
Results-driven professional committed to continuous learning and passionate about Application Security Testing. Eager to contribute to a dynamic environment that fosters innovation and collaboration while leveraging expertise to enhance security protocols and practices. Proven ability to adapt quickly to new challenges and technologies, ensuring the implementation of effective security measures. Dedicated to staying at the forefront of industry trends and best practices to drive organizational success.
Testing: Security testing ( Web App, Mobile App, API, Network )
Vulnerability Assessment Tools: Appscan, Burp suite, OWASP ZAP, WebInspect, Acunetix, Nexpose, NMap
API Testing Tools: Postman, Soap UI
Infrastructure Security Tools: Nessus
Operating Systems: Windows, Linux
• Interacting with Application development teams to guide them on the observations reported and the impact of its exploitation • Suggesting remediation recommendations for failed controls for vulnerability assessment and code reviews
• Preparing executive reports for every assessment. Also conduct closing meeting calls with respective clients.
• Reporting the Web Application testing vulnerabilities which are found during Manual Testing and depicting/justifying the false positive and true positive vulnerabilities in Automated App scan reports.
• Scanning the entire network by configuring related sites in Nexpose and generating the vulnerability reports accordingly.
• Understanding vulnerability type by reproducing the same.
• Reporting the Web Application testing vulnerabilities which are found during Manual Testing and depicting/justifying the false positive and true positive vulnerabilities in Automated App scan reports.
• Experience in remediation review and recommendations to vulnerabilities identified during Security Assessments.
• Interacting with Application development teams to guide them on the observations reported and the impact of its exploitation
• Preparing executive reports for every assessment. Also conduct closing meeting calls with respective clients.
• Provide effort estimates for conducting security assessments.
• To carry out web application security testing (Gray box and Black box) and reporting the vulnerabilities
• Recommendations to mitigate the weaknesses discovered during the assessment.
• Preparing executive reports for every assessment. Also conduct closing meeting calls with respective clients.
• Assisting short term client engagements for Vulnerability assessment and Penetration Testing.
• Trained dev teams on imparting security related incidents and the remediation to secure the applications from external threats