Summary
Overview
Work History
Education
Skills
Websites
Personal Information
Certification
Languages
Timeline
Generic
Yash Shukla

Yash Shukla

Bengaluru

Summary

Experienced Information Security Consultant with over 6 years of experience in Cybersecurity. Excellent reputation for resolving problems and improving customer satisfaction.

Overview

6
6
years of professional experience
1
1
Certification

Work History

Information Security Consultant

StickmanCyber
Bengaluru, Karnataka
06.2021 - Current
  • Performed risk analyses to identify appropriate security countermeasures
  • Conducted various cybersecurity posture assessment against NIST and ISO 27001
  • Conducted PCI DSS gap assessment
  • Performed audits for various environments and businesses
  • Risk Assessment based on NIST 800-53 (Cybersecurity Framework)
  • Performed Cyber Security Maturity Audits and creating assessment reports
  • Acted as Consultant on demand for various clients providing Cybersecurity advisory service and helping clients meet cybersecurity requirements
  • Acted as Single Point of Contact (SPoC) to ensure smooth communication between the various internal team and clients, ensuring all commitments as per the SoW are achieved
  • Review of client network infrastructure, policies, and procedures
  • Managing Internal ISMS

Associate Consultant

Capgemini India
Bengaluru, Karnataka
09.2019 - 06.2021

• Conducting ISO 27001:2013 Application and Process Internal Audit and reporting Non-conformities and OFI’s as part of the report
• Delivering security awareness training and customer process training to the new joiners
• Delivering security talks to the Capgemini Cybersecurity business unit on various information security topics on ad-hoc basis
• Preparing monthly security dashboard for the various activities carried out as part the project and presenting it to the Customer
• Vulnerability Management:
 Preparing vulnerability assessment report as per the vulnerability for servers and applications
 Raising a Jira ticket for the vulnerability mitigation
• Managing Security Operations such as:
 monitoring daily and monthly IDS/IPS hits on the Customer applications from different Countries and reporting suspicious hits
 Monitoring and analysing Radware daily and monthly reports and reporting any malicious traffic received on the applications

Security Consultant

ISECURION Technologies & Consulting PVT LTD
Bengaluru, Karnataka
12.2017 - 09.2019

• ISO 27001:2013 Implementation and Auditing for the clients:
 Performing Gap assessment
 Conducting Risk Assessments and documenting treatment plan
 Documenting Statement of Applicability
 Documenting various policies and procedures for ISMS
 Conduct Information security awareness training for the employees
 Helping in implementing security controls identified in risk treatment
 Conducting Internal audit
 Providing support during external audit
• Physical Security Assessment for the one of the BPO and Consulting firm in India
• Vulnerability Assessment:
 Carrying out monthly vulnerability assessment for the client using Nessus tool and providing a walkthrough to the client
 Supporting client in closing the vulnerabilities
• Managing Internal ISMS

Associate Consultant

vAptus Consultancy Service Pvt. Ltd
Bengaluru, karnataka
05.2016 - 12.2017

• Vulnerability Assessment of Servers / Network device
 Conducting vulnerability assessment for the clients by using Nessus tool, Nmap and Qualys Guard
 Documenting vulnerability assessment report for the clients
 Provided report walkthrough and helped in mitigation of vulnerabilities
• Carried out application security testing for the client applications both manually and using tools such as Acunetix and Burpsuite

Education

Bachelor of Engineering - Electronics And Communications Engineering

Technocrats Institute of Technology And Science
Jhansi
06.2014

Skills

  • NIST Cybersecurity Framework
  • Client Support
  • Risk Management Framework
  • Payment Card Industry Data Security Standard (PCI DSS)
  • Internal Control Systems
  • Vulnerability Management
  • Knowledge on tools like Nessus, Qualys and Nmap
  • ISO 27001 and 31000
  • GDPR

Personal Information

Gender : Male

Permanent Address : 307, Opera Canopus Apartment Maruthi Layout, Devarachikkana Halli, Bengaluru, Karnataka 560076

Certification

  • CISA - Certified Information Systems Auditor (Training)
  • ITIL4 Foundation Certificate in IT Service Management GR671188330YS
  • Qualys Certified Specialist
  • BSI ISO 27001:2013 Certified Lead Auditor ENR-00620049

Languages

English
Advanced (C1)
Hindi
Bilingual or Proficient (C2)

Timeline

Information Security Consultant

StickmanCyber
06.2021 - Current

Associate Consultant

Capgemini India
09.2019 - 06.2021

Security Consultant

ISECURION Technologies & Consulting PVT LTD
12.2017 - 09.2019

Associate Consultant

vAptus Consultancy Service Pvt. Ltd
05.2016 - 12.2017

Bachelor of Engineering - Electronics And Communications Engineering

Technocrats Institute of Technology And Science
Yash Shukla