Summary
Overview
Work History
Education
Skills
Certification
Accomplishments
Areas Of Interest
Additional Education
Meetups And Workshops
Timeline
Generic

Shashank Shekhar

Cyber Security Consultant
Prayagraj

Summary

Dedicated and highly skilled Cyber Security Professional with a proven track record at Ernst & Young since January 2021. Expertise in Red Teaming, Black Box and Grey Box Vulnerability Assessment and Penetration Testing (VAPT), Configuration Review, Cyber Threat Intelligence, and Code Review. Seeking to leverage my extensive experience and technical proficiency in a senior cybersecurity consultant role to enhance cybersecurity strategies, contribute to innovative solutions, and protect organizations from evolving threats. Committed to continuous learning and collaboration, I aim to drive security initiatives that align with business objectives and foster a culture of cyber resilience. Experienced and enthusiastic Consultant with track record of success across wide range of industries. Possesses exceptional interpersonal, problem-solving and analytical skills to provide advice and expertise to client organizations improving business performance. Experienced in all aspects of operations, strategy and finance.

Overview

4
4
years of professional experience
5
5
Certifications

Work History

Consultant

Ernst & Young LLP
10.2022 - Current
  • Conduct Red Team engagements to simulate real-world cyberattacks, assess security defences, and provide recommendations for improvement
  • Perform Black Box and Grey Box Vulnerability Assessment and Penetration Testing (VAPT) on clients' networks, systems, and applications, identifying vulnerabilities and suggesting remediation strategies
  • Conduct comprehensive Configuration Reviews to ensure that clients' security configurations align with industry best practices and compliance standards
  • Provide strategic Cyber Threat Intelligence by analysing emerging threats, vulnerabilities, and trends to proactively enhance clients' cybersecurity posture
  • Conduct in-depth Code Reviews to identify security flaws and vulnerabilities in web and mobile applications, assisting clients in securing their software development processes
  • Update policy and procedures for the largest power utility in middle east based upon the NCA and NIST standards
  • Develop a cybersecurity skill enhancement plan for an enterprise organization
  • Collaborate with cross-functional teams to develop and implement effective cybersecurity strategies and solutions tailored to clients' specific needs
  • Prepare detailed reports and presentations that outline assessment findings, risk assessments, and actionable recommendations for clients.

Associate Consultant

Ernst & Young LLP
07.2021 - 09.2022
  • Enhanced identity and access management solutions by proficiently utilizing SailPoint Identity IQ Technology
  • Conducted functional testing of various applications to identify and rectify potential technical issues, enhancing overall system performance and reliability
  • Spearheaded the design and configuration of application schemas for streamlined onboarding processes within SailPoint Identity IQ (IIQ))
  • Implemented various provisioning strategies, such as Aggregation and Connector rules, to facilitate seamless access management and compliance
  • Played a pivotal role in testing and validating approval workflows, user provisioning, and deprovisioning procedures across multiple applications, ensuring data security and compliance.

Technology Consultant Intern

Ernst & Young LLP
01.2021 - 07.2021

• Proactively managed and analyzed security incidents, demonstrating a keen ability to review alerts and conduct detailed investigations.

• Employed expertise to identify and classify email threats, swiftly recognizing and mitigating SPAM, Spoofing, and phishing attempts.

• Applied technical acumen to identify suspicious logs, generate comprehensive reports, and create visually intuitive charts for client comprehension.

• Demonstrated proficiency in monitoring both inbound and outbound firewall traffic, promptly investigating and addressing security events.

Education

Master of Science - Cyber Security

National Forensic Sciences University
Gujrat, India
04.2001 -

Bachelor of Science (Honours) - Forensic Science

Amity University Haryana
Gurgaon
04.2001 -

Skills

    Vulnerability Assessment and Penetration Testing (VAPT)

    Client Relationships

    Red Teaming

    Wi-Fi Pen Testing

    Configuration Review

    Team Leadership & Development

    Work Planning and Prioritization

    Firewall and Network Security

    Risk Assessment and Management

    Security Policy Development

Certification

Certified Red Team Operator

Accomplishments

  • Hall of fame from MASTERCARD
  • President Award in The Bharat Scouts and Guide

Areas Of Interest

  • Vulnerability Assessment and Penetration Testing
  • Digital Forensics
  • SIEM
  • Red Teaming
  • Threat Hunting

Additional Education

  • A minor degree in 'Computer forensics and cyber security' from Amity University Haryana.
  • A certification course in Russian as a foreign language from Amity University Haryana.
  • A certification course in Behavioural science and provided Amity University Haryana.
  • A certification course in English and Communication Skills provided by Amity University Haryana.

Meetups And Workshops

  • Black Hat MEA, 11/01/23, Riyadh
  • Nullcon Training on StealhOps Red Team Operations, 09/01/23, Goa
  • OWASP Seaside, 03/03/20, Goa

Timeline

Consultant

Ernst & Young LLP
10.2022 - Current

Associate Consultant

Ernst & Young LLP
07.2021 - 09.2022

Technology Consultant Intern

Ernst & Young LLP
01.2021 - 07.2021

Master of Science - Cyber Security

National Forensic Sciences University
04.2001 -

Bachelor of Science (Honours) - Forensic Science

Amity University Haryana
04.2001 -
Shashank ShekharCyber Security Consultant