Nikhil Kumar

Product Engineer

Mumbai, Maharashtra, India8 yrs 4 mos experience
Most Likely To Switch

Key Highlights

  • Led security assessments for major banking clients.
  • Expert in vulnerability management and penetration testing.
  • Strong background in cyber forensics and incident response.
Stackforce AI infers this person is a Cyber Security expert specializing in Vulnerability Management and Penetration Testing.

Contact

Skills

Core Skills

Penetration TestingVulnerability Management

Other Skills

API PentestingAPI TestingAndroid Application Vulnerability AssessmentApplication SecurityCSRFCloud PentestingComputer NetworkingConfiguration ReviewsConfiguration reviewCyber DefenseCyber ForensicsCyber Security AuditsCyber-securityCybercrime InvestigationDatabase Review

About

Experienced Cyber Security Analyst with a demonstrated history of working in the information technology and services industry. Skilled in Ethical Hacking, Penetration Testing, Vulnerability Management, Computer Forensics and Cyber Crime Investigation. Strong information technology professional with a Bachelor of Technology (B.Tech.) focused in Computer Engineering from Rajasthan Technical University, Kota.

Experience

Varutra consulting

Senior Security Consultant

Dec 2023Present · 2 yrs 3 mos · Hybrid

  • Team Lead for various clients including Banking, Financial Services, and IT sectors.
  • Conduct security assessments and provide risk management recommendations to clients.
  • Governance, Risk and Compliance Framework and Implementation for clients across India.
  • Performed Information System Bank Audit Services and Internal audits.
  • Conducted Web Application Pentesting, Mobile App Pentesting, Thick Client Pentesting, API Pentesting, Wireless Pentesting and Cloud Pentesting by identifying vulnerabilities and making recommendations for remediation.
  • Performed Source Code Review both manually and tool based using HP Fortify, SonarQube and Checkmarx.
  • Managed audits related to Vulnerability Scanning and Configuration review of various Operating Systems and Databases along with reporting.
  • Communicated VAPT findings and recommendations to senior management and other stakeholders, including technical and non-technical staff.
Security assessmentsRisk managementGovernanceRisk and Compliance FrameworkWeb Application PentestingMobile App Pentesting+9

Rsm india

2 roles

Deputy Manager - Risk Advisory || Penetration Tester

Promoted

Jun 2022Dec 2023 · 1 yr 6 mos · Mumbai, Maharashtra, India · On-site

  • Team Lead for various clients including Banking, Financial Services, and IT sectors.
  • Conduct security assessments and provide risk management recommendations to clients.
  • Governance, Risk and Compliance Framework and Implementation for clients across India.
  • Performed Information System Bank Audit Services and Internal audits.
  • Conducted Source Code Review, Web Application Pentesting, Mobile App Pentesting, Thick Client Pentesting, API Pentesting, Wireless Pentesting and Cloud Pentesting by identifying vulnerabilities and making recommendations for remediation.
  • Managed audits related to Vulnerability Scanning and Configuration review of various Operating Systems and Databases along with reporting.
  • Communicated VAPT findings and recommendations to senior management and other stakeholders, including technical and non-technical staff.
Security assessmentsRisk managementGovernanceRisk and Compliance FrameworkWeb Application PentestingMobile App Pentesting+9

Assistant Manager - ITSA

Jun 2021Jun 2022 · 1 yr · Mumbai, Maharashtra, India · On-site

  • Authored security incident reports, highlighting breaches, vulnerabilities and
  • remedial measures.
  • Conducted Security Audits for Govt. Agencies & Banks.
  • Performed Web/Mobile/Network Penetration Testing.
  • Performed API Testing using Postman.
  • Performed Source Code Review, Network Architecture Review, Database Review
  • & Secure Code Document Review on various Internet/Intranet Applications.
  • Monitored Log files for Digital Forensics Review.
  • Conducted Vulnerability Assessment on Thick Clients.
  • Knowledge of Audit Frameworks like ISO27001, PCI-DSS.
Security auditsWeb Penetration TestingMobile Penetration TestingAPI TestingSource Code ReviewNetwork Architecture Review+5

Allied boston consultants india pvt. ltd.

Information Security Consultant

Jul 2020Jun 2021 · 11 mos · Noida, Uttar Pradesh, India

  • Conducted Security Audits for Govt. Agencies and Defence organizations.
  • Performed ICS/SCADA Penetration Testing.
  • Performed Cyber Security and Cyber Forensic Audits of Windows Systems.
  • Conducted VA&PT on various Web/Network applications projects.
  • Conducted Vulnerability Assessment on IoT Devices.
Security auditsICS/SCADA Penetration TestingCyber Security AuditsVulnerability AssessmentPenetration TestingVulnerability Management

Yorvitech solutions pvt. ltd.

Senior Cyber Security Analyst

Feb 2019Mar 2021 · 2 yrs 1 mo · Jaipur, Rajasthan, India

  • 1. Performing Vulnerability Assessment and Penetration Testing on Web Application, Mobile & Network.
  • 2. Web Application Testing for Organizations.
  • 3. Android Application Vulnerability Assessment.
Vulnerability AssessmentPenetration TestingWeb Application TestingAndroid Application Vulnerability AssessmentVulnerability Management

Pristine infosolutions

2 roles

Cyber Security Analyst

Oct 2017Nov 2018 · 1 yr 1 mo

  • 1. Security Audits of Windows and Linux System.
  • 2. Conducted security audits to identify vulnerabilities.
  • 3. Performing Vulnerability Assessment and Penetration Testing on Web Application, Mobile
  • & Network.
  • 4. Conducted VAPT with OWASP methodology.
  • 5. Information Security Management System (ISMS) audits and Web Application Testing's for
  • Organizations.
  • 6. Provided workshops to 200+ students in Rajasthan.
  • 7. Worked on various Cyber Crime Cases with Rajasthan Police.
Security auditsVulnerability AssessmentPenetration TestingISMS auditsWeb Application TestingVulnerability Management

Cyber Security Analyst (Trainee)

Apr 2017Sep 2017 · 5 mos

Education

Rajasthan Technical University, Kota

Bachelor of Technology (B.Tech.) — Computer Engineering

Jan 2014Jan 2018

Stackforce found 100+ more professionals with Penetration Testing & Vulnerability Management

Explore similar profiles based on matching skills and experience