Currently working as Assistant Manager in Security auditing domain.
Having knowledge related to ITGC and SOX 404 controls.
Having conceptual knowledge related to Data Privacy
Having good knowledge on Security controls, CIATriad, Cyber threats.
Having good conceptual knowledge related to Identity and access management concepts like identification,Authorization concepts, and AAA architecture, Access Control List, Password Security
Hands on experience on doing theEthical Hacking (stages: Foot printing, Scanning, Enumeration, Gaining
Access, Privilege Escalation) using tools in Kali Linux
Knowledge on industry-standard security testing tools such as Burp Suite, Nessus,NMap, Metasploit.
Implement processes and manage tools used to identify vulnerabilities and track their remediation.
Good Understanding of OWASP top 10 vulnerabilities and howto prevent them.
Conceptual knowledge onCryptography like Symmetric & Asymmetric key encryptions, Hashing, symmetric
algorithms like DES, 3DES, AES, IDEA and asymmetric algorithm likeRSA, Daffie-Helman.
Good Knowledge on OSI ReferenceModel & TCP/IP Model, Security concepts.
Knowledge on TCP/IP, HTTP, HTTPS, SMTP, DNS, DHCP, POP3, IMAP, SNMP, VPNandFirewall.
Conceptual Knowledge onCyber Security Policies, Audit Planning, Risk Management
Good communication, problemsolving skills and the ability to acquire new skills in a timely manner.
Good knowledge on Wire shark activities (Sniffing, Packet analysis)
Good Knowledge onChain of custody Standard Operating procedures which make the digitalforensic
Investigations are more accurate.
Curriculum:
•Basics of Computer Networks
•Basics of Information Security
•Data Protection
•Cryptography
•Data Loss Prevention
•Identity and Access Management
•Network Security
•Web Application Security
•Security Auditing
•Data Privacy
•Digital Forensics
Certifications:
CompTIA Security + certification from CompTIA.
Privacy Ops certification from Securiti Academy and earned 4 IAPP credits.
Diploma inCyber Security and Ethical Hacking fromNational Skill Development Corporation
Post GraduateDiploma in Computer Science certification fromISO
Technical Skills:
Data Loss Prevention Tools: Symantec, Zscaler and CASB
Data Privacy
Compliance(Legal Regulatory and Mandatory)
ITGC and SOX404
Vulnerability Assessment & Penetration testing tools: NMap, Nessus, Wire shark,
Web Application Security tools: SQL Map, Burp suite
Frameworks: Metasploit, PCIDSS, OWASP Top.
Guidance on Certification:
•Free industry recongnised certifications and also masters certification will be guided with the help of free learning catalogue related to various domains
LAB:
1.Practicals regarding OWASP TOP10 vulnerabilities
2. Reconisiance tools : Dirbuster, Sublime, Word press, Drupal
3.Scanning tools:NMAP
4.Vulnerability Assessment and Penetration Testing tools:SQL MAP,Nikto, Burpsuite