suryaprakash nalluri
Photo Gallery
![]() |
suryaprakash nalluri

Additional Info
Job title of nominated professional (or team name) | Senior Vice President |
Company (where nominated professional or team is working) | CitiGroup |
Website | https://www.linkedin.com/in/spnalluri |
Company size (employees) | 30,000 or more |
Country | United States |
Headquarters Region | North America |
Overview
SuryaPrakash Nalluri is an industry-recognized Application Security Leader and innovator in DevSecOps and security automation, with over 18 years of experience in cybersecurity. He has pioneered security frameworks, driven enterprise-wide application security governance, and developed automated testing solutions that have reshaped modern software security practices.
As the inventor of three cybersecurity patents—including the Security Bot (US11763007)—he revolutionized vulnerability detection by integrating security directly into DevSecOps pipelines. His C1–C4 Vulnerability Assessment Model introduced a risk-based approach to security testing, optimizing efficiency and enhancing protection across complex application environments.
In addition to his technical achievements, SuryaPrakash is a committed mentor, thought leader, and speaker. He has published 30+ cybersecurity articles, contributed to peer-reviewed academic research, and judged top global hackathons, helping shape the future of cybersecurity talent.
Accomplishments
Innovator in Security Automation:
Inventor of three cybersecurity patents, including the Security Bot (US11763007), which transformed DevSecOps by embedding automated security testing—enabling early vulnerability detection and reducing security-related development costs.
Creator of Open-Source Testbeds:
Developed and enhanced the widely adopted Damn Vulnerable Thick Client Application (DVTA)—a benchmark open-source testbed used globally for training in thick client and API security.
Global Thought Leader, Author and Mentor:
He serves on the IEEE Privacy Curriculum Task Force and serves as an editor and reviewer for multiple cybersecurity journals. A published author, he actively mentors students and professionals on security-focused projects and contributes to global hackathons and conferences.