Vulnerability Management Project
→
Summary
Participated in a Cyber Security Analyst training program focused on Vulnerability Management and Penetration Testing at Andhra Pradesh Technology Services (APTS).
Highly skilled Cyber Security Analyst with 4+ years of experience, specializing in Vulnerability Management, SOX Compliance, and Identity Access Management (IAM). Proven expertise in leveraging enterprise tools like Qualys, CrowdStrike Falcon, and CyberArk to drive significant security risk reduction, improve compliance across hybrid environments (AWS/Azure), and deliver actionable security metrics to leadership.
Cyber Security Analyst
Hyderabad, Telangana, India
→
Summary
Led comprehensive vulnerability management, SOX compliance, and identity access initiatives, enhancing security posture and operational efficiency for diverse client environments.
Highlights
Spearheaded the end-to-end vulnerability identification, assessment, and remediation lifecycle across 500+ hybrid cloud (AWS/Azure) and on-premises servers utilizing Qualys, resulting in a 40% reduction in security risk exposure.
Achieved and maintained 95% security agent compliance by deploying and managing CrowdStrike Falcon and Qualys across hybrid infrastructure, systematically remediating issues and ensuring continuous monitoring.
Developed and executed a robust patch deployment process for critical third-party applications (Chrome, 7-Zip, WinZip), coordinating testing and validation across 300+ endpoints with zero deployment failures.
Developed and presented weekly, monthly, and quarterly vulnerability metrics dashboards to client leadership, providing critical insights on open vulnerabilities, remediation rates, and compliance status.
Contributed to SOX audit readiness by participating in internal control assessments and maintaining meticulous, audit-ready documentation and evidence workpapers.
Successfully implemented multi-factor authentication (MFA) solutions, including PingId and YubiKey, enhancing user security and ensuring seamless UAT testing prior to production deployment.
Executed comprehensive user access reviews and entitlement analysis across diverse applications and infrastructure, proactively identifying and remediating excessive permissions to strengthen security posture.
→
Post-Graduation Program
Cyber Security
→
Bachelor of Technology
Computer Science Engineering
→
Diploma
Information Technology
Issued By
CISCO
Issued By
CISCO technologies
Qualys, VMDR, Vulnerability Identification, Assessment, Remediation, Patch Management, Threat Detection, Security Risk Remediation, Root Cause Analysis, MTTR, Endpoint Security, Nmap Network Scanning.
AWS (Amazon Web Services), Microsoft Azure, Windows Server, Linux (Ubuntu, RHEL), Hybrid Infrastructure, On-Premises Infrastructure, CrowdStrike Falcon EDR.
Single Sign-On (SSO), Multi-Factor Authentication (MFA), PingId, YubiKey, Access Control, CyberArk Privileged Access Management, User Access Reviews, Entitlement Analysis.
SOX Compliance, SOX 404 Testing, Audit Support, GDPR, Control Documentation, Risk Assessment, Incident Response, Policy Enforcement, Internal Control Assessments.
ServiceNow ITSM, Ticketing, Asset Management, Change Management.
Security Monitoring, Configuration Management, Troubleshooting, Security Fixes, System Configurations, Mitigations, Deployment.
Burp Suite Web Application Security Scanner, Custom Application Vulnerabilities.
→
Summary
Participated in a Cyber Security Analyst training program focused on Vulnerability Management and Penetration Testing at Andhra Pradesh Technology Services (APTS).