Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

VISWANATH CHIRRAVURI

Hyderabad,TG

Summary

Security Engineer with 6 years of experience in various domains such as

• Web Application security testing, Vulnerability Assessment, Ethical Hacking, penetration testing and generating reports using tools

• Currently working as Security Analyst in IBM Security & Risk Management team.

• Design, & Integration experience on Security information and Event management solutions(SIEM)

• Background/understanding of software development lifecycle

• Excellent communication skills with proven abilities in resolving complex networking, hardware & software related issues

• Proficient in Linux operating system configuration, utilities and programming

• Extensive knowledge of hardware, software, and networking technologies to provide a powerful combination of analysis, implementation, and support

• Managed the cycle of project continuity, reviewed the technical work of team, and ensured the quality of service deliverable.

• Skilled in Customer relation, business requirement gathering and Threat modeling. Organize meetings and reviews Analytical Penetration Tester with over six years of hands-on experience in various domains such as security testing and penetration testing. Strong knowledge of network architectures, operating systems and cybersecurity tools. Confident and communicative professional proficient in scripting paired with familiarity of Unix and Windows. Collaborative team player committed to working with businesses and organizations to identify and resolve security vulnerabilities and weaknesses affecting digital assets and computer networks. Analytical Penetration Tester with over six years of hands-on experience in various domains such as security testing and penetration testing. Strong knowledge of network architectures, operating systems and cybersecurity tools. Confident and communicative professional proficient in scripting paired with familiarity of Unix and Windows. Collaborative team player committed to working with businesses and organizations to identify and resolve security vulnerabilities and weaknesses affecting digital assets and computer networks. Logical Penetration Tester polished in infiltrating computer systems to detect and address vulnerabilities and reviewing and providing feedback for information security fixes. Offering six-year background in Cybersecurity paired with excellent insight into computer security, forensics and systems analysis. Meticulous and detail-oriented professional certified in Penetration Testing. Bringing outstanding troubleshooting, problem-solving and documentation abilities.

Overview

13
13
years of professional experience
1
1
Certification

Work History

Penetration Tester - Consultant

CH Viswanath And Associates
06.2016 - Current
  • Performed penetration testing on Byte Security's infrastructure and vulnerability assessment of database servers
  • Reviewed policies and act like a Subject Matter Expert on best practice. Verified SSL authentication for secure applications development on Web Servers
  • Performed dynamic and static analysis of web application using IMB AppScan. Analyze systems for potential vulnerabilities that may result from improper system configuration, hardware or software flaws, or operational
  • Scanned Financial database for Byte Security's clients for vulnerabilities based on the RESTful architectures. Conducted white/gray box penetration testing on the financial systems using Kali Linux, Cobalt Strike
  • Reviewed security documentation and make recommendation. Assisted in conference call meeting with Developer to mitigate vulnerability findings
  • Port scan servers using NMAP and close all unnecessary ports to reduce the attack surface
  • Performed live packet data capture with Wireshark to examine security flaws. Used LDAP injections techniques of exploiting Web applications that use client supplied data
  • Ran vulnerability and compliance scanning on test machines and reviewed security standard and Minimum Security Baseline for the client. Assisted on Monthly conference call to discuss implementation and upgrade of critical infrastructure

Security Analyst

Karvy Realty (India) Limited
07.2014 - 06.2016
  • Monitored SIEM and IDS/IPS feeds to identify possible enterprise threats. Investigate and triage threats to determine nature of incident
  • Collaborated with fellow analyst and leadership to develop and streamline operational guidelines
  • Perform analytical support of security incident calls across the enterprise
  • Helped to research open-source intelligence feeds for current and emerging threat information
  • Vulnerability Management – collaborated with other team members
  • Risk Assessment Support – Supported routine and ad hoc audits
  • Reporting, Metrics, Deliverables – Provided concise and professional deliverables for architecting and implementing Enterprise-level logging and security event information management solution.
  • Design alerting, communications, workflows and training of other IT users.
  • Assist in engineering integration to other key security systems

Security Officer

Karvy Realty (India) Limited
07.2012 - 07.2014
  • Served as the primary responder for managed security incidents pertaining to client firewalls and all network infrastructure component
  • Troubleshoot and researched security incidents using SIEM applications, McAfee Enterprise Security Manager, McAfee Endpoint Protection, IBM Qradar Security Intelligence Platform and HP ArcSight
  • Responsible for providing remote consulting services to assist with deployment of network infrastructure configurations across multiple product vendors and technologies
  • Served as the primary responder for managed security incidents pertaining to client firewalls and all network infrastructure components
  • Event analysis and correlation using multiple log sources including Windows / Linux / Cisco ASA systems and SIEM solutions
  • Investigating logs and payloads for server crashes/core dumps, DDoS attacks, SQL/XSS, SPAM, etc
  • Provide root cause analysis and remediation techniques for clients in regards to security incidents and governance documents
  • Collaborate with team members in tuning SIEM applications in an effort to establish a baseline for network activity and rule out false positive events

Network Administrator

Karvy Realty (India) Limited
07.2011 - 08.2012
  • Involved in complete LAN, WAN development (including IP address planning,designing,installation,configuration, testing, and maintenance)
  • Used Layer 3 protocols like EIGRP and BGP to configure Routers in the network
  • Implemented redundancy /failover using HSRP
  • Used Network monitoring tools to ensure network connectivity and Protocol analysis tools to assess and pinpoint networking issues causing service disruption
  • Updated documentation as necessary

Education

CISA - Certified Information Systems Auditor

ISACA
Illinois, USA
10.2021

Chartered Accountant -

ICAI
New Delhi, India
05.2007

Skills

  • Kali Linux, Nmap, Burpsuite, Metasploitable 2, Wireshark
  • Web Application, Wireless Penetration Testing - WPA, WPA2, WEP
  • Antivirus solutions including spyware, malware, etc
  • Hardware and software troubleshooting
  • Network vulnerability scan and penetration testing
  • Familiar with password hash cracking MD5, SHA1, SHA2, etc
  • Familiar with routers and switches configuration and installation
  • Familiar with IP security camera installation
  • Real-time traffic analysis, network IDS and packet dissection using WireShark
  • Experience with tools: Aircrack-ng, Hydra, Burpsuite, Metasploit, OWASP-ZAP Nmap, Wireshark, Sqlmap, John-Ripper, Nesuss
  • Knowledge of Heartbleed, ShellShock and POODLE
  • Steganography
  • Crisis Management Specialist
  • Knowledge of operating systems, application software and cyber security tools Remote access support

Certification

CISA - Certified Information Systems Auditor

Certificate Program in Red Team - Cybersecurity - IIT Kanpur

Python Full Stack Development

Timeline

Penetration Tester - Consultant

CH Viswanath And Associates
06.2016 - Current

Security Analyst

Karvy Realty (India) Limited
07.2014 - 06.2016

Security Officer

Karvy Realty (India) Limited
07.2012 - 07.2014

Network Administrator

Karvy Realty (India) Limited
07.2011 - 08.2012

CISA - Certified Information Systems Auditor

ISACA

Chartered Accountant -

ICAI

CISA - Certified Information Systems Auditor

Certificate Program in Red Team - Cybersecurity - IIT Kanpur

Python Full Stack Development

VISWANATH CHIRRAVURI