0% found this document useful (0 votes)
49 views6 pages

Chandan Resume

Uploaded by

karishmaray29
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
49 views6 pages

Chandan Resume

Uploaded by

karishmaray29
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 6

CHANDAN SHARMA

Contact number: 8887661635


Email: Chandan.sharmalpu@gmail.com
LinkedIn: https://www.linkedin.com/in/chandan-sharma-81793a123/

Career Objective:

I want to be in an environment where there are avenues that improve both my professional as well as personal skills,
where I will be able to learn the technological advancements in my field and get an opportunity to use my technical and
creative skills and currently I am working as Senior Consultant in KPMG adding an experience of 4.5 years in information
security domain to meet professional requirements.

Technical Strengths:

• Information Security Consultant with years of Experience in Network Security and


Information security testing of web application, MobileAndroid Testing, Network
penetration testing.

• Vulnerability Management, Mobile and web application Vulnerability Assessment, Cloud Security, Secure
Configuration review, Network and Application Penetration Testing. VAPT of infrastructure and network
components by manual as well as automated testing.

• Performed phishing stimulation exercise of enterprise to create awareness among them in recent project.

• Good knowledge on OWASP Top 10 for Web Application Penetration Testing, reporting vulnerabilities and
collaborating with developers/clients for mitigating vulnerabilities.

• Clients worked under includes Banking, Finance, Insurance, Ecommerce, Product Based, Pharma,
Hospitality, Health Care, Telecom, Manufacturing, Automobile Industry, Aerospace Industry etc.
.
• Expertise in some of the top industry scanners/Tools :

• Commercial scanners/Tools: Qualys Guard VM & WAS, Nessus, Nexpose, Qualys PCI,), Burp Suite Professional,
IBM Appscan Standard, Acunetix, Splunk, Checkmarx, Fortify, Gofish, Insight VM.

• Opensource Tools: Burp Suite, OWASP ZAP, Wireshark, SQL Map, Metasploit, Nmap, other tools in Kali Linux,
SoapUI, Postman, Fiddler, Echo Mirage, TCP Dump, TCP View.
Certifications and Achievements:

• Certified Ethical Hacker (CEH v10)


• Qualys Certified VM Specialist
• Qualys Certified WAS (Web Application Scan) Specialist
• AWS Security Fundamentals
• AWS Cloud Practitioner (Training completed)
• Certified Network Security Specialist (CNSS)
• Got quarterly awards multiple times in Cognizant
• API Security Architect (by API Academy)
• Received client award for VM Report Automation in Cognizant

Education Details:

Year Degree/Certificate Institute/School Percentage/GPA


2017 B-TECH (ECE) Lovely Professional University 8.28

2013 XII(CBSE) Glenhill School, Varanasi 71%

2011 X(CBSE) Glenhill School, Varanasi 8.2

Work Experience:

Current Company: KPMG


Designation- Senior Consultant-Cyber Security
Working Since- August 2021-Till Date

Previous Company: Accenture


Designation- Technology Security Analyst
Working Since- April 2020- July 2021

Previous Company: Cognizant


Designation- Cyber Security Analyst
Since- February 2018-April 2021
Key Projects

Project Name Vulnerability Assessment and Web Application Penetration Testing


Grey Box and Black Box
▪ Internal/External Vulnerability Assessment for web applications
▪ Identifying vulnerabilities and determining gaps in the web
application and exploiting its functionality from a best security
standpoint
Responsibilities
▪ Suggesting remediation recommendations to mitigate identified
vulnerabilities
▪ Identifying vulnerabilities and determining gaps in the web
application and in functionality from a best security standpoint

Project Name Mobile Application Penetration Testing – Black and Grey Box
Responsibilities ▪ Internal/External Vulnerability Assessment for Android APK’s
▪ Identifying vulnerabilities and determining gaps in the Application
from a best security standpoint
▪ Internal/External Vulnerability Assessment for Android APK & IOS IPK
▪ Static and Dynamic Testing Penetration for internal as well as
external APK and IPK.
▪ Suggesting remediation recommendations to mitigate identified
vulnerabilities
.
Project Name API, Thick Client and Web Services Vulnerability
Assessment &Penetration Testing - Grey box and Black box
▪ Internal/External Vulnerability Assessment for Web services, Thick
Client, API’s
▪ REST,SOAP based API Security Testing for internal as well as external
APIs.
Responsibilities
▪ Pen testing on .exe file for Two Tier & Three Tier Architecture Thick
clients.
▪ Suggesting remediation recommendations to mitigate identified
vulnerabilities
Project Name Network Vulnerability Assessment & Penetration Testing

▪ Internal/External Vulnerability Assessment of Servers and other


networking components
▪ Performing RCE, Reverse Shell, Exploiting server functionality.
▪ Exhausting Server capacity by causing DOS.
Responsibilities ▪ Using tools to Enumerate services running on Server’s IP address and
use Metasploit for Known exploits
▪ Suggesting remediation recommendations to mitigate identified
vulnerabilities.
Declaration:

I hereby declare that the information furnished above is true to the best of my knowledge.

(Chandan Sharma)

You might also like