Devendra Turkar is a Staff Software Engineer with over a decade of professional experience and a strong track record in cloud-native security and backend systems. He has progressed from intern roles to technical lead and staff engineer positions at Aqua Security, contributing hands-on to Kubernetes controllers, admission controllers, and vulnerability scanning features using Trivy. Proficient in Go, Node.js, PostgreSQL, Redis and containerized architectures, he pairs microservices and REST API expertise with practical DevOps skills like Docker and Azure KeyVault. His open-source contributions to high-profile projects such as kube-bench and Starboard demonstrate a focus on security hardening, FIPS compliance, and improving robustness of audit/config handling. Based in Bengaluru, he blends startup agility with enterprise experience from Dell EMC and NetApp, and often bridges engineering and security concerns to deliver production-ready cloud-native tooling.
11 years of coding experience
9 years of employment as a software developer
Master of Technology (M.Tech.) Information Technology, Master of Technology (M.Tech.) Information Technology at International Institute of Information Technology, Bangalore
Bachelor of Technology (B.Tech.) Computer Science, Bachelor of Technology (B.Tech.) Computer Science at Walchand College of Engineering,Sangli
Superseded by https://github.com/aquasecurity/trivy-operator
Role in this project:
Backend & DevOps Engineer
Contributions:40 reviews, 8 commits, 24 PRs in 6 months
Contributions summary:Devendra contributed to the Starboard project by implementing features and refactoring code related to vulnerability scanning and configuration auditing. They worked on excluding resources used for leader election from config audits and refactored code to pass a client.Object instead of PodSpec to the vulnerabilityreport.Plugin, preparing for future development. Additionally, the user implemented filesystem scanning capabilities using Trivy, which required scheduling scan jobs on the same node as the scanned application and added the option to run vulnerability scan jobs in workload namespace.
Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark
Role in this project:
Security Engineer
Contributions:17 reviews, 7 PRs, 18 comments in 2 years 1 month
Contributions summary:Devendra focused on enhancing the security and robustness of the kube-bench project by addressing several bug fixes related to audit configuration file handling. They improved error handling, particularly when config files are missing or encountering errors during execution, ensuring correct behavior and preventing false negatives. They also contributed to the addition of FIPS compliant images and updated the Go version, indicating a focus on security compliance and project maintenance.
cis-securitydefinedsecuritykube-benchopenshift
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.