2005-07 – 2009-07
completed
Computer Science
, India
- Document_Study_011.JPG
- Document_Study_012.pdf
- Document_Study_013.pdf
- Document_Study_014.JPG
Photos are only visible to registered employers
Register here
IT Security CoordinatorIndia |
6 years experience |
Birthday:
Nationality:
Indian
30811719
2005-07 – 2009-07
completed
2015-01 – Till now
• Plan,Execute & Manage Secure Code review.
• Assist programmers in mitigating vulnerabilities.
• Deliver Application Security & Awareness training to management & team members.
• Deploying and Maintaining Secure SDLC process.
• Perform GAP Analysis and recommend improvements in Secure SDLC Process.
• Perform Risk Assessment and recommend secure control to reduce the risk.
• Perform PCI-DSS v3.1 and PA-DSS v3.1 assessment.
• Perform Secure Architecture Review and provide secure solution.
• Plan,Execute & Manage Vulnerability Assessment.
• Assist pre-sales team on technical queries raised by prospective customers.
• Perform Threat Modeling.
Other profile data will become visible once you register
To register2013-11 – 2014-12
• Establish & Maintain Secure Development Lifecycle process Like Microsoft SDL ,Agile Security.
• Perform Web Application Vulnerability Assessment & Penetration Testing using tools like Burp Suite, OWASP ZAP Proxy, Acunetix, IBM AppScan, SQLMap , W3AF.
• Perform both manual & automated (Checkmarx) Secure Code Review against CWE/SANS Top 25 Software Errors.
• Assist programmers in mitigation.
• Provide secure solutions in .NET, JAVA based applications.
• Plan & Execute Post Production Security Reviews.
• Verify application security for adherence with PCI-DSS, PA-DSS & ISO 27000 System Development & Acquisition Standards.
• Analyze & Perform system abuse cases & business logic flaws.
2011-11 – 2013-06
• Verify the web application for OWASP Top 10 Vulnerabilities and reporting the risks.
• Perform Secure Code Review using CheckMarx.
• Maintaining Secure SDLC Process.
2009-12 – 2011-07
• Write & Execute Functional & Security Test Cases.
• Perform Black box testing like System Integration,UAT,Regression Test.
• Verifying application security for adherence with PCI-DSS,PA-DSS.
• Create Defect Report.
Further training
2016-02-13 – Till now
–
Certificate of participation in level A2
–
–
–
Application Security,Security Architecture,Firewall Exceptions,Administrator Rights Exceptions,Secure SDLC,CISSP Certified,Web Security,Information Security,Risk Analysis,Web Application Penetration Testing,Secure/Defensive Coding,PCI-DSS,Threat Modeling,PA-DSS,Security Testing,Vulnerability Management,OWASP,SANS/CIS Critical Controls,Privacy,ISO 27001,Goethe Zertifikat Deutsch B1 Lernen,Information Security,Cyber Security.