Back to Developers
priya kathroju

priya kathroju

Cyber Security Analyst

Hyderabad, India 3+ yrs exp 88 ยท Excellent

About

Cyber Security Analyst with 4+ years of experience in Vulnerability Assessment and Penetration Testing (VAPT), Web Application Security Testing, and API Security Testing, aligned with OWASP Top 10 standards. Skilled in identifying, validating, and reporting critical vulnerabilities โ€” including SQL Injection, XSS, CSRF, IDOR, Broken Authentication, and Access Control flaws โ€” using Burp Suite Professional, OWASP ZAP, Nessus, and IBM App Scan. Experienced in API security testing with Postman and SoapUI, network scanning with Nmap and Wireshark, and Android mobile application penetration testing. Proven track record supporting banking and financial services clients, partnering with development teams to remediate vulnerabilities and strengthen secure SDLC practices.

Skills & Expertise (35)

API Security Testing Intermediate
7.5/10
2
Years Exp
Burp Suite Professional Intermediate
7.5/10
2
Years Exp
Web Application VAPT Intermediate
7.5/10
2
Years Exp
Broken Authentication Intermediate
7.0/10
2
Years Exp
IDOR Intermediate
7.0/10
2
Years Exp
CSRF Intermediate
7.0/10
2
Years Exp
SQL Injection Intermediate
7.0/10
2
Years Exp
Access Control Intermediate
7.0/10
2
Years Exp
Session management Intermediate
7.0/10
2
Years Exp
Parameter Tampering Intermediate
7.0/10
2
Years Exp
OWASP ZAP Intermediate
7.0/10
2
Years Exp
OWASP Top 10 Intermediate
7.0/10
2
Years Exp
Business Logic Testing Intermediate
7.0/10
2
Years Exp
sslyze Intermediate
6.5/10
2
Years Exp
SoapUI Intermediate
6.5/10
2
Years Exp
Postman Intermediate
6.5/10
2
Years Exp
Nmap Intermediate
6.5/10
2
Years Exp
WIRESHARK Intermediate
6.5/10
2
Years Exp
IBM AppScan Intermediate
6.5/10
2
Years Exp
Nessus Intermediate
6.5/10
2
Years Exp
Secure SDLC Intermediate
6.5/10
2
Years Exp
Kali Linux Intermediate
6.0/10
2
Years Exp
Packet Analysis Intermediate
6.0/10
2
Years Exp
SSL Intermediate
6.0/10
2
Years Exp
SQLmap Intermediate
6.0/10
2
Years Exp
Java Intermediate
5.5/10
2
Years Exp
Python Intermediate
5.5/10
2
Years Exp
JavaScript Intermediate
5.5/10
2
Years Exp
Php Intermediate
5.5/10
2
Years Exp
MySql Intermediate
5.5/10
2
Years Exp
Oracle Intermediate
5.5/10
2
Years Exp
SQL Server Intermediate
5.5/10
2
Years Exp
Apache Intermediate
5.5/10
2
Years Exp
tomcat Intermediate
5.5/10
2
Years Exp
Windows Intermediate
5.5/10
2
Years Exp

Work Experience

Cyber Security Analyst

Capgemini

Mar 2024 - Present

Perform manual and tool-assisted web application penetration testing for internal and external banking applications using Burp Suite, SSLyze, and SoapUI, benchmarked against the OWASP Top 10. Conduct business logic testing to validate application functionality and ensure sensitive customer and financial data is properly protected. Identify and document high-severity vulnerabilities, including SQL Injection, XSS, CSRF, missing functional-level access control, and SSL/TLS misconfigurations. Author detailed vulnerability reports covering issue description, reproduction steps, risk rating, and remediation guidance for application stakeholders. Lead report-out calls with application managers to walk through findings and align on remediation timelines. Advise development teams on technology-specific, in-built security controls to resolve identified vulnerabilities. Partner with application teams throughout the assessment lifecycle, resolving technical blockers and promoting secure SDLC adoption to reduce release-related security risk.

Cyber Security Analyst

Wipro

Oct 2022 - Feb 2024

Conducted vulnerability assessments of internal and external-facing web applications using Burp Suite, Nessus, and OWASP ZAP. Performed Vulnerability Assessment and Penetration Testing (VAPT) using IBM App Scan across internal and external web applications. Executed API security testing with Postman, uncovering issues such as parameter tampering and unauthorized endpoint/method access. Carried out Android mobile application security testing to identify platform-specific vulnerabilities. Performed network scanning and packet analysis using Nmap and Wireshark to support infrastructure security assessments. Assessed applications against common attack vectors, including SQL Injection, XSS, CSRF, IDOR, and session management flaws per OWASP standards.

Education

Master of Computer Applications (MCA) - Osmania University

- ยท Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

๐Ÿ“ท Photo 10/10
๐Ÿ“„ Resume 10/10
๐Ÿ’ผ Job Title 10/10
โœ๏ธ Bio 10/10
๐Ÿ› ๏ธ Skills 20/20
๐ŸŽ“ Education 10/10
โฑ๏ธ Experience 13/15
๐Ÿ’ฐ Rate 0/5
๐Ÿ† Certs 0/5
โœ… Verified 5/5
Total Score 88/100

Profile Overview

Member sinceAug 2026