Education
M.Tech in Cyber Security
Ratan Tata Maharashtra State Skills University
Advanced specialization in cybersecurity and information security.
- ›Advanced coursework in penetration testing, cryptography, and security architecture
- ›Research focus on modern cybersecurity challenges and solutions
- ›Specialized training in enterprise security and threat management
B.Tech in Information Technology
G H Raisoni College of Engineering & Management
Foundation in computer science, programming, and security principles.
- ›Strong foundation in programming, networking, and system administration
- ›Developed interest in cybersecurity and ethical hacking
- ›Participated in various technical workshops and competitions
Certifications
Certified Ethical Hacker (CEH) v12
EC-Council
#ECC9268745031
Valid: Jan 2024 – Jan 2027
eLearn Junior Penetration Tester (eJPT)
eLearnSecurity
#97339290
Valid: March 2024 – March 2027
API Security Fundamentals
API University
OWASP API Security Top 10
API University
Cisco CCNA 200-301
Udemy
Ethical Hacking Essentials (EHE)
Code Red
TryHackMe Learning Paths
TryHackMe
Career
Security Analyst
IBM
Enterprise security operations and threat management at global scale.
Key Responsibilities
- ›Monitor and analyze security events across enterprise infrastructure
- ›Conduct security assessments and vulnerability management for enterprise clients
- ›Implement security controls and best practices for cloud and on-premise environments
- ›Collaborate with global security teams on incident response and threat intelligence
- ›Develop and maintain security documentation and compliance reports
- ›Provide security consulting and recommendations to enterprise stakeholders
- ›Work with cutting-edge security tools and technologies in IBM's security ecosystem
Associate Information Security Consultant
SecurEyes Techno Pvt Ltd
Systematic vulnerability identification and penetration testing.
Key Responsibilities
- ›Perform systematic identification of vulnerabilities in systems, applications, and networks
- ›Use automated tools and manual techniques to generate comprehensive reports
- ›Simulate real-world attacks to exploit vulnerabilities in systems, applications, and APIs
- ›Document findings with detailed proof-of-concept (PoC) and recommend mitigation strategies
- ›Apply cybersecurity frameworks (OWASP, NIST, ISO 27001)
- ›Use Nessus, Metasploit, Burp Suite for assessments
- ›Hands-on experience with web application and API security testing
Cyber Security Consultant
Decypher Technologies
Comprehensive security testing and vulnerability management.
Key Responsibilities
- ›Perform Vulnerability Assessment (VA) and Penetration Testing (PT) on Servers, Endpoints, and Network Devices
- ›Manual testing on web applications and API security testing
- ›Web application scanning using Static and Dynamic approach with Burp Suite Pro based on OWASP Top 10
- ›Find vulnerabilities and report to appropriate teams with solutions for patching
- ›Managing web application security and coordinating between development team and stakeholders
- ›Responsible for patch management and bug fixing of web applications
- ›Providing Threat Intelligence reports and risk matrix monthly
Skills
Cybersecurity Knowledge
Web Application Security
Identifying and exploiting vulnerabilities in modern web applications following OWASP methodology.
API Security
Testing REST and GraphQL APIs for authentication, authorization, and business logic flaws.
Penetration Testing
Simulating real-world attacks against networks, systems, and applications.
Vulnerability Assessment
Systematic scanning and manual verification to uncover security weaknesses.
Application Security
Securing the full software lifecycle from design through deployment.
Database Security
Hardening databases against injection, misconfiguration, and access-control flaws.
Secure Configuration
Auditing servers, cloud, and network devices against security baselines.
Source Code Review
Manual and static analysis to catch vulnerabilities before they reach production.
Security Automation
Scripting and tooling to scale repeatable security testing workflows.
Projects
Enterprise Vulnerability Assessment Program
Led systematic vulnerability assessments across servers, endpoints, and network devices, prioritizing findings by risk and coordinating remediation with stakeholders.
Web Application & API Security Testing
Performed manual and automated security testing of web applications and APIs against the OWASP Top 10, delivering proof-of-concept exploits and remediation guidance.
Penetration Testing Engagements
Simulated real-world attacks across client environments, documenting findings and mitigation strategies aligned with OWASP, NIST, and ISO 27001 frameworks.
CTF
Proving Grounds
Offensive Security's practice lab environment with real-world vulnerable machines for hands-on penetration testing.
Hack The Box
Realistic vulnerable machines used to sharpen penetration testing techniques.
TryHackMe
Guided rooms and paths used to build practical offensive security skills.
PortSwigger Academy
Structured labs covering web and API vulnerability classes in depth.
Cybersecurity Tools
Burp Suite
Web App TestingPrimary tool for manual and automated web application security testing.
Nmap
Network ReconNetwork discovery and port scanning for infrastructure assessments.
Metasploit
ExploitationExploitation framework used for penetration testing engagements.
ffuf
FuzzingFast web fuzzer for content discovery and parameter fuzzing.
Nessus
Vulnerability ScanningAutomated vulnerability scanning across networks and endpoints.
OWASP ZAP
Web App TestingOpen-source proxy for automated and manual application security testing.
Postman
API TestingAPI request tooling used for functional and security testing of endpoints.
Wireshark
Network AnalysisPacket-level traffic analysis for network security investigations.
Kali Linux
Operating SystemPrimary penetration testing OS with a full toolkit pre-installed.