About
Application Security Analyst with 2.9 years of experience in Web and API Security Testing. Skilled in performing Dynamic (DAST) and Static (SAST) security assessments using tools like Burp Suite, Checkmarx, Web Inspect, Nessus, and OWASP ZAP. Strong expertise in OWASP Top 10 vulnerability analysis, manual penetration testing, false positive elimination, and remediation validation. Experienced in conducting vulnerability assessments, threat modeling, and delivering technical and executive security reports. Passionate about strengthening application security posture and reducing organizational risk.
Skills & Expertise (31)
Work Experience
Analyst
Cognizant
Jul 2022 - Oct 2024
Performed DAST using Burp Suite and WebInspect. Conducted SAST using Checkmarx. Identified and validated OWASP Top 10 vulnerabilities. Eliminated false positives and conducted manual verification. Assigned severity using CVSS scoring. Conducted remediation validation and retesting. Delivered technical and executive-level security reports. Performed threat modeling sessions with development teams.
Freelancer
NTT DATA
Aug 2025 - Present
Education
B Tech - CV Raman Global University
- 2022 · Afghanistan