About
Vulnerability Management analyst with more than 1 year supporting a major pharmaceutical enterprise at Cognizant. Hands-on with risk-based triage, validation, and prioritisation of vulnerabilities across enterprise, cloud, and application environments using Qualys. Strong in CVSS-based prioritisation, false-positive management, SLA governance, and clear reporting for technical and leadership stakeholders. Proficient in Linux, Python, and Bash.
Skills & Expertise (26)
Work Experience
Cyber Security Operation Analyst
Cognizant Technology Solutions Pvt ltd
Aug 2025 - Present
Managed the full vulnerability lifecycle across 100+ applications for a major pharma client — risk-based triage, validation, and prioritisation using CVSS — reducing open vulnerabilities from 2,000+ to ~400 in 8 months at 97%+ SLA compliance. Investigated and managed false positives to improve remediation accuracy; tracked vulnerabilities through to closure with clear ownership and escalation of overdue or high-risk items. Maintained trackers and dashboards documenting vulnerability status, remediation timelines, and closure actions — supporting internal audits and client compliance reviews. Produced weekly vulnerability dashboards, KPIs, and SLA metrics for client and leadership stakeholders, giving clear risk visibility to both technical and non-technical audiences. Coordinated with application, development, and DevOps teams to track remediation timelines and drive issues to closure across a 100+ application portfolio. Automated recurring reporting workflows using Python and Bash, reducing manual effort in dashboard and tracker maintenance. Maintained structured documentation and supported audit and compliance activities in a regulated pharma environment through evidence collection and reporting.
Cyber Security Intern
Cognizant Technology Solutions Pvt ltd
Mar 2025 - Aug 2025
Worked with Splunk SIEM for log analysis, security event monitoring, and basic alert triage. Explored Microsoft Defender EDR for endpoint threat detection and alert classification workflows. Practiced web application security testing using Burp Suite — intercepted requests and identified OWASP Top 10 vulnerabilities in lab environments. Analysed network traffic using Wireshark; gained hands-on understanding of TCP/IP, DNS, and HTTP/S protocols. Built foundational knowledge in networking (OSI model, firewalls, IDS/IPS) and core security concepts (CIA triad, access control, incident response basics).
Education
Bachelor of Technology, Computer Science and Engineering - Government college of Engineering Amravati
2021 - 2025 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (26)
Click a skill to find developers with the same skill
Similar Profiles
Siddh Patel
Vulnerability Assessment and Penetration Testing (VAPT) professional
Tamilselvan S
Ethical Hacker / Penetration Tester (Pen Tester) / Offensive Security Specialist / Vulnerability Assessment & Penetration Tester (VAPT Engineer)
shaikh Ahmad
Vulnerability Assessment Engineer
Srikanth Reddy
Security Vulnerability Management Analyst