- Specialized in Payments (Wealth & Cash Management) — redesigned backend systems to improve transaction processing efficiency.
- Implemented OAuth 2.0 Resource Server with Client Credentials and JWT to secure backend applications handling financial data.
- Executed SAST/DAST scans (Checkmarx) in a DevSecOps pipeline, remediating critical/high-severity findings pre-release.
- Implemented SSO using SAML and OIDC for enterprise application integration with Azure EntraID.
- Developed and enforced API security policies via Apigee, including rate limiting, threat protection, and OAuth token validation.
- Implemented CI/CD automation using Jenkins, UrbanCode, and GitHub Actions.
- Used Java 17 and Spring Boot/Security to optimize core functionality — collections, security, and concurrency.
- Used Apache Camel for Kafka-based interservice communication; built Elastic Index/Logstash pipelines for payments event tracking.
Environment: Java 17, Apache Camel, Spring, Hibernate, Kafka, IBM UCD, JFrog, Nexus, Checkmarx, Prometheus, Grafana, Dynatrace, AKS, Apigee, Swagger, SAML/OIDC, IAM, ElasticSearch, Kibana, Logstash, Azure SQL, GitHub Actions, Azure Key Vault, OpenShift