Summary
Overview
Work History
Education
Skills
Certification
Soft Skills
Personal Profile
Declaration
Timeline
Generic

Radhika Sreelatha Balachandran

Dubai,

Summary

Professional Experience in Cyber Security domain as a Penetration tester with 2 years of experience, focusing in identifying and recommending remediation on security vulnerabilities across Web based Application, Network (External and Internal) and Mobile Application. Proficient in various testing methodologies and tools, with a track record of delivering actionable insights and recommendations. Adept at both manual and automated testing, with a solid background in ethical hacking and risk assessment. Seeking an excellent opportunity in cyber security domain to enhance my penetration testing skills through a continuous learning process while striving for excellence and to keep myself dynamic and competent with the changing threat scenarios in cyber domain.

Overview

2
2
years of professional experience
1
1
Certification

Work History

Information Security Analyst

EY Cyber Security Centre
Trivandrum
2018.01 - 2019.02

As a Penetration Tester, I was involved in testing web applications and network infrastructure, triaging vulnerabilities, exploiting the vulnerabilities to generate proof-of-concept, suggesting countermeasures to produce a detailed security test report in adherence to industry standards such as CVSS. Reports are generated with the risk analysis and justification for vulnerabilities in a client customized format

Responsibilities:

  • Performed Network and Web-Application Penetration testing comprehensively using open source and commercial tools
  • Strong exposure to automated scanners such as Nessus, Netsparker for assessments
  • In-depth understanding on the assessments for web applications using manual and automated techniques aligned with industry standards such as OWASP and PTES
  • Involved in the development of MSB of Linux based and windows based servers based on industry standards such as CIS benchmarks, NIST etc
  • Triaging automated scanner results to eliminate false positives and socializing the risk profile with stake holders
  • Expertise in rendering security services for diverse clients in ecommerce, finance, and healthcare sector clients under strict deadlines, multitasking and precision planning helped me in timely delivery, frequently gaining appreciation from senior management
  • Extensively worked in identification and exploitation of high risk vulnerabilities like Cross-Site Scripting (XSS), SQL Injection, Authentication Bypass, Cross-Site Request Forgery (CSRF) and XML External Entity (XXE) attacks
  • Assessing vendors as per client requirement for Information security, not limited to network architecture, password management, access management, VA/PT, secure application development methodology, data protection, etc
  • Developed a comprehensive framework for practical evaluation for candidates for Attack and Penetration Testing Team
  • This platform was later approved by senior management and successfully inducted in multiple recruitment drives

Internship

EY
Trivandrum
2017.06 - 2018.01

During my internship I gained knowledge in OWASP Top 10 Vulnerabilities, presentations were carried out to understand in depth about the vulnerabilities as a part of the career assessment and assisted the team in many projects to learn more about the process carried out during the security assessments

Responsibilities:

  • Programmed Web application Security Testing Sandbox in PHP emulating OWASP Top 10 Vulnerabilities for learning Penetration testing
  • Developed expertise in using security and Vulnerability Management tools such as Kali Linux, Nmap, Metasploit, Wireshark, Nessus, Burp Suite Pro, Netsparker

Education

M Tech - Industrial Instrumentation & Controls (IIC)

Kerala University, India
01.2015

B Tech - Electrical & Electronics

Kerala University, India
01.2012

Skills

  • Network and Web application Vulnerability Assessment and Penetration Testing
  • Automated and Manual web/network penetration testing
  • Networking(OSI model, protocols)
  • OWASP Top 10 vulnerabilities, test cases and the mitigations
  • Testing tools - Kali Linux, Nmap, Metasploit, Wireshark, Nessus, Burp Suite Pro, Netsparker
  • MCSA and Red Hat Linux
  • C, C++, HTML, PHP, Python
  • Microsoft PowerPoint, Word, Excel

Certification

  • EC-Council Certified Security Analyst (ECSA)
  • Certified Ethical Hacker (CEH)
  • Splunk 7.x Fundamentals Part 1 (eLearning)
  • Automate Cybersecurity tasks with Python

Soft Skills

  • Adaptability
  • Problem-Solving
  • Communication
  • Fast Learner
  • Team Collaboration

Personal Profile

  • Full Name : Radhika Sreelatha Balachandran
  • Fathers Name : B Balachandran
  • Date of Birth : 22-08-1990
  • Gender : Female Nationality : Indian
  • Languages Known : English, Malayalam, Hindi (Read/Write/Speak: Fluent)
  • Passport Number : Available on request
  • Visa Status : Spouse visa

Declaration

        I hereby declare that the details furnished in this resume are correct to the best of my knowledge

       

 

  Sincerely,

  Radhika Balachandran

Timeline

Information Security Analyst

EY Cyber Security Centre
2018.01 - 2019.02

Internship

EY
2017.06 - 2018.01

M Tech - Industrial Instrumentation & Controls (IIC)

Kerala University, India

B Tech - Electrical & Electronics

Kerala University, India
  • EC-Council Certified Security Analyst (ECSA)
  • Certified Ethical Hacker (CEH)
  • Splunk 7.x Fundamentals Part 1 (eLearning)
  • Automate Cybersecurity tasks with Python
Radhika Sreelatha Balachandran