Application Security Engineer with over 3 years of experience.
I specialize in conducting comprehensive security testing for Web applications, APIs, and Mobile apps.
Along with performing vital assessments such as Red Teaming, Vulnerability assessment, Baseline assessment, Firewall review, OS Hardening, and Cloud security configuration.
Strong technical skills and ability to think Hacker's way.
Proficient in Linux operating system configuration, utilities and programming
Extensive knowledge of hardware, software, and networking technologies to provide a powerful combination of analysis, implementation, and support.
Overview
3
3
years of professional experience
4
4
Certification
Work History
Associate Consultant
Aujas Cyberasecurity Limited
Gurgaon
01.2022 - Current
Performing Web application, Mobile Application and API Penetration tests utilizing various methods and techniques
Conducted assessments on White, Black and Grey box application security testings.
Coordinated with application developers to validate, assess, understand the root cause and mitigate vulnerabilities.
Vulnerability Assessment(VA), Baseline assessment(BA) & auth assessment with Nessus, Qualys.
Skilled using tools like Manual & Automatic NMAP, SQLmap, Dirbuster, Acunetix, Nessus, Netsparker, Metasploit, Wireshark, Postman, Burpsuite, Vega, Mobsf and Burpsuite for web application penetration tests.
Security Analyst
Craw Cyber Security Pvt Ltd
Delhi
09.2020 - 12.2021
Worked on VAPT projects.
Wrote Articles related to Information security
Provide Cyber Security Trainings for Students and Professionals.
Assist in report automation of cybersecurity assessments for client projects
Education
Master’s In Computer Application - Computer Application
Sanskriti University
Mathura
06.2023
BSC - Computer Science
Rajiv Academy For Technology & Management
Mathura
06.2020
Skills
Black, White and Grey Box Pentesting on Web, Mobile, API & Network
OWASP Top 10 & SANS 25 with Mitigations guidelines
Wireless Penetration Testing - WPA, WPA2, WEP
Hardware and software troubleshooting
Network vulnerability scan and penetration testing
Familiar with routers and switches configuration and installation
Experience with tools: Burpsuite, OWASP-ZAP, MobSF, Postman, Yaazini, SoapUI, Frida, OSINT SQLMap, Metasploit, Aircrack-ng, Hydra, Nmap, John-Ripper, Nikto, Acunetix, Nesuss and Tenable Security Center, Qualys
Scripting with Bash and offensive Python
Familiarity with HTML, CSS, Javascript, ReactJS, SQL, MongoDB, Nodejs and Expressjs
Hall of Fames - Google Hall of Fame, Dell, OLX Groups, Inflectra, Skillshare, Mathworks (MATLAB), Bureau of Land Management, Railroad Retirement Board USA, BSides Kathmandu and much more rewards.
Report 100+ Government Websites on NCIIPC
Top 1% in TryHackMe (Rank: 0xB [Master])
Timeline
Associate Consultant
Aujas Cyberasecurity Limited
01.2022 - Current
Security Analyst
Craw Cyber Security Pvt Ltd
09.2020 - 12.2021
Master’s In Computer Application - Computer Application