About
Results-driven Information Security Consultant with 24 months of hands-on experience in Vulnerability Assessment & Penetration Testing (VAPT), Source Code Analysis, and Security Monitoring. Skilled in securing web, mobile, API, network, and cloud environments for banking, fintech, healthcare, and SaaS industries. Adept at managing end-to-end security engagements from scoping and prerequisites gathering to testing, exploitation, reporting, and client coordination. Experienced in delivering CERT-IN compliant security assessments with actionable remediation guidance.
Skills & Expertise (17)
Work Experience
Information Security Consultant
CyberSigma Consulting Services
Sep 2024 - Present
Led web application VAPT for a banking client, acting as primary POC and delivering a CERT-IN compliant report with detailed impact analysis and remediation steps. Executed network vulnerability assessment and penetration testing for an internal network, using Nmap and Nessus for discovery and scanning, and compiling compliance-focused documentation. Performed Static Application Security Testing (SAST) using Fortify, validating vulnerabilities and creating detailed findings with POC and remediation guidance. Conducted mobile application VAPT for iOS and Android, utilizing Memu Emulator and ImmuniWeb for automated scans, and Burp Suite for manual testing. Coordinated with clients for scoping, prerequisites gathering, and follow-ups, ensuring timely delivery of security assessments and updated compliance reports. Performed Approved Scanning Vendor (ASV) scans using Qualys tools for compliance and vulnerability assessment.
Cyber Security Analyst
Senseasy IT
Jan 2024 - Sep 2024
Conducted penetration testing and vulnerability assessment on web applications using manual and automated methods, identifying OWASP Top 10 issues such as SQLi, XSS, and CSRF. Prepared detailed security assessment reports with vulnerability descriptions, impact analysis, proof of concept, and remediation recommendations.
Education
Master of Computer Application (MCA) - Sharda University
2022 - 2024 · Afghanistan
Bachelor of Computer Application (BCA) - Chaudhary Charan Singh University
2019 - 2022 · Afghanistan
Intermediate (CBSE) - Greater Valley School
2018 - 2019 · Afghanistan