07/2005 – 07/2009
abgeschlossen
Informatik
, Indien
- Dokument_Studium_011.JPG
- Dokument_Studium_012.pdf
- Dokument_Studium_013.pdf
- Dokument_Studium_014.JPG
Fotos sind nur für registrierte Arbeitgeber sichtbar
Hier registrieren
IT-Sicherheitskoordinator/inIndien |
6 Jahre Erfahrung |
Geburtsdatum:
Staatsangehörigkeit:
indisch
30811719
07/2005 – 07/2009
abgeschlossen
01/2015 – Bis heute
• Plan,Execute & Manage Secure Code review.
• Assist programmers in mitigating vulnerabilities.
• Deliver Application Security & Awareness training to management & team members.
• Deploying and Maintaining Secure SDLC process.
• Perform GAP Analysis and recommend improvements in Secure SDLC Process.
• Perform Risk Assessment and recommend secure control to reduce the risk.
• Perform PCI-DSS v3.1 and PA-DSS v3.1 assessment.
• Perform Secure Architecture Review and provide secure solution.
• Plan,Execute & Manage Vulnerability Assessment.
• Assist pre-sales team on technical queries raised by prospective customers.
• Perform Threat Modeling.
Weitere Profildaten werden sichtbar, wenn Sie sich registrieren
Zur Registrierung11/2013 – 12/2014
• Establish & Maintain Secure Development Lifecycle process Like Microsoft SDL ,Agile Security.
• Perform Web Application Vulnerability Assessment & Penetration Testing using tools like Burp Suite, OWASP ZAP Proxy, Acunetix, IBM AppScan, SQLMap , W3AF.
• Perform both manual & automated (Checkmarx) Secure Code Review against CWE/SANS Top 25 Software Errors.
• Assist programmers in mitigation.
• Provide secure solutions in .NET, JAVA based applications.
• Plan & Execute Post Production Security Reviews.
• Verify application security for adherence with PCI-DSS, PA-DSS & ISO 27000 System Development & Acquisition Standards.
• Analyze & Perform system abuse cases & business logic flaws.
11/2011 – 06/2013
• Verify the web application for OWASP Top 10 Vulnerabilities and reporting the risks.
• Perform Secure Code Review using CheckMarx.
• Maintaining Secure SDLC Process.
12/2009 – 07/2011
• Write & Execute Functional & Security Test Cases.
• Perform Black box testing like System Integration,UAT,Regression Test.
• Verifying application security for adherence with PCI-DSS,PA-DSS.
• Create Defect Report.
Weiterbildung
13.02.2016 – Bis heute
–
Teilnahme-Zertifikat auf Niveau A2
–
–
–
Application Security,Security Architecture,Firewall Exceptions,Administrator Rights Exceptions,Secure SDLC,CISSP Certified,Web Security,Information Security,Risk Analysis,Web Application Penetration Testing,Secure/Defensive Coding,PCI-DSS,Threat Modeling,PA-DSS,Security Testing,Vulnerability Management,OWASP,SANS/CIS Critical Controls,Privacy,ISO 27001,Goethe Zertifikat Deutsch B1 Lernen,Information Security,Cyber Security.