Summary
Overview
Work History
Education
Skills
Tools
Certification
Accomplishments
HOBBIES AND INTRESTS
Timeline
Generic
Yogesh Tiratkar

Yogesh Tiratkar

Pune

Summary

Results-driven Cybersecurity Professional with 3+ years of experience in VAPT, specializing in Web and Network security assessments. Proven expertise in identifying and exploiting vulnerabilities using tools such as Burp Suite, Nessus, Metasploit, OWASP ZAP, Nikto, and Wireshark. Actively involved in security audits for banking and automobile sectors, ensuring alignment with OWASP and NIST frameworks. Skilled in risk-based remediation, DLP monitoring, and translating complex findings into actionable security improvements. Currently preparing for eCPPT (Red Teaming) to strengthen offensive security expertise.

Overview

6
6
years of professional experience
4
4
Certifications

Work History

Analyst-Information Security

ANA Cyber Forensic Pvt. Ltd.
04.2024 - Current
  • Conducted exploitation-driven security assessments using Burp Suite, OWASP ZAP, Nessus, and Metasploit to identify enterprise risks.
  • Analyzed data to pinpoint potential security vulnerabilities.
  • Provided remediation support to developers for identified vulnerabilities.
  • Exploited vulnerabilities to demonstrate unauthorized access and privilege escalation.
  • Prepared detailed penetration testing reports outlining findings and actionable recommendations for clients.
  • Utilized security tools such as Nmap and Nessus for thorough assessments of networks and web applications.
  • Collaborated with team members to implement proactive measures, significantly reducing security flaws.
  • Participated in comprehensive security audits of banking institutions.

Cyber Security Analyst

Cosmos Co-operative Bank Pvt. Ltd
Pune
10.2022 - 03.2024
  • Identified & configured security use cases, correlation rules & reports.
  • Monitoring computer networks for security issues.
  • Performing Cyberdrill activities conducted by IDRBT, RBI for Bank environment.
  • Analysis of phishing emails reported by internal end users.
  • Performs assets management and User access reviews.
  • Responsible for doing WEB, API Pentesting.
  • Analyze data to identify potential security risks.
  • Responsible for Remediation Support for identified Vulnerabilities
  • Exploiting identified vulnerabilities to gain unauthorized access, escalate privileges, or perform other malicious actions.
  • Coordinate with other team member to resolve security issues
  • Log analysis and handle DLP.
  • Creation, modification and finetuning the policies in DLP

Cyber Security Intern

Information sharing and Analysis Center
08.2021 - 12.2021
  • Learn about OWASP TOP 10.
  • Conducting vulnerability assessments and penetration tests on web applications.
  • Identifying and exploiting security vulnerabilities, including common issues like SQL injection, cross-site scripting (XSS), or misconfigurations.
  • Utilizing tools and frameworks like Burp Suite, Metasploit, or Nmap for testing and analysis.

Student Intern

Resource Unit for Defense, Resilience and Analytics
07.2020 - 11.2020
  • Had a hands-on experience on kali Linux and got a chance to learn about networking and security to understand how the things in cyber security work also learn about Web Pentesting.

Education

Bachelor of Science - Computer Science and Engineering

H.V.P. M's College of Engineering
Amravati, India
08.2022

HSC -

Shri Shivaji science College
Amravati, MH, India
06.2017

SSC -

Shri Krishna High School
Amravati, MH, India
07.2015

Skills

  • Vulnerability assessment and penetration testing
  • Security auditing and compliance
  • Data loss prevention strategies
  • Risk analysis and management

Tools

  • Burp Suite
  • Metasploit-Framework
  • OWASP ZAP
  • Nessus
  • Nmap
  • theHarvester
  • Maltego
  • Shellter
  • Nikto
  • Sqlmap

Certification

ISO 27001:2022 Lead Auditor

Accomplishments

  • Received Hall of Fame & Bounty for reporting bug in Website (Conceptboard.com, Click time, Hatch, etc.)
  • Winner of hackathon 2k18 held by Net Monastery.
  • Securing Top 100 in the Cybersecurity - Brute Force 2.0 event organized by Hacker Earth.
  • Securing Top 100 in the Cybersecurity - Brute Force 3.0 event organized by Hacker Earth.

HOBBIES AND INTRESTS

  • Traveling to increase flexibility and adaptability
  • Photography to develop conceptual skills, technical expertise, and how to collaborate with others.
  • Sports to develop self-discipline, patience, and helps bounce back from disappointment.

Timeline

Analyst-Information Security

ANA Cyber Forensic Pvt. Ltd.
04.2024 - Current

Cyber Security Analyst

Cosmos Co-operative Bank Pvt. Ltd
10.2022 - 03.2024

Cyber Security Intern

Information sharing and Analysis Center
08.2021 - 12.2021

Student Intern

Resource Unit for Defense, Resilience and Analytics
07.2020 - 11.2020

Bachelor of Science - Computer Science and Engineering

H.V.P. M's College of Engineering

HSC -

Shri Shivaji science College

SSC -

Shri Krishna High School
Yogesh Tiratkar