Snyk, Qualys, CrowdStrike, Orca, and Twistlock into normalized risk models.
Developed AWS native automation using Lambda, EventBridge, SQS, and CloudWatch; implemented observability and alerting pipelines for real-time trust posture monitoring.
Engineered a Consent & Permission Platform with APIs and event-driven workflows ensuring GDPR, CCPA, and FedRAMP privacy compliance; integrated with Salesforce, Adobe Marketo, and Alida.
Applied Claude (LLM) tooling for secure code review, architecture reasoning, threat modeling, and policy-to-code translation for NIST and FedRAMP controls.

Projects: Trust Data Platform, Trust Dashboard, Consent & Permission Platform

Stack: Airflow, DBT, Fivetran, Snowflake, AWS

Role: Principal Software Engineer

Dates: May 2022 – Present

Location: Ashburn, VA

Portfolio Image
Hide

Comcast Cable Communication

Senior Software Development Engineer

Cloud development and microservices on Pivotal Cloud Platform. Re-architected monolithic applications into twelve-factor apps; developed microservices with Spring Boot; integrated ELK Stack and Kafka for centralized logging; API caching with Redis and RabbitMQ; contract and load testing with rest-assured and Gatling; Gradle and GoCD for continuous delivery.

Project: Xfinity SalesPortal

Stack: Pivotal Cloud Foundry

Role: Senior Software Development Engineer

Dates: May 2016 – May 2022

Portfolio Image
Hide

The Home Depot

Senior Java Developer

As Cloud Developer, Involved in re-architecting monolithic architecture into twelve-factor application.
Developed mircoservice using spring boot on pivotal cloud platform.
Worked on Proper Exception Handling and Logging.
Used Xstream extensively for XML/JSON Marshaling and Un-Marshaling.
Followed Test Driven Development approach and Pair Programming.
Developed the front end user screens using HTML5, JavaScript and AngularJS for rich interface features.
Created JUnit test scripts used Mockito API for unit testing.
On-boarding and streamlining the process of on-board clients who are currently using the APIs.
Streamline the process of handling the outage and exceptional scenarios happen for the APIs in production.
Use of APIGEE to handle the authentication( oAuth 2.0) and on-boarding smoothly.

Project: ProXtra Rewards

Stack: Pivotal Cloud Foundry

Role: Senior Java Developer

Dates: May 2013 – May 2016

Portfolio Image
Hide

Tata Consultancy Services

IT Analyst

Designed and developed Java RESTful APIs in efficient manner as per industry standard by handing multiple interfaces in the design consideration.
Followed Test Driven Development approach and Pair Programming.
Developed user screens using HTML5, JavaScript and AngularJS for rich interface features.
Used Swagger UI to expose the RESTful APIs.
On-boarding and streamlining the process of on-board clients who are currently using the APIs.
Streamline the process of handling the outage and exceptional scenarios happen for the APIs in production.
Use of APIGEE to handle the authentication( oAuth 2.0) and on-boarding smoothly.

Client: The Home Depot

Project: MyInstall, ProDesk

Role: IT Analyst

Dates: Nov 2011 – May 2013

Portfolio Image
Hide

BNY Mellon

Application Developer

Full Stack Web Application Developer involved in developing the Advanced Web-Enabled Reporting Platform and Global Securities Auction Platform.

Project: ADR, SSC

Role: Application Developer

Dates: Sep 2010 – Oct 2011

Portfolio Image
Hide

Sybrant Technologies

Software Engineer

Full Stack Web Application Developer involved in developing Web-Enabled e-Learning and Content Management System for Renault Nissan.

Project: Takoma

Role: Software Engineer

Dates: Feb 2009 – Sep 2010

Projects

Side projects and initiatives.

OpenAstra
Hide

OpenAstra

The North Star for Autonomous Systems

OpenAstra focuses on AI and Large Language Models for autonomous systems, providing guidance and frameworks for intelligent, self-directed systems.

Type: Project

Dates: Jan 2025 – Present

Publications

White papers and research.

Patents

Innovation and IP.

Advisory

Open to help startups.

I'm open for volunteer advisory roles to help startups strengthen their security posture, onboard to the NIST framework, and adopt a Zero Trust architecture. I can also advise on responsible AI, AI security, and leverage my Trusted AI Safety Expert (TAISE) and Certificate of Competence in Zero Trust (CCZT) credentials to support your journey. If you're building something and want guidance on trust, compliance, or security design—reach out via Contact.

Contacts

Top