Summary
Work History
Education
Skills
Certification
Languages
Accomplishments
Websites
Timeline
Projects
Generic
Sowmya Reddy

Sowmya Reddy

Hyderabad

Summary

An cyber security developer and also ethical hacker with a strong interest in projects that require both conceptual and analytical thinking. Fully-committed to designing and developing innovative security-based materials that users will love. Always eager to learn more tricks from superiors and colleagues-regardless of the industry they're working in

Work History

Associate Information Security Engineer

Gainsight
Hyderabad
05.2023 - Current
  • Monitored use of data files and regulated access to protect secure information.
  • Monitored computer virus reports to determine when to update virus protection systems and also email security and phishing related emails.
  • Implemented security measures to reduce threats and damage related to cyber attacks.
  • Drafted security reports and metrics to track security performance and strategize improvements.
  • I have also learnt about protecting the organization from any external threats
  • Investigated and resolved incidents of unauthorized access to sensitive information through crowdstrike and optiv

IT Security Analyst Intern

Gainsight
Hyderabad
11.2022 - 05.2023
  • Working on EDR detections, threat hunting and investigating them through SIEM tools.
  • Working on email security and phishing related emails.
  • Overall working on endpoint security and IT security related tools and learning about it and implementing them.

Security Technician

Security Innovation
Pune
07.2021 - 08.2022
  • Working on web application vapt testing and writing reports for clients to mitigate them. Also retesting to check if the bugs are mitigated or not.

Intern

Security Innovation
Pune
04.2021 - 07.2021
  • Worked on different web application penetration testing and improving my skills in finiding OWASP TOP 10 vulnerablities.

Security Analyst

ACQUISORY RISK, CONSULTANCYPVT LTD
Noida
07.2019 - 09.2019
  • Vulnerability assessment and penetration testing on client applications, Apk's and apps using kali linux, burpsuite and OWASP top 10 so that we can check all the vulnerabilities and report it to them

Intern- Security Analyst

ACQUISORY RISK, CONSULTANCY PVT LTD
Noida
01.2019 - 07.2019
  • Working on client side for testing their web applications, mobile apps and APK'S for security vulnerabilities and reporting it to them, so that they can cover the security vulnerabilities and launch their applications.

Education

B.Tech - Computer Science

NIIT University
Rajasthan
10-2019

Intermediate - MPC

Narayana Junior College
Hyderabad
05-2015

SSC -

Geetanjali IIT Olympiad School
Hyderabad
04-2013

Skills

  • VAPT
  • Web application Security Testing
  • Threat Hunting
  • SIEM Tool
  • Email Security
  • End point Security
  • File Sharing Security
  • Owasp top 10
  • Firewall configuration
  • Incident Response
  • Intrusion Detection
  • Time management abilities
  • Data Encryption
  • Organizational Skills
  • Problem-Solving
  • Interpersonal Skills
  • Self Motivation
  • Penetration Testing

Certification

  • CC by ISC2
  • Comptia Secuirty+
  • Third-Party Risk Management Expert by OneTrust

Languages

Telugu
First Language
English
Advanced (C1)
C1
Hindi
Intermediate (B1)
B1

Accomplishments

  • I have scored 80% in IASO and 93.3% in IASO which was conducted by IAAMS(Integral Association of Amateur Mathematicians and Scientists) in 2010
  • I have achieved State rank “12” in CV Raman State level talent search examination conducted by Suchirindia Foundation in 2010.
  • I was ranked among top 50 in 21st Inter State Competition- 2010, conducted by Ramanujan Mathematics Library.
  • I have participated in 11th NCO(National Cyber Olympiad), in which I got the State rank 343.

Timeline

Associate Information Security Engineer

Gainsight
05.2023 - Current

IT Security Analyst Intern

Gainsight
11.2022 - 05.2023

Security Technician

Security Innovation
07.2021 - 08.2022

Intern

Security Innovation
04.2021 - 07.2021

Security Analyst

ACQUISORY RISK, CONSULTANCYPVT LTD
07.2019 - 09.2019

Intern- Security Analyst

ACQUISORY RISK, CONSULTANCY PVT LTD
01.2019 - 07.2019

B.Tech - Computer Science

NIIT University

Intermediate - MPC

Narayana Junior College

SSC -

Geetanjali IIT Olympiad School

Projects

  • Okta Cleanup: Strengthen the existing security posture of Okta and to harden it further and Hardening Document which was prepared by me after careful analysis and got it implemented, once I got the approval from the respective team leads.
  • Device Trust: In this project, I had to work on bringing all the applications under device trust policy and prepare a device assurance policy hardening and device trust policy document which was rolled out for the entire company and got this implemented.
  • Firewall hardening: In this project, I worked on preparing a hardening checklist to improve overall security of firewalls and also got it integrated to SIEM tool as it will be easy for security team to look into the alerts triggered and check the change logs.
  • Beta Testing: In this project, I worked with IT team to get the beta version of MacOs to be tested by different teams before rolling out the version across the company laptops and got the hardening document prepared and review it quarterly.
  • Mobile Device Policy: In this project, I had worked on all the apps that needed to be accessed via mobile and restrict the remaining apps for customer data security and got this policy implemented via okta and rolled this policy out across the company for data security.
  • NU-WiFi to increase throughput: In this project, we analyzed the problems faced by NU regarding internet and tried to solve their problems and also tried to increase the overall throughput.
  • High secured Zone using different Protocols: In this project, we have designed a network module in Cisco Packet tracer using different protocols like RIP, EIGRP and BGP and then performing the attacks and also providing security.
  • Port scan detection: This project gives the configuration of system to router, router to switches and also lets you to know whether any unknown person enters into the organization. We have used cisco packet tracer for that.
  • medi-DROP: This was the project which makes finding of blood in emergency cases. It's mainly a user friendly website where user can easily find the donor's location.
Sowmya Reddy