Академический Документы
Профессиональный Документы
Культура Документы
Cyber Security Professional with thorough understanding of Cyber security disciplines to include Red
Teaming, Threat hunting, Vulnerability assessments, Penetration testing, Application security, Social
engineering assessments and Secure configuration of network devices. I have nearly 4.5 years of hands on
experience in IT Security specializing in penetration testing. I have carried security assessments for Banking
& Insurance clients, Healthcare industry, Government sector and private companies.
PROFESSIONAL EXPERIENCE
Organization: Deloitte Touche Tohmatsu India LLP: Working as Assistant Manager in Risk Advisory
and focuses on Cybersecurity and technology risk services.
Organization: Ernst & Young LLP: Worked as Consultant with the EY India Cyber Security team
focussing on Financial services that includes banks and insurance companies.
Roles and ● Internal and external attack simulation leading to domain compromise for
responsibilities banking clients.
● Application security testing.
● Red Team Assessments
● System and network configurations review to ensure compliance with
information security policies and leading industry standards.
● Define standards for Information Security controls.
● Network Architecture Review
● Secure configuration review
Organization: AKS IT Services: A provider of wide range of IT Security Services, the Company has
been empanelled with CERT-In as an Information Security Auditing Organization. It is
an ISO 9001:2008 & ISO 27001:2013 Certified Company.
Roles and ● Conduct Web Application Security Audits on various platforms and Content
responsibilities management systems.
● Perform internal and external network penetration tests.
● Perform application testing using OWASP and Secure SDLC standards
● Mobile Application Security Audits
● Worked on various confidential projects with Law Enforcement Agencies
SKILLS
TOOLS
● Network Security/ Penetration Testing tools like Empire, Bloodhound, PS attack, Crack map exec
Metasploit, Nessus and many microsoft sys-internal tools.
● Web Application security tools such as Acunetix, Burp Suite, App Spider, Sqlmap, Havij, Dirbuster.
● Networking/Analysis tools like Netcat, Wireshark etc.
● Thick client/Web Services tools such as Echo Mirage, SoapUI.
CERTIFICATIONS
● Offensive Security Certified Professional (OSCP)
● Certified Ethical Hacker (CEH)
ACADEMIC QUALIFICATIONS
INTERESTS
● Cricket
● Music