About
Experienced Security Analyst with hands-on expertise in application security testing, vulnerability assessments, and compliance audits. Skilled in identifying security risks, performing penetration testing, and delivering actionable remediation strategies across enterprise environments.
Skills & Expertise (26)
Work Experience
Security Analyst
Tech Mahindra
Present - Present
Delivered Information Security, Governance, Risk, and Compliance solutions, ensuring secure project operations aligned with industry standards. Performed Web, Application, and API Security Testing including VAPT, WAPT, and penetration testing to identify and mitigate vulnerabilities. Conducted Cloud Security Assessments and Infrastructure Audits, evaluating risks across enterprise systems and recommending remediation strategies. Executed Application Audits, Delivery Audits, and Corporate Services Security Reviews to ensure adherence to security policies and ISO 27001 controls. Participated in external audits including ISO/IEC 27001, TISAX, and SOC 2 assessments, supporting compliance validation activities. Assisted in Vulnerability Management activities including risk analysis, threat evaluation, and compliance validation. Utilized security testing tools and methodologies aligned with OWASP Top 10, API Security Top 10, and industry best practices. Supported multiple security assessments by documenting findings and providing clear, actionable remediation guidance.
Cybersecurity Intern (ARA Team / ARA SPOC)
Zidio Development Pvt. Ltd
Present - Present
Performed Application Risk Assessments (ARA) to identify security gaps, evaluate threats, and recommend mitigation strategies. Acted as ARA SPOC, coordinating with stakeholders to review application architectures and ensure compliance with security controls. Conducted security evaluations across web applications and enterprise systems, focusing on risk identification and remediation planning. Assisted in vulnerability analysis, risk classification, and prioritization of security findings based on business impact. Supported application security reviews aligned with OWASP Top 10 and industry-standard risk assessment methodologies. Collaborated with cross-functional teams to implement risk mitigation measures and strengthen application security posture. Documented assessment findings and provided clear, actionable recommendations to improve security and compliance.
Education
MSc Data Science - Reva University
- · Afghanistan
BCA - Ramaiah Institute of Management
- · Afghanistan
High School - Aashley International School
- · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation
Skills (26)
Click a skill to find developers with the same skill