Utkarsh Tripathi
complaince · open source · software supply chain security
about
something about me
I'm a Software Engineer at RapidFort, focused on Container Security and Software Supply Chain Security. My work revolves around building and maintaining hardened, near-zero CVE open-source container images — the kind that enterprises and government agencies can actually trust in production.
That means a lot of CVE triage, vulnerability remediation, upstream dependency tracking, and securing build pipelines against compliance frameworks like STIG, FIPS, FedRAMP, CMMC, SOC 2, and NIS 2. It's unglamorous work most of the time, but there's something deeply satisfying about closing the last CVE on an image that ships to thousands of deployments.
I graduated from Thapar University in 2025 with a degree in Electronics and Computer Engineering. If you're working on anything in the container security or supply chain security space, I'm always up for a conversation.
my stack
- Languages Go, JavaScript, Python, C/C++, Bash
- Frontend SvelteKit, React.js, Next.js, TailwindCSS
- Backend Node.js, Go, REST APIs, PostgreSQL, Redis
- Security CVE triage, STIG, FIPS, FedRAMP, CMMC, SOC 2, NIS 2, SBOM
- DevOps Docker, Kubernetes, Terraform, GitHub Actions, Jenkins
- Cloud AWS, GCP, Firebase
RapidFort, Inc.
Jun 2025 – PresentSoftware Engineer • Full-time
- Engineer and maintain near-zero CVE open-source container images compliant with STIG/FIPS standards for FedRAMP, CMMC, SOC 2, and NIS 2.
- Deliver timely vulnerability remediation and image updates to consistently meet security SLAs for enterprise and government customers.
- Monitor upstream advisories and dependency chains to ensure continuous security and compliance readiness across image portfolios.
- Contribute to container hardening and secure image build pipelines following industry best practices in supply chain security.
RapidFort, Inc.
Jan 2025 – Jun 2025Software Development Contractor • Internship
- Hardened, secured, and optimized Docker images of open-source software for Docker and Kubernetes environments as part of the Community Images team.
- Secured high-demand production images including MySQL, PostgreSQL, ClickHouse, and others used by thousands of deployments.
Thapar Institute of Engineering & Technology
Jan 2024 – Dec 2024Student Software Developer • Contract
- Led a software project funded with INR 20 Lakhs by Thapar University.
- Collaborated with university stakeholders to design automation and scheduling software, streamlining complex manual processes in educational institutes.
Rivet
Oct 2023 – Oct 2024Software Engineer • Internship
- Enhanced user experience by implementing crypto payment wallets, enabling users to pay in USDC.
- Implemented member invite service allowing users to onboard team members into their organization.
- Decreased feature shipping time by automating testing and deployment pipelines using GitHub Actions.
- Optimized the auth service flow, achieving a latency reduction of up to 7%.
blogs
contact me
or fill out the form — i usually respond within the same business day