naveen reddy
Security Analyst
About
Cybersecurity and Technology Risk professional with 3 years of experience in Vulnerability Management, Cyber Risk Assessment, and Security Governance. Experienced in leading end-to-end vulnerability management programs across applications, infrastructure, and cloud environments, including risk assessment, remediation tracking, SLA monitoring, validation, and executive reporting. Skilled in risk-based vulnerability prioritization, stakeholder management, cyber risk reporting, security governance, and audit support. Proven ability to collaborate with cross-functional teams to reduce organizational risk, improve security posture, and support compliance with industry standards including NIST CSF.
Skills & Expertise (21)
Work Experience
Executive - Incident Response & Security analyst
Indusface pvt ltd (Client: HDFC ERGO)
May 2026 - Present
Lead enterprise-wide vulnerability management activities across critical business applications and infrastructure assets. Manage the complete vulnerability lifecycle including identification, risk assessment, prioritization, remediation tracking, validation, and reporting. Perform technology risk assessments to evaluate the business impact and risk exposure associated with identified vulnerabilities. Maintain vulnerability risk registers and monitor remediation activities against defined SLAs and organizational risk appetite. Prioritize vulnerabilities using CVSS scores, exploit intelligence, asset criticality, and business impact analysis. Coordinate remediation efforts across application, infrastructure, cloud, and development teams to ensure timely closure of security findings. Develop executive cyber risk dashboards, vulnerability metrics, SLA compliance reports, and security posture reports for management review. Escalate critical risks and overdue remediation activities to stakeholders and leadership teams through established governance channels. Support internal audits, compliance reviews, and risk governance initiatives by tracking findings through closure. Provide strategic security recommendations aligned with business, regulatory, and security requirements.
Security Lead - Vulnerability Management
Precise Testing Solution Pvt. Ltd. (Client: Aditya Birla Group)
Aug 2025 - May 2026
Led enterprise vulnerability management operations across applications, servers, and network infrastructure. Managed vulnerability assessment, analysis, prioritization, validation, reporting, and remediation tracking. Conducted Attack Surface Management (ASM) reviews to identify publicly exposed assets and attack vectors. Collaborated with IT, cloud, infrastructure, and application teams to address security findings. Developed risk reports, dashboards, and executive-level presentations. Conducted firewall rule reviews and security control assessments. Validated remediation activities through post-remediation verification testing. Assisted in compliance and governance activities related to security risk management.
Security Analyst - VAPT & Vulnerability Management
Precise Testing Solution Pvt. Ltd.
Sep 2023 - Aug 2025
Conducted Vulnerability Assessment and Penetration Testing (VAPT) on web applications, and enterprise infrastructure. Performed vulnerability scanning and validation using Tenable Nessus and industry-standard security tools. Identified and validated security vulnerabilities aligned with OWASP Top 10 and secure coding best practices. Performed secure source code reviews to identify application security vulnerabilities and coding flaws. Conducted web application security testing and manual verification of security weaknesses. Worked closely with infrastructure and business stakeholders to mitigate security risks.
Education
Bachelor of Technology (B.Tech) โ Computer Science & Engineering - Sri Venkateswara Institute of Technology
- ยท Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (21)
Click a skill to find developers with the same skill