TechFusion 2025 - AI, Cybersecurity, and Emerging Trends in Computer Science

Karthikeyan Ramdass Profile

Karthikeyan Ramdass

Karthikeyan Ramdass

Biography

Karthikeyan Ramdass is a distinguished cybersecurity architect with over 18 years of experience securing mission-critical systems for Fortune 500 enterprises across the aviation, finance, automotive, and technology sectors. He has been instrumental in strengthening the cybersecurity posture of global leaders including Salesforce, Southwest Airlines, Wells Fargo, Morgan Stanley, Toyota Motors North America, AIG, Cognizant, and Deluxe Corporation, where his work has directly protected large-scale infrastructures, customer data, and operational continuity.

Specializing in application security, vulnerability management, secure architecture, and software supply chain defense, Karthikeyan has led the development and deployment of enterprise-grade security frameworks and CI/CD pipelines that embed protection throughout the software lifecycle. His deep expertise in SAST, DAST, SCA, penetration testing, and zero-day risk management has enabled organizations to achieve compliance with global standards such as NIST CSF, PCI DSS, and OWASP Top 10, while proactively defending against advanced cyber threats in complex, cloud-driven environments.

Research Interest

Abstract

Supply Chain Attacks - Open Source Threats & Mitigations: Software Composition Analysis (SCA) identifies and manages open-source and third-party components in software, detecting known vulnerabilities (CVEs), license risks, and outdated dependencies. As modern applications rely heavily on open source, unpatched libraries, malicious or typo-squatted packages, and dependency confusion attacks pose major threats. SCA scans generate detailed reports, including CVE severity, license compliance, and recommended remediation. Continuous monitoring and SBOM (Software Bill of Materials) updates ensure visibility across the software supply chain. Integrating automated SCA into CI/CD pipelines helps organizations quickly detect risks, maintain compliance, and strengthen resilience against open-source and supply-chain-based cybersecurity threats.