Summary
Overview
Work History
Education
Skills
Websites
Certification
Languages
Timeline
Generic

Ashutosh Upadhyay

New Delhi

Summary

Information Security Engineer with expertise in vulnerability assessments and penetration testing at Codec Network Pvt. Ltd. Skilled in Tenable Nessus and Qualys VMDR for identifying and mitigating security risks. Strong analytical capabilities and experience in designing security solutions for high-availability environments. Proven track record in threat detection, incident response, and risk management to safeguard sensitive information and ensure system integrity.

Overview

3
3
years of professional experience
1
1
Certification

Work History

Senior security specialist

In2it Technologies
New Delhi
08.2022 - Current
  • Vulnerability assessment.
  • Implement and configure Qualys modules, including VMDR, Policy Compliance, Cyber Security Asset Management, Cloud Agent, Cloud Workload Protection, Vulnerability Management scanning and reporting, Patch management.
  • Collaborate with IT, engineering, and compliance teams to analyze results and support mitigation activities.
  • Network penetration Testing.
  • Perform manual and automated penetration tests on network systems, servers, applications, and infrastructure using both black/grey/white box approaches.
  • Identify security weaknesses, simulate real-world attack scenarios, and demonstrate risks to stakeholders.
  • Maintain awareness of the latest threats, vulnerabilities, tools, and regulatory frameworks (e.g., OWASP, NIST, ISO 27001, PCI DSS).
  • SOC.
  • Client handling e-GOV SOC south Africa 18 govt. Department.
  • Tenable Nessus & Tenable.io Expertise.
  • Conduct vulnerability scans using Nessus Professional and Tenable.io, interpret CVSS scores, VPR, and compliance reports.

Information Security Engineer

Codec Network Pvt. Ltd
New Delhi
02.2022 - 05.2022
  • Highly skilled experience in vulnerability assessment, penetration testing, and network security audit.
  • Proficient in conducting comprehensive security audits to identify vulnerabilities, assess risks, and recommend effective mitigation strategies.
  • Information Security Engineer, Client Handling.
  • Audit Network Architecture Review, VAPT Network Security, 15 location audits.
  • Example Client Location – TCIL Delhi, Indian Navy, Pawan Hans.
  • Tools - Nmap, Wireshark, Nessus Professional, Metasploit.
  • Configuration Audit 300 PC as per the NIST Checklist Provide By Client.

Education

PGDCSL - cybersecurity

CyberSecurity-SSCBSDelhiUniversity
New Delhi
07.2021

Master of computer application - Computer And Information Systems Security

JS University
02-2021

BCA - computer application

GGSIPU
New Delhi
08.2019

Skills

  • Network security
  • Kali Linux
  • Nmap
  • Vulnerability assessment
  • Penetration testing testing
  • Tenable Nessus
  • Configuration audit
  • Qualys VMDR patch management
  • Qualys configuration
  • Control objectives for information and related technologies framework
  • Software installation
  • Implementation of IT policies benchmark
  • Cisco ASA firewall configuration
  • FortiGate firewall
  • IT documentation and reporting
  • Windows configuration audit
  • Server configuration audit
  • DFCCIL Audit Headquarters cyber and network security audit

Certification

  • CASP+, COMPTIA, 12/01/22
  • CEH V13, EC Council, 05/01/22

Languages

Hindi
First Language
English
Advanced (C1)
C1

Timeline

Senior security specialist

In2it Technologies
08.2022 - Current

Information Security Engineer

Codec Network Pvt. Ltd
02.2022 - 05.2022

PGDCSL - cybersecurity

CyberSecurity-SSCBSDelhiUniversity

Master of computer application - Computer And Information Systems Security

JS University

BCA - computer application

GGSIPU
Ashutosh Upadhyay