Summary
Overview
Work History
Education
Skills
Websites
Timeline
Generic

KARTIKA SINGH

New Delhi

Summary

To utilize my technical and management skills to help the company succeed, improve performance, and stay updated on the latest cybersecurity trends. Committed to learning and contributing to both personal and team growth.

Overview

5
5
years of professional experience

Work History

Senior IT Security Analyst

Panacea Infosec Pvt. Ltd.
New Delhi
01.2022 - Current
  • Performed Manual/Automated security assessment of Web Applications (Cert-In and PCI based), Mobile [Android] (Cert-In and PCI based), API and Microservices, Thick Client and Thin Client Application and Network Penetration Testing on Internal and External IP’s, Segmentation PT Scan for Bank, BPOs, E-Commerce Org
  • And IT Companies
  • Conducted Cloud Security Assessment for multiple clients
  • Network Devices Configuration Review for multiple clients
  • Conducted PCI based Segmentation PT
  • Performed Application process audit
  • Conducted PCI ASV scan for multiple clients
  • Providing rich client specific reports
  • Work on improvements for security services, including the continuous enhancement of existing methodology material and supporting assets
  • Communicate technical vulnerabilities and remediation steps to developers and management
  • Be responsible for performing manual penetration testing and communicating the findings to both Business and Developer
  • Work with application developers to validate, assess, understand root cause, and mitigate vulnerabilities
  • Perform Secure Configuration Review for Network & Cloud Devices like Firewall, Routers, Databases, IDS, IPS, Switches, Servers etc
  • Perform Docker Vulnerability Assessment & Penetration Testing using Qualys, Dockerscan, Clair, trivy etc
  • Understanding of OWASP, general security controls, Dark Web, Open-source intelligence (OSINT) framework, social engineering and other

Cyber Security Engineer

Panacea Infosec Pvt. Ltd.
New Delhi
01.2022 - Current
  • First level SOC monitoring engineer
  • Working as SIEM tool wazuh implementation and monitoring
  • Day to day log monitoring for all different clients on wazuh
  • Policy defining on SIEM tool
  • Creating rules and decoders for different logs
  • Integration modules with SIEM
  • Incident response

Information Security Consultant

Cybrotech digiventure Pvt. Ltd.
New Delhi
01.2020 - 01.2022
  • Fortinet & pfSense Firewall setup, configuration & policy implementation for Clients
  • Day to day Firewall logs Monitoring & technical support
  • Endpoint Security Implementation for clients, Policy Apply, Daily Monitoring for Malware & Virus, Incident Response and action like sandboxing overall complete endpoint monitoring for clients
  • Database management for all incident Vulnerability & Security Threats
  • Communicate with client/customer to gather information required for security audit of application
  • Continuous Connected with Clients for any kind of IT security related Support
  • Ensure Compliance for all possible IT Asset & services Vulnerabilities, risk & threats for every client
  • ISO270001 implementation, Policy & Control define for clients
  • Handling VAPT project by Communicating with Clients
  • Work on Forensics cases to investigate & solve
  • Perform Internal audit for multiple clients for policies like ISO27001, SOC2, HIPPA

Education

Cyber Security Training - Cyber Security C-DAC

Centre For Development of Advanced Computing
Noida
01.2020

Bachelor of Technology (B. Tech) - Instrumentation & Control

JSS Academy of Technical Education
Noida
01.2019

Higher School Secondary - PCM

M.V.V.M Inter College
Uttar, Pradesh
01.2014

Secondary School Certificate -

M.V.V.M Inter College
Uttar, Pradesh
01.2012

Skills

  • Kali Linux OS
  • Nmap
  • Burp Suite
  • Nessus
  • Metasploit
  • Wireshark
  • IDS
  • IPS
  • Snort
  • Acunetix
  • Netsparker
  • OWASP Zap
  • Shodan
  • Whois
  • ISO 27001
  • SOC2
  • ISMS Policy and Control Implementation
  • OWASP Top 10
  • Web Application Security
  • Firewall Implementation
  • Setup & monitoring
  • Network Security
  • Routing & Switching
  • Endpoint Security
  • ThreatSpike
  • Sophos
  • Office 365
  • Indefend
  • Securite
  • ELK Stack
  • Splunk
  • Nagios Monitoring
  • IBM Qradar
  • Cyber Forensics FTK
  • Cybercheck
  • WinLift

Timeline

Senior IT Security Analyst

Panacea Infosec Pvt. Ltd.
01.2022 - Current

Cyber Security Engineer

Panacea Infosec Pvt. Ltd.
01.2022 - Current

Information Security Consultant

Cybrotech digiventure Pvt. Ltd.
01.2020 - 01.2022

Cyber Security Training - Cyber Security C-DAC

Centre For Development of Advanced Computing

Bachelor of Technology (B. Tech) - Instrumentation & Control

JSS Academy of Technical Education

Higher School Secondary - PCM

M.V.V.M Inter College

Secondary School Certificate -

M.V.V.M Inter College
KARTIKA SINGH