An organized and motivated individual, eager to utilize time management and organizational skills across diverse settings. Strong work ethic and effective communication skills. Eager to contribute to a dynamic team and support organizational goals.
Overview
10
10
years of professional experience
Work History
Cyber Security Researcher
Microsoft Corp
Mumbai
11.2021 - Current
Performing knowledge transfer with DART team to prepare customers to defend against today's threat landscape
Working with collaborative team to assist with customers all over the world
Discovering attacker persistence on compromised systems
Identifying potential threats and providing recommendations
Worked with Extended security team of Microsoft for performing reactive hunting on sentinel tool
Familiar with understanding basic on KQL queries
Experience with various forensic log artefact found during investigations(SIEM logs, AV logs)
Analyzed network logs, identified potential threats, and proposed appropriate countermeasures.
Investigated advanced persistent threats using forensic techniques.
Provided technical guidance on cybersecurity best practices and standards.
Created detailed reports documenting findings, recommendations, and remediation steps for customer.
Cyber Security Analyst
Tata Consultancy services
Mumbai
10.2016 - 10.2021
Have been involved in Cyber Security practice including Vulnerability Assessment and Penetration Testing, Web and Mobile Application Security testing, phishing, API testing, Source Code Review and configuration review
Supporting Team in ongoing releases issues with having daily update call and activity tracker
Reporting the finding and recommendations to mitigate the identified vulnerabilities
Provide technical advice to internal organizations in the area of information security, specializing in application-level security and secure coding techniques
Conduct web application and mobile security assessments and handle vulnerability remediation of applications
Investigation of Emails Received from all users including higher authority
Identify different types of emails (Spam, Phishing.etc) through various sources
Maintaining Reports of all investigation in GRC tool (Archer)
Reviewing everyday Archer tickets raised by the team members
Collecting IOCs on new malware/ransomware from different threat intelligence portals and making master IOCs, which are then forwarded to create alerts in SIEM.
Tools used: Web and Mobile VAPT Tools - Burp Suite, Acunetix, Netsparker, POSTMAN, Checkmarx, Network VAPT Tools - Nmap, Nessus, Nexpose, and Kali Linux, etc.
Conducted regular vulnerability scans on systems and applications to identify security issues.
Monitored malicious activities in the internal network for suspicious patterns or anomalies.
Implemented secure coding practices in software development projects.
Participated in risk assessment exercises designed to identify areas of vulnerability within the organization's IT infrastructure.
Provided training on various topics related to cybersecurity awareness and best practices.
Promoted security awareness among employees and clients to alleviate risks and breaches.
Scientific Assistant
Directorate of forensic science laboratory
Mumbai
08.2014 - 05.2016
Experience in Cyber forensic laboratory performing data recovery of all digital evidences
(Hard disk, mobile phones, memory cards, SIM cards)
Provide expert testimony and investigative support as needed on various cases
Acquisition of all the digital media in lab setting data capture or seizure
Perform data recovery, including both file and email recovery, on digital media to be analyzed during the course of a computer forensic investigation
Searching internet history for particular cases as per questionnaires' from police stations
Interact with Police Officer's to provide the highest quality of output in order to meet the case that filed in court for desired outcomes
Provide expert testimony and investigative support as needed on various cases