Security professional with a strong interest in Cybersecurity research and a diverse knowledge of security assessment techniques and software development to succeed in an environment of growth and excellence and earn a job which provides me job satisfaction, self-development and help me achieve personal as well as organizational goals.
Technical Profile
Having 3.6 years of experience in security assessments (Web Based Applications, Penetration Testing and Vulnerability Assessment of devices and platforms) And overall work experience is 12 years.
Performed Application Penetration Testing for various clients.
Conducted vulnerability assessment of multiple servers and network devices.
Skilled using Various Tools for web application penetration tests such as Burp Suite, Acunetix, Nmap, Nessus.
Proficient in understanding application-level vulnerabilities like XSS, SQL Injection, authentication bypass, weak cryptography, Session Management, etc.
Skilled in executing OWASP top 10 test cases.
Preparation of Test area coverage definitions, Test Plans and test cases for new features/implementation
Executing tests, reviewing results and working with Development team to identify and debug problems
Publishing monthly dashboards, taking follow up for closure of vulnerabilities.
Ability to work in large and small teams as well as independently.
Coordinate with dev team to ensure closure of reported vulnerabilities by explaining the ease of exploitation and the impact of the issue.
Reporting the identified issues in the industry standard framework.
Ability to build from good relationships with clients/operational managers and colleagues.
A Self-starter with a positive attitude, willingness to learn new concepts and accept challenges. PERSONAL ATTRIBUTES
Self-motivated with well-developed IT skills combined with a flexible attitude toward work.
Strong team-player skills developed through work in large teams and Under Projects.
A critical thinker with strong analytical skills.
Good organizational skills developed in a variety of deadline orientated situations. Get on well with people at all levels, easily making good working relationships. Have good presentation skills combining sound analytical research and clear explanation.
Seek out new responsibilities irrespective of reward and recognition. Strive for quality in everything I do.
Possess high technical aptitude, analytical ability, problem solving and communication skills
Handling analytical and technical tasks as a lead in the team
Receiving and carrying complicated instructions and tasks to my group members
Working professionally with patient's personal information and health information regularly with highest levels of integrity
Work independently and take initiative with multi-tasking abilities
Overview
15
15
years of professional experience
3
3
years of post-secondary education
Work History
Senior Test Engineer
Nagarro Software Private Limited
HYDERABAD
02.2020 - Current
Identifying Security Vulnerabilities within running In Production Environment
Conduct Application Vulnerability Assessments and Penetration Tests for In House
Web Apps
Handled Documentation and Metrics Reporting
Schedule Pen Tests for Applications Running in Production Environment
Conduct Effective Security Testing with The Use of Automated/Semi-Automated Toolsets like Burp Suite, Metasploit Etc
Perform application scans for new Applications getting released
Perform Application Security and penetration testing's as per the PCI-DSS Guidelines
Perform Web & Mobile Application security assessment
Vulnerability assessment and support PCI-DSS compliance audits related to Section 6.6 and 11.3 application layer Penetration testing)
Penetration testing of Web applications and APIs in scope
Perform Dynamic application security testing for 100+ applications using automated tools manual techniques
Conveying technical information to senior management
Installing and working on Various Powerful Security tools
Project #3
Domain: Stater (Finance Domain)
Environment/Skills used, OWASP TOP 10 Vulnerabilities, Burp suite, Nmap, Nessus., Application Security Analysis (manual & automated) experience of web applications
Provide effort estimates for conducting security assessments
Experience in remediation review and recommendations to vulnerabilities identified during Security Assessments
Experience in preparing executive reports for every assessment
Also conduct closing meeting calls with respective clients
Experience in assisting short term client engagements for Vulnerability assessment and Penetration Testing
Check for regular security updates from standard bodies such as: Open Web Application Security Project (OWASP)
Preparing documents on Security methodologies of various app modernization projects
Knowledge Sharing, reusable assets and decks
Project #2
Domain: McKesson (Healthcare)
Environment: Burp Suite, SQL map, OWASP, HP Web Inspect
Nmap, Nessus, CSRF Tester Tool
Responsibilities:
Application Security Analysis (manual & automated) experience of web applications using HP Web Inspect and Burp Suite tools
Experience in remediation review and recommendations to vulnerabilities identified during Security Assessments
Interacting with Application development teams to guide them on the observations reported and the impact of its exploitation
Suggesting remediation recommendations for failed controls for vulnerability assessment and code reviews
Preparing executive reports for every assessment
Also conduct closing meeting calls with respective clients
Assisting short term client engagements for Vulnerability assessment and Penetration Testing
Reporting the Web Application testing vulnerabilities which are found during Manual Testing and depicting/justifying the false positive and true positive vulnerabilities in Automated App scan reports
Understanding vulnerability type by reproducing the same
Identifying the patch levels required for remediating the vulnerabilities in host level scanning
Various Log analysis depending on the need and scope
Manual report generation/submission for daily maintenance tasks.
Test engineer
SRS
Understanding the Client Requirements in the form of, Document
Effectively Design the Test cases based on SRS Document
Executed test cases of Client Requirements to verify actual result against expected results
Responsible for the execution of the test cases
Participating in review meetings and attending in conference halls for Discussing the Project.
Senior Clinical Coding Specialist
Middle East Health Information, Dhabi
05.2015 - 05.2017
Senior Clinical Coding Specialist
United Health Group
HYDERABAD
10.2011 - 02.2015
Senior Clinical Coding Specialist
Anthelio Business Technologies
HYDERABAD
04.2011 - 10.2011
Senior Medical Coding Analyst
Cognizant Technology Solutions
HYDERABAD
05.2009 - 04.2011
Medical Coding and Billing Analyst
Vision
04.2008 - 04.2009
Education
Bachelor of Science - Medical Laboratory Technology
K.G.R.L Degree College
Bhimavaram, Andhra Pradesh
04.2004 - 05.2007
Skills
Pythonundefined
Timeline
Senior Test Engineer
Nagarro Software Private Limited
02.2020 - Current
Senior Clinical Coding Specialist
Middle East Health Information, Dhabi
05.2015 - 05.2017
Senior Clinical Coding Specialist
United Health Group
10.2011 - 02.2015
Senior Clinical Coding Specialist
Anthelio Business Technologies
04.2011 - 10.2011
Senior Medical Coding Analyst
Cognizant Technology Solutions
05.2009 - 04.2011
Medical Coding and Billing Analyst
Vision
04.2008 - 04.2009
Bachelor of Science - Medical Laboratory Technology