With over nine years of experience in cybersecurity, I bring specialized expertise in Application Security, Penetration Testing, and DevSecOps, with a key focus on Sonatype Nexus, Artifactory, and open-source dependency management. My background as a Senior Cyber Security Engineer has equipped me with a strong command of SAST and DAST methodologies, enabling secure development practices from code to deployment.
My professional journey encompasses various domains, including API and Web Application Penetration Testing, Network Security, and Cloud Security. As a freelancer, I offer extensive experience in identifying vulnerabilities and fortifying digital environments, making me a valuable partner in safeguarding applications and networks. I am proficient in tools like Burp Suite, Zap Proxy, Nmap, Wireshark, Nessus, and multiple platforms under the Kali Linux suite, allowing me to conduct thorough vulnerability assessments and penetration testing.
In recent projects, I’ve led initiatives at Walmart and other top-tier organizations, implementing robust security strategies, managing risk assessments, and conducting Red Team assessments. My role extends beyond technical execution; I engage with clients to understand their unique security needs, tailor VAPT strategies, and present risk governance dashboards to senior stakeholders.
My technical skill set also includes programming in Java, Python, JavaScript, and database management with MySQL, alongside a comprehensive understanding of Agile and Waterfall SDLC models, SSDLC, and Vulnerability Management. Additionally, I have hands-on experience with SIEM platforms like Splunk and QRadar, and cloud security across AWS and Azure environments.
Beyond technical prowess, I have contributed to cybersecurity thought leadership through published articles on Information Security, focusing on topics such as policy, implementation, and awareness. I am a proactive learner, staying ahead of industry advancements, and I thrive in both team and individual roles, leveraging strong analytical, leadership, and communication skills to exceed client expectations and contribute meaningfully to organizational goals.
Core Competencies:
Web Application VAPT: Expertise in OWASP Top Ten, Burp Suite, Nessus, Nexpose, SQL Map, and more.
Cloud Security: Hands-on experience with AWS and Azure.
Network Security: Skilled in Darktrace, Wireshark, Nessus, and Nmap.
Security Tools: Familiar with SAST, DAST, and defect tracking through JIRA and Dojo.
I am committed to delivering secure, resilient solutions tailored to business needs, while continuously evolving my knowledge to tackle the latest cybersecurity challenges.