N

Novya Sharma

About

Detail

Bengaluru, Karnataka, India

Contact Novya regarding: 
work
Full-time jobs
Flexible work

Timeline


work
Job
school
Education
folder
Project

Résumé


Jobs verified_user 0% verified
  • JFrog
    Developer Support Engineer
    JFrog
    Aug 2024 - Jan 2026 (1 year 6 months)
    • Performed root cause analysis across distributed artifact infrastructure while maintaining SLA targets, resolving 250+ enterprise incidents involving repository management, authentication failures, replication and synchronization failures, artifact integrity issues, multiple package ecosystems (NuGet, NPM, PyPI, Docker, OCI, Helm, RPM, Maven, Hugging Face, Conan, Terraform), and CI/CD platforms and 3rd party tool integrations with Artifactory.
    • Diagnosed authentication trust boundary failures in SAML (Okta, Azure), LDAP, and scoped token systems, identifying misconfigured assertion endpoints, token expiry misalignment, and excessive permission exposure.
    • Supported production incident investigations involving CI/CD failures, in
  • Nokia
    DevOps Engineer Internship
    Nokia
    Sep 2023 - May 2024 (9 months)
    • Assisted in securing and managing CI/CD pipelines (Jenkins, GitLab), container orchestration (Kubernetes), and version management for 300+ deployments with 4 major releases.
    • Integrated SAST, SCA, dependency scanning, and container image security checks into Jenkins and GitLab CI pipelines using SonarQube, Black Duck, and JFrog Xray, enabling early vulnerability detection through automated policy gates and secure release workflows.
    • Collaborated across engineering, DevOps, and security teams to troubleshoot infrastructure issues, improve CI/CD security posture, and support release reliability across staging and production environments.
  • G
    Cybersecurity Intern
    Gurugram CyberCell
    Jun 2020 - Jul 2020 (2 months)
    • Hands-on with investigation tools for threat analysis and digital forensics.
    • Built 'Cyber Parental Control' project with keylogger & scraper features, improving monitoring accuracy by 40%.
Education verified_user 0% verified
  • TestDome
    Cybersecurity assessment
    TestDome
    Feb 2026
  • Udemy
    Google Cloud Security
    Udemy
    Jan 2026 - Apr 2026 (4 months)
    Self-paced course completed
  • TryHackMe
    DevSecOps Path
    TryHackMe
    Dec 2024 - Jul 2025 (8 months)
  • Nokia
    Purple Cybersecurity Shield Associate Level
    Nokia
    May 2024
  • ISC2
    ISC2 CC, Certified in Cybersecurity
    ISC2
    Mar 2024
  • V
    Master of Computer Applications
    VELLORE INSTITUTE OF TECHNOLOGY, VELLORE
    Sep 2022 - Jul 2024 (1 year 11 months)
    CGPA: 9.05
  • S
    CyberSecurity
    Swayam MHRD and CEC
    Feb 2022
  • I
    Certified Network Security Specialist
    ICSI, UK
    Oct 2021
  • Aviatrix
    Multi-Cloud Network Associate Certificate
    Aviatrix
    Apr 2021
  • Microsoft
    MTA: Security Fundamentals
    Microsoft
    Aug 2020
  • G
    Bachelor of Computer Applications
    Guru Gobind Singh Indraprastha University, New Delhi
    Aug 2019 - Jul 2022 (3 years)
    CGPA: 9.45
Projects (professional or personal) verified_user 0% verified
  • Personal Project
    Kubernetes Security Hardening
    Personal Project
    Jun 2026 - Current (5 months)
    Managing and Hardening Kubernetes workloads using RBAC, Network Policies, Pod Security Standards, admission controls, secure image deployment practices, and production troubleshooting of ImagePullBackOff, DNS, CrashLoopBackOff, and OOMKilled scenarios.
  • Personal Project
    Security Automation Toolkit
    Personal Project
    Jun 2026 - Current (5 months)
    Building Python and Bash automation for GitHub secret detection, IAM token auditing, CI/CD validation, repository security checks, dependency reporting, SBOM generation, and operational monitoring workflows.
  • Personal Project
    Cloud-Native Secure System
    Personal Project
    Jun 2026 - Current (5 months)
    Designing and deploying secure GCP infrastructure using Terraform with IAM least-privilege policies, infrastructure validation, secrets management, Kubernetes workload hardening, audit logging, and policy-driven security controls supporting secure cloud-native deployments.
  • Personal Project
    CI/CD Secrets & Access Hardening
    Personal Project
    Jan 2026 - Feb 2026 (2 months)
    Demonstrated CI/CD security anti-patterns (hardcoded secrets, over-privileged access) & hardened pipelines using GitHub Secrets, least-privilege permissions, & validation gates.
  • Personal Project
    Secure Artifact Supply Chain with Policy-Driven CI/CD
    Personal Project
    Nov 2025 - Jan 2026 (3 months)
    Built a secure GitHub Actions pipeline using scoped tokens, build integrity checks, Xray scanning, and controlled artifact promotion with JFrog Artifactory.
  • TryHackMe
    DevSecOps Security Labs on TryHackMe Platform
    TryHackMe
    Dec 2024 - Jul 2025 (8 months)
    Practiced secure SDLC concepts including CI/CD security, dependency management, secrets management, Terraform security validation, and container security through hands-on DevSecOps labs and simulated attack scenarios.