Utkarsh Tripathi

complaince  ·  open source  ·  software supply chain security

about

something about me

I'm a Software Engineer at RapidFort, focused on Container Security and Software Supply Chain Security. My work revolves around building and maintaining hardened, near-zero CVE open-source container images — the kind that enterprises and government agencies can actually trust in production.

That means a lot of CVE triage, vulnerability remediation, upstream dependency tracking, and securing build pipelines against compliance frameworks like STIG, FIPS, FedRAMP, CMMC, SOC 2, and NIS 2. It's unglamorous work most of the time, but there's something deeply satisfying about closing the last CVE on an image that ships to thousands of deployments.

I graduated from Thapar University in 2025 with a degree in Electronics and Computer Engineering. If you're working on anything in the container security or supply chain security space, I'm always up for a conversation.

my stack

  • Languages Go, JavaScript, Python, C/C++, Bash
  • Frontend SvelteKit, React.js, Next.js, TailwindCSS
  • Backend Node.js, Go, REST APIs, PostgreSQL, Redis
  • Security CVE triage, STIG, FIPS, FedRAMP, CMMC, SOC 2, NIS 2, SBOM
  • DevOps Docker, Kubernetes, Terraform, GitHub Actions, Jenkins
  • Cloud AWS, GCP, Firebase

RapidFort, Inc.

Jun 2025 – Present
Software Engineer • Full-time
  • Engineer and maintain near-zero CVE open-source container images compliant with STIG/FIPS standards for FedRAMP, CMMC, SOC 2, and NIS 2.
  • Deliver timely vulnerability remediation and image updates to consistently meet security SLAs for enterprise and government customers.
  • Monitor upstream advisories and dependency chains to ensure continuous security and compliance readiness across image portfolios.
  • Contribute to container hardening and secure image build pipelines following industry best practices in supply chain security.

RapidFort, Inc.

Jan 2025 – Jun 2025
Software Development Contractor • Internship
  • Hardened, secured, and optimized Docker images of open-source software for Docker and Kubernetes environments as part of the Community Images team.
  • Secured high-demand production images including MySQL, PostgreSQL, ClickHouse, and others used by thousands of deployments.

Thapar Institute of Engineering & Technology

Jan 2024 – Dec 2024
Student Software Developer • Contract
  • Led a software project funded with INR 20 Lakhs by Thapar University.
  • Collaborated with university stakeholders to design automation and scheduling software, streamlining complex manual processes in educational institutes.

Rivet

Oct 2023 – Oct 2024
Software Engineer • Internship
  • Enhanced user experience by implementing crypto payment wallets, enabling users to pay in USDC.
  • Implemented member invite service allowing users to onboard team members into their organization.
  • Decreased feature shipping time by automating testing and deployment pipelines using GitHub Actions.
  • Optimized the auth service flow, achieving a latency reduction of up to 7%.

blogs

contact me

or fill out the form — i usually respond within the same business day