My Logical Side

Education, career, cybersecurity knowledge, and everything technical that shapes how I think.

Education

2024 – 2026Pune

M.Tech in Cyber Security

Ratan Tata Maharashtra State Skills University

Advanced specialization in cybersecurity and information security.

  • ›Advanced coursework in penetration testing, cryptography, and security architecture
  • ›Research focus on modern cybersecurity challenges and solutions
  • ›Specialized training in enterprise security and threat management
2018 – 2022Pune

B.Tech in Information Technology

G H Raisoni College of Engineering & Management

Foundation in computer science, programming, and security principles.

  • ›Strong foundation in programming, networking, and system administration
  • ›Developed interest in cybersecurity and ethical hacking
  • ›Participated in various technical workshops and competitions

Certifications

Certified Ethical Hacker (CEH) v12

EC-Council

#ECC9268745031

Valid: Jan 2024 – Jan 2027

CertifiedEthical Hacking

eLearn Junior Penetration Tester (eJPT)

eLearnSecurity

#97339290

Valid: March 2024 – March 2027

CertifiedPenetration Testing

API Security Fundamentals

API University

CertifiedAPI Security

OWASP API Security Top 10

API University

CertifiedAPI Security

Cisco CCNA 200-301

Udemy

CompletedNetworking

Ethical Hacking Essentials (EHE)

Code Red

CertifiedEthical Hacking

TryHackMe Learning Paths

TryHackMe

CompletedPenetration Testing

Career

2021
Curiosity sparked
COVID lockdown — discovered cybersecurity
2022
Classroom training
Moved to Pune, joined Sysap Technologies
2022
Foundation strengthened
Linux from SevenMentor, Networking from RST Forums
2023
First job
Cyber Security Consultant at Decypher Technologies
2024
Growing expertise
Associate IS Consultant at SecurEyes
2024
Advanced certifications
CEH v12, eJPT, API Security
2026
Enterprise security
Security Analyst at IBM
February 2026 – PresentIndia● Current

Security Analyst

IBM

Enterprise security operations and threat management at global scale.

Key Responsibilities

  • ›Monitor and analyze security events across enterprise infrastructure
  • ›Conduct security assessments and vulnerability management for enterprise clients
  • ›Implement security controls and best practices for cloud and on-premise environments
  • ›Collaborate with global security teams on incident response and threat intelligence
  • ›Develop and maintain security documentation and compliance reports
  • ›Provide security consulting and recommendations to enterprise stakeholders
  • ›Work with cutting-edge security tools and technologies in IBM's security ecosystem
Threat IntelligenceIncident ResponseCloud SecurityEnterprise SecurityIBM QRadarNessusSplunkSIEM
November 2024 – February 2026Mumbai

Associate Information Security Consultant

SecurEyes Techno Pvt Ltd

Systematic vulnerability identification and penetration testing.

Key Responsibilities

  • ›Perform systematic identification of vulnerabilities in systems, applications, and networks
  • ›Use automated tools and manual techniques to generate comprehensive reports
  • ›Simulate real-world attacks to exploit vulnerabilities in systems, applications, and APIs
  • ›Document findings with detailed proof-of-concept (PoC) and recommend mitigation strategies
  • ›Apply cybersecurity frameworks (OWASP, NIST, ISO 27001)
  • ›Use Nessus, Metasploit, Burp Suite for assessments
  • ›Hands-on experience with web application and API security testing
Web Application SecurityAPI SecurityPenetration TestingVulnerability AssessmentBurp Suite ProNessusMetasploitNmap
June 2023 – November 2024Pune

Cyber Security Consultant

Decypher Technologies

Comprehensive security testing and vulnerability management.

Key Responsibilities

  • ›Perform Vulnerability Assessment (VA) and Penetration Testing (PT) on Servers, Endpoints, and Network Devices
  • ›Manual testing on web applications and API security testing
  • ›Web application scanning using Static and Dynamic approach with Burp Suite Pro based on OWASP Top 10
  • ›Find vulnerabilities and report to appropriate teams with solutions for patching
  • ›Managing web application security and coordinating between development team and stakeholders
  • ›Responsible for patch management and bug fixing of web applications
  • ›Providing Threat Intelligence reports and risk matrix monthly
Web Application SecurityAPI SecurityVulnerability AssessmentPenetration TestingBurp Suite ProNessus ProfessionalNmapOWASP ZAP

Skills

Web Application Security
offensive
API Security
offensive
Vulnerability Assessment
offensive
Penetration Testing
offensive
Linux Security
infrastructure
Cloud Security
infrastructure
OWASP Top 10
framework
Burp Suite Pro
tools
Nessus Professional
tools
Metasploit
tools
Nmap
tools
Source Code Review
offensive
Threat Intelligence
defensive
Incident Response
defensive

Cybersecurity Knowledge

Web Application Security

Identifying and exploiting vulnerabilities in modern web applications following OWASP methodology.

API Security

Testing REST and GraphQL APIs for authentication, authorization, and business logic flaws.

Penetration Testing

Simulating real-world attacks against networks, systems, and applications.

Vulnerability Assessment

Systematic scanning and manual verification to uncover security weaknesses.

Application Security

Securing the full software lifecycle from design through deployment.

Database Security

Hardening databases against injection, misconfiguration, and access-control flaws.

Secure Configuration

Auditing servers, cloud, and network devices against security baselines.

Source Code Review

Manual and static analysis to catch vulnerabilities before they reach production.

Security Automation

Scripting and tooling to scale repeatable security testing workflows.

Projects

Enterprise Vulnerability Assessment Program

Led systematic vulnerability assessments across servers, endpoints, and network devices, prioritizing findings by risk and coordinating remediation with stakeholders.

Vulnerability AssessmentRisk ManagementNessus

Web Application & API Security Testing

Performed manual and automated security testing of web applications and APIs against the OWASP Top 10, delivering proof-of-concept exploits and remediation guidance.

Web Application SecurityAPI SecurityBurp Suite

Penetration Testing Engagements

Simulated real-world attacks across client environments, documenting findings and mitigation strategies aligned with OWASP, NIST, and ISO 27001 frameworks.

Penetration TestingMetasploitNmap

CTF

Web ExploitationAPI SecurityLinuxWindowsPrivilege EscalationActive DirectoryPenetration Testing

Cybersecurity Tools

Burp Suite

Web App Testing

Primary tool for manual and automated web application security testing.

Nmap

Network Recon

Network discovery and port scanning for infrastructure assessments.

Metasploit

Exploitation

Exploitation framework used for penetration testing engagements.

ffuf

Fuzzing

Fast web fuzzer for content discovery and parameter fuzzing.

Nessus

Vulnerability Scanning

Automated vulnerability scanning across networks and endpoints.

OWASP ZAP

Web App Testing

Open-source proxy for automated and manual application security testing.

Postman

API Testing

API request tooling used for functional and security testing of endpoints.

Wireshark

Network Analysis

Packet-level traffic analysis for network security investigations.

Kali Linux

Operating System

Primary penetration testing OS with a full toolkit pre-installed.

Blogs / Technical Posts