Summary
Overview
Work History
Education
Skills
Certification
Languages
Workexposure
Personal Details
Timeline
Generic
Uttika Bhushan

Uttika Bhushan

New Delhi

Summary

Adept Cyber Security Auditor from ADG Online Solutions Pvt Ltd, I excel in Static Application Security Testing (SAST) and team leadership. Leveraging expertise in vulnerability assessment and secure coding practices, I've significantly enhanced web application security, demonstrating a proactive approach to identifying and mitigating risks. My background includes successful collaboration with development teams to prioritize and remediate vulnerabilities efficiently.

Overview

3
3
years of professional experience
1
1
Certification

Work History

Cyber Security Auditor

ADG Online Solutions Pvt Ltd
01.2024 - 08.2024
  • Company Overview: (Ministry of Jal shakti)
  • (Ministry of Jal shakti)

Information Security Consultant

Esec Forte Pvt Ltd
Gurugram
01.2023 - 09.2023
  • Practical Hands-on Experience in conducting Web Applications Security Assessment
  • Hands-on experience in performing Credentialed (Authenticated) Dynamic Application Security Testing (DAST) Scan on Web Applications using Acunetix
  • Reported Critical Web Application Security Vulnerabilities such as XSS, SQL Injection, Privilege escalation, etc
  • APIs Security Assessment
  • Software Composition Analysis (SCA)
  • Good Knowledge of Static Application Security Testing
  • Conduct thorough static analysis of software code using SAST tools to identify security vulnerabilities such as SQL injection, Cross-Site Scripting (XSS), and authentication issues
  • Collaborate closely with development teams to communicate and prioritize identified security issues, providing clear remediation guidance
  • Assist in the development and implementation of secure coding guidelines and best practices for the development team

Cyber Security Consultant

Essential Infosec Pvt.Ltd
New Delhi
12.2021 - 12.2022
  • End to End handling of technical projects
  • Experience of team handling
  • Report review, finalization & delivery
  • Conduct regular vulnerability scans on critical systems, networks, and applications
  • Identify potential security weaknesses and prioritize vulnerabilities-based risk level
  • Compile detailed reports outlining vulnerabilities, their impact, and recommended remediation actions

Education

ISO 27001:2013 Certified Lead Auditor -

06.2022

EC-Council Certified Ethical Hacker -

EC-Council
03.2022

B. Tech - Computer science

WIT
Darbhanga
05.2011

12th -

S.M. INTER COLLEGE
Hajipur
06.2007

10th -

G.H.SCHOOL
Jaynagar
05.2005

Graduations - Minor of Physics Chemistry and Math's

Skills

  • Static Application Security Testing (SAST)
  • Secure Code Review
  • Vulnerability Assessment
  • Penetration Testing
  • Code Analysis Tools (eg, Check Marx, Fortify)
  • Software Security Standards (eg, OWASP Top Ten)
  • Web Application security Audits
  • Secure Coding Practices
  • Vulnerability Remediation
  • Dynamic Application security Testing (DAST)
  • Grey Box Testing and Black Box Testing
  • API Testing
  • Tools: Nmap, Kali Linux, Metasploit, Maltego, Burp, Paros Proxy, Nessus, Nexpose, Wireshark, SQL map

Certification

  • EC-Council Certified Ethical Hacker, 03/01/22
  • ISO 27001:2013 Certified Lead Auditor, 06/01/22

Languages

  • English, Intermediate
  • Hindi, Upper intermediate
  • Bengali, Intermediate

Workexposure

  • End to End handling of technical projects.
  • Experience of team handling.
  • Report review, finalization & delivery.
  • Conduct regular vulnerability scans on critical systems, networks, and applications.
  • Identify potential security weaknesses and prioritize vulnerabilities-based risk level.
  • Compile detailed reports outlining vulnerabilities, their impact, and recommended remediation actions.
  • Practical Hands-on Experience in conducting Web Applications Security Assessment.
  • Hands-on experience in performing Credentialed (Authenticated) Dynamic Application Security Testing (DAST) Scan on Web Applications using Acunetix.
  • Reported Critical Web Application Security Vulnerabilities such as XSS, SQL Injection, Privilege escalation, etc.
  • APIs Security Assessment.
  • Software Composition Analysis (SCA).
  • Good Knowledge of Static Application Security Testing.
  • Conduct thorough static analysis of software code using SAST tools to identify security vulnerabilities such as SQL injection, Cross-Site Scripting (XSS), and authentication issues.
  • Collaborate closely with development teams to communicate and prioritize identified security issues, providing clear remediation guidance.
  • Assist in the development and implementation of secure coding guidelines and best practices for the development team.

Personal Details

Name                - Uttika Bhushan

Father Name    - Lt. Ravi Bhushan

Mobile No.        - +91-9958100308

Email Id             - uttika.eis@gmail.com

Pan No.            - BQJPB0677E

Timeline

Cyber Security Auditor

ADG Online Solutions Pvt Ltd
01.2024 - 08.2024

Information Security Consultant

Esec Forte Pvt Ltd
01.2023 - 09.2023

Cyber Security Consultant

Essential Infosec Pvt.Ltd
12.2021 - 12.2022

ISO 27001:2013 Certified Lead Auditor -

EC-Council Certified Ethical Hacker -

EC-Council

B. Tech - Computer science

WIT

12th -

S.M. INTER COLLEGE

10th -

G.H.SCHOOL

Graduations - Minor of Physics Chemistry and Math's

Uttika Bhushan