Summary
Overview
Work History
Education
Accomplishments
Skills
Timeline
Generic

RAHUL GANDHI JAYABALAN

Cyber Security Engineer
Chennai,TN

Summary

Sr. CYBER SECURITY ENGINEER Summary Skilled Cyber Security professional with 10+ years of domain experience. A dedicated security researcher well-versed in Application Security, Network Penetration Testing, Threat Intelligence, Incident Management, DevSecOps, Email Security, and Vulnerability Assessments. Possesses a rapid proficiency in acquiring new concepts and technologies, consistently demonstrating a proven track record of collaborative teamwork and a willingness to exceed expectations. Area of Expertise Application Security Testing Network Penetration Testing Mobile Application Security Testing API Security Testing DevSecOps Cloud Security Vulnerability Assessment Threat Intelligence Technical Skills Expertise in OWASP Top 10, CWE/SANS Top 25, MITRE ATT&CK, and NIST Cybersecurity Framework (CSF). Detailed knowledge of most common web application vulnerabilities and best security practices to prevent them. Strong hands-on knowledge in using most widely used security testing tools (Burp Suite, HCL AppScan, Zed Attack Proxy, Fortify, Tenable Nessus, Metasploit Framework, SQLmap, Nmap, API Fuzzer, Mobile Security Framework (MobSF), Sonar Qube and other Kali Linux tools, etc). Hands on experience in carrying out Threat Intelligence activities using various OSINT tools. Threat Modelling Vulnerability Assessment & Penetration Testing Experienced in conducting Security Risk Assessments and Compliance reviews. Experienced in LogRhythm SIEM administration. Familiar with integrating security practices into the software development lifecycle and carrying out DevSecOps activities.

Overview

11
11
years of professional experience

Work History

Senior Cyber Security Engineer

Brickendon Consulting
01.2023 - Current

At Brickendon, as a Senior Security Consultant, I manage all the software development security related activities such as introducing best security practices into SDLC, performing regular code scanning and monitoring, performing security testing on APls, periodic penetration tests, etc.

Senior Security Analyst

Anoud Technologies
01.2020 - 01.2023

At Anoud Technologies, as a senior security analyst, I manage and perform several security related operations including Web penetration testing, Network vulnerability assessment, SOC operations and Email Security management.
My job responsibilities include,
• Performing Black box, Grey box and White box security testing using OWASP methodologies.
• Working as a part of development team throughout the SDLC and performing security testing for every release.
• Creating a professional assessment report with a detailed walk-through of the findings (POCs) and remediation plan.
• Preparing and reviewing risk assessment reports with developers and site owners.
• Periodically following up with the developers on the remediation of reported findings and conducting retests to make sure the vulnerabilities are completely fixed.
• Conducting security testing on Android and /OS mobile applications.
• Being a part of Security Operations Control (SOC) and managing SIEM activities using LogRhythm.
• Creating email policies and managing email gateways.
• Engaging Red Team activities and train developers on secure coding practices.

Penetration Tester

Northern Lights Technology Development
01.2017 - 01.2020
  • Northern Lights Technology Development
  • In this role, I am responsible for conducting vulnerability assessments and penetration testing on web applications using OWASP Top 10 and other most popular web application testing methodologies
  • My job responsibilities include
  • Planning and scheduling penetration tests with our clients on a timely basis
  • Performing Black box, Grey box and White box security testing
  • Presenting and reviewing the assessment report with developers and site owners
  • Providing remediation planning to developers after reporting the identified vulnerabilities
  • Finding and demonstrating new tools to other members in our team
  • Achievements:
  • During my tenure, I have found several critical vulnerabilities that include Unrestricted File Uploads, injection attacks such as SQL injection, Cross site scripting, etc, CSRF, privilege escalations and many broken access control vulnerabilities
  • I have received good feedback from our clients and onsite peers for my work in this project and for the delivery of reports on-time.

Technical Consultant

Sutherland Global Services
01.2014 - 01.2017
  • In this role, I was responsible for providing technical support, performing audits and reporting day-to-day security activities
  • Achievements:
  • As an QA Analyst, I received several appreciations from our onsite peers for regularly conducting good audits and tuning the project in the best way possible.

Education

Bachelor of Engineering - undefined

Anna University
2014

Accomplishments

  • Certified Ethical Hacking (CEH) - EC Council
  • DevSecOps: Implementing Security in DevOps Processes - EC Council
  • Certified Cloud Security Engineer (CCSE)
  • Soft Skills
  • Good Written and Oral Communication
  • Self-Motivation
  • Team Player
  • Openness to Feedback
  • Ability to adapt to change

Skills

Application Security Testing

Network Penetration Testing

Mobile Application Security Testing

API Security Testing

DevSecOps

Cloud Security

Vulnerability Assessment

Threat Intelligence

Timeline

Senior Cyber Security Engineer

Brickendon Consulting
01.2023 - Current

Senior Security Analyst

Anoud Technologies
01.2020 - 01.2023

Penetration Tester

Northern Lights Technology Development
01.2017 - 01.2020

Technical Consultant

Sutherland Global Services
01.2014 - 01.2017

Bachelor of Engineering - undefined

Anna University
RAHUL GANDHI JAYABALANCyber Security Engineer