Summary
Overview
Work History
Education
Skills
Certification
Timeline
SoftwareDeveloper

Ajay Chand

New

Summary

Security Engineer with 8 years of experience in various domains such as

  • Web Application security testing, Vulnerability Assessment, penetration testing, Cybersecurity & Network Security.
  • Background/understanding of software development lifecycle.
  • Excellent communication skills with proven abilities in resolving complex networking, hardware & software related issues.
  • Extensive knowledge of hardware, software, and networking technologies to provide a powerful combination of analysis, implementation, and support.
  • Managed the cycle of project continuity, reviewed the technical work of team, and ensured the quality of service deliverable.
  • Skilled in Customer relation, business requirement gathering and Threat modeling. Organize meetings and reviews

Overview

8
8
years of professional experience
5
5
Certification

Work History

Technical Consultant

Inspira Enterprise Ltd
10.2019 - Current
  • Internal and external penetration testing (plan, discover, attack, report).
  • Web application testing (manually and with tools such as Burp, Dirbuster, Nikto, SqlMap, Beef-xss, Hydra).
  • Reviewed policies and Act Like a Subject Matter Expert on Best Pratice.
  • Conduct vulnerability assessment and review results. Collaborate with client's IT staff to rank vulnerabilities. Validate high risk vulnerabilities on specific targets. Develop remediation action plan.
  • Establish and/or encourage ongoing vulnerability management process (scan, assess, patch, report).
  • Implementations and configuration of WAF (Multiple Vendor). Creating custom polices, providing exception, whitelisting IPs, URL, File Types, Monitoring/Analyzing false Negative & False positive traffic on daily basis, working on artifacts and Bot attack.
  • Effectively communicate with technical/non-technical personnel before, during and after engagement.
  • Research emerging threats, develop test plan environment, test exploits, tools in lab prior to deployment in production environment.


Senior Network & Security Engineer

Targus Tech Pvt Ltd
01.2017 - 09.2019
  • Developed risk assessment reports to identify threats and vulnerabilities.
  • Configuration, implementation, and problem determination across the major Web application firewall platforms and understanding each customer environment at a detailed level.
  • Provided remote day to day firewall/VPN/LB support for PAN India, which spans across multiple platforms including Firewall, F5, Checkpoint, FortiGate & Palo-Alto.
  • Configuration and implementations F5 Products also (LTM, GTM, ASM, DDOS, IPS, BIG-IQ & API).
  • Access-list, NAT and routing in a predefined and secure fashion.
  • A smooth conduct of business operations in-terms of firewall rule management.
  • Support for Fail-over testing all applicable firewall devices to ensure compliance with the Networks 99.99% uptime Service Level Agreements (SLAs)
  • Upgrading Checkpoint firewall Gaia, FortiGate firewall, FortiOS and Juniper SRX using TFTP, WinSCP & GUI.
  • Responsible for auditing, analyzing and correlating firewall and network device log information and provide action to remediate any discoveries that pose a threat to the environment.

Network & Security Engineer

Nelito System Ltd, Center Bank of India
01.2016 - 10.2017

Associate Engineer

HCL Info System Ltd
03.2015 - 04.2016

Education

High School Diploma -

Collage
07.2009

School -

Senior Secondary
07.2011

Polytechnic Diploma - Information Technology

Govt
07.2014

Bachelor of Computer Applications - undefined

IEC University

MBA - Information Technology

Subharti University

Skills

  • External Penetration Testing
  • Internal Penetration Testing
  • Web Application Penetration Testing
  • Application Source Code Reviews
  • Network Device Configuration Review
  • Metasploit, Burp, Nikto, Dirbuster, SQL MAP, Nessus
  • Privilege escalation
  • Web vulnerabilities, Web Exploitation, SAST/DAST

Certification

Certified Ethical Hacking (CEHv10) Certified.

F5 TMOS 201 Certified, BIG-IP.

Certification of Penetration Testing & Bug Bounty hunting on Udemy.

Checkpoint Certified Security Administrator (CCSA).
Fortinet Network security Expert 4 Certified (NSE4).
F5 Application Delivery 101 Certified.

Cisco Certified Network Associate (CCNA).

Timeline

Technical Consultant

Inspira Enterprise Ltd
10.2019 - Current

Senior Network & Security Engineer

Targus Tech Pvt Ltd
01.2017 - 09.2019

Network & Security Engineer

Nelito System Ltd, Center Bank of India
01.2016 - 10.2017

Associate Engineer

HCL Info System Ltd
03.2015 - 04.2016

High School Diploma -

Collage

School -

Senior Secondary

Polytechnic Diploma - Information Technology

Govt

Bachelor of Computer Applications - undefined

IEC University

MBA - Information Technology

Subharti University
Ajay Chand