Experienced application development and information security professional with expertise in mainframe systems, COBOL, JCL, VSAM, and knowledge of CICS. Skilled in troubleshooting, problem-solving, and analysis under high-pressure environments while adhering to tight deadlines. Proficient in Agile (Scrum), Waterfall, and other SDLC models. Demonstrates strong capabilities in vulnerability assessment and penetration testing across web applications, APIs, mobile platforms, networks, infrastructure, and wireless systems. Adept at using tools such as Qualys WAS/VM, Burp Suite Pro, HCL AppScan, OWASP ZAP Proxy, SQL Map, Nessus, Acunetix, and various open-source solutions. Committed to delivering secure and efficient solutions while contributing to organisational success.
Project 1: SOC Operations, Vulnerability & Patch Management
SOC Operations & Vulnerability Management:
Project 2: VAPT & Manual Penetration Testing:
Employed a combination of automated tools (Nessus, Burp Suite, Metasploit, Wireshark) and manual techniques to identify and exploit vulnerabilities
Developed technical reports that included risk assessments, impact analysis, and actionable remediation recommendations
Supported the creation of SOC services for clients using both remote and on-site solutions, ensuring robust protection of information systems
● Experienced in Application Development, Support, and Maintenance for Mainframe systems.
● Expertise in COBOL, JCL, and VSAM, with knowledge of CICS.
● Proficient in troubleshooting, problem-solving, and analysis, with the ability to work under pressure and meet tight deadlines while fully committed to the task.
● Experience with Scrum (Agile), Waterfall model, and familiarity with other SDLC models.
● Proficient in management of Information Security which includes Vulnerability Assessment and penetration testing of Web, APIs, Mobile Applications, Network, Infrastructure, wireless and conducted Internal and External Social Engineering and being a part of Red Team Assessment.
● Experienced in using various vulnerability assessment and penetration testing using various tools like Qualys WAS, Qualys VM, Burp Suite Pro, HCL Appscan, OWASP ZAP Proxy, SQL Map, Nessus, Acunetix and many opensource tools.