As a Sr. Cybersecurity Specialist with over 7+ years of experience in Information security on its major pillars. Willing and excited to work on new technologies and seeking a challenging position on cybersecurity to better enhance myself. Committed to strengthen organizational security with professionalism using accumulated skills and practice.
Overview
7
7
years of professional experience
1
1
Certificate
Work History
Lead - Cyber Security & IT Governance
RRD India Outsource pvt ltd
Chennai
01.2019 - Current
Application Security - Having in-depth practical knowledge on Web application, mobile application (android,ios) security and API security. And as lead I had responsibility to govern this process with the primary objective of reducing the overall organizational risk exposure no nil.
Vulnerability assessment and Penetration testing - With my deep practical knowledge I conduct vulnerability scans using various industrial standard tools & perform penetration tests with the objective to identify the exploitable issues, and help administrators to remediate those issues.
Network devices audit - Performing security assessments/configuration audits/rule review on network devices like firewall, switch, router.
Cloud Security - Have good experience in auditing AWS cloud infrastructure and services.
Performing Architecture reviews before every solution onboarding to ensure all components/layers are secure and compliant.
Change Manager - I had responsibility to review all change tickets (high, medium, low) and ensure security and process compliance. And also need to run change advisory board (cab) meetings.
Internal Audit (ISO) - Have good experience in conducting internal audits based on ISO 27001 standards and Organizational standards. I have been part of several external audits/faced external auditors and cleared audits.
Accommodating client security questionnaire and sharing evidence accordingly.
Conducting monthly security awareness to employees via emails and posters and yearly security awareness activities on october cybersecurity month.
Have conducted phishing email campaign to organizational employees on motive of training them to avoid any future phishing.
IDFCBANK, Kotturpuram, Chennai. (IDFC ltd a Mutual Fund agency, IDFCBANK ltd)
Computer Age Management Services (CAMS), Mount rd, Chennai. (A Mutual Fund Transfer Agency to Indian Asset Management Companies)
RESPONSIBILITIES
Vulnerability Assessment and Web Application Security Testing on web applications, Android mobile applications.
Vulnerability Assessment and Penetration Testing on Servers/ Network devices.
Security consultations based on OWASP, PCIDSS, CVE standards.
Documenting and Reporting the found vulnerabilities. Coordinating with the developers and administrators on providing recommendation and support to fi the vulnerabilities.
Performed risk analyses to identify appropriate security countermeasures
Reduced security risks by 90% through enhancing protocols and ensuring adherence to regulations
Education
B. Tech - Information Technology
AVS Engineering College
Anna University Affiliated
2014
Skills
Web application Security
Vulnerability analysis & Penetration Testing
Android/IOS security
Web service security
ISO 27001 LA
Internal audit
Desktop/Server/Network compliance
Network devices security and configuration audit
Cloud Security
Change management
Service now & Service tickets
Incident Response & management
Security Operations
Certification
Certified Ethnical Hacker V8
ISO 27001:2013 Lead Auditor - Certified
ISO 31000:2018 Risk Management Specialist - Certified
Six Sigma Green Belt Implementation - Certificate of Participation