Sayan Chatterjee

DevOps Engineer

Kolkata, West Bengal, India8 yrs 9 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Over 8 years of experience in Information Security.
  • Certified Offensive Security Certified Professional (OSCP) and Certified Ethical Hacker (CEH).
  • Recognized for discovering multiple security vulnerabilities in products.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on application and network security.

Contact

Skills

Core Skills

Application SecurityCloud SecuritySecurity EngineeringDevsecopsCybersecurityThreat ManagementVulnerability AssessmentSecurity Management

Other Skills

Agile MethodologiesAmazon Web Services (AWS)Burp SuiteC (Programming Language)Cloud ComputingCommunicationComputer ScienceContent CreationCyber Threat Intelligence (CTI)Cybersecurity EducationCybersecurity ToolsDBMSDevOpsHigh Performance TeamsInformation Security

About

Keep in mind:๐Ÿ“Œ "Being 99% secure can still leave you 100% vulnerable." An experienced Information Security Engineer with over 8 years of dedicated professional experience. I hold certifications as an Offensive Security Certified Professional (OSCP) and a Certified Ethical Hacker (CEH), supported by a Bachelor's degree in Computer Science Engineering. Currently, I serve as a Product Security Engineer at Ciena, specializing in securing Blueplanet software at scale. I have been acknowledged in the CVE and NVD databases for discovering security bugs in various products (CVE-2018-6934, CVE-2018-10110, CVE-2018-8772, CVE-2018-6870). โœ… Skills: Proficient in Vulnerability Management, Security Tool Automation, OWASP Top 10, Web & Mobile Application Security, Code Review, Red Teaming, Reverse Engineering, Penetration Testing, Root Cause Analysis, Threat Modeling, Network Security, OSINT, and Incident Response. โœ… Programming & Scripting: Fluent in Shell Scripting (Bash), Golang, C, C++, Java and Powershell. โœ… Red Team Tools: Extensively used tools include BurpSuite, Metasploit, Nessus, OWASP ZAP, Nmap, Wireshark, Ghidra, Empire, Mimikatz, GDB, OllyDbg, Splunk, Immunity Debugger, Cobalt Strike, BloodHound, API Monitor, SysInternal toolkit, MITRE ATT&CK, ELK Stack, AppScan, PowerSploit, and Nishang. โœ… Blue Team Tools: Proficient in Crowdstrike Falcon EDR, Cortex XDR, Cuckoo Sandbox, Splunk, ELK stack, Snort, pfSense, Wazuh, Arkime, and Osquery. โœ… Skilled in identifying and addressing OWASP Top 10 vulnerabilities (XSS, CSRF, SSRF, SQLi, LFI, RFI, RCE, Command Injection, etc.) and SANS Top 25 security issues. โœ… Proficient with Version Control Systems (VCS), DevOps tools, and Miscellaneous Tools such as PyCharm, VScode, Git, Jira, and Docker. โœ… Incident Response and Analysis: Experienced in tools like Redline, Nighthawk, Google Rapid Response (GRR), and Velociraptor. โœ… Certifications: OSCP and CEH. โœ… Security Videos & Blogs: https://www.youtube.com/c/HackSayan

Experience

Ciena

2 roles

Lead Application Security Developer (Software Engineer 3)

Promoted

Feb 2023 โ€“ Present ยท 3 yrs 1 mo

Threat ModelingCloud SecurityMobile SecurityApplication SecurityPenetration TestingOral Communication+16

Software Application Security Developer

Jul 2021 โ€“ Feb 2023 ยท 1 yr 7 mos

  • Lead software application security developer engaged in developing security automation tools and to integrate various security process on the existing DevOps framework.
Threat ModelingCloud SecurityMobile SecurityOral CommunicationComputer ScienceSkilled Multi-tasker+10

Youtube

Youtube Content Creator

Jun 2021 โ€“ Present ยท 4 yrs 9 mos ยท Kolkata, West Bengal, India

  • Creating educational and career growth videos related to Cyber Security, Website Development, and Random Technology stuffs.
Threat ModelingOral CommunicationSkilled Multi-taskerCyber Threat Intelligence (CTI)Threat & Vulnerability ManagementNetwork Security+6

Kpmg india

3 roles

Cyber Security Consultant II

Promoted

Mar 2020 โ€“ Jun 2021 ยท 1 yr 3 mos

  • Conducting regular vulnerability assessments against core internal and external infrastructures , applications , mobile apps and report on status , priority remediation actions and implementation of required measures to maintain adequate security.
  • Optimizing and ensuring required information security controls of threat and vulnerability management, risk management & compliance.
Mobile SecurityOral CommunicationComputer ScienceSkilled Multi-taskerInformation SecurityAgile Methodologies+8

Cyber Security Consultant

Promoted

Mar 2019 โ€“ Apr 2020 ยท 1 yr 1 mo

Mobile SecurityOral CommunicationComputer ScienceSkilled Multi-taskerInformation SecurityAgile Methodologies+6

Associate Consultant

Jul 2018 โ€“ Mar 2019 ยท 8 mos

Oral CommunicationComputer ScienceSkilled Multi-taskerInformation SecurityAgile MethodologiesLinux+5

Cognizant

3 roles

Security Engineer (Programmer Analyst)

Oct 2017 โ€“ Jul 2018 ยท 9 mos

  • Evaluation of vulnerability management plans, methodology &processes, remediation plans and best practices assurance from security point of view.
  • Contribution to maintain documented policies, standards, and maintain documented policies, standards by considering industry trends, customer needs, business risk tolerance, and business environments relating to information security.
  • Working closely with business stakeholders, infrastructure management team, Developers to ensure that policies and standards address the security requirement of business.
Oral CommunicationComputer ScienceSkilled Multi-taskerAgile MethodologiesLinuxMultitasking+3

Programmer Analyst Trainee

Oct 2016 โ€“ Oct 2017 ยท 1 yr

  • Programmer Analyst Trainee
Oral CommunicationComputer ScienceSkilled Multi-taskerAgile MethodologiesLinuxMultitasking+3

Academy Training

Oct 2016 โ€“ Feb 2017 ยท 4 mos

  • Completed Academy training in Advanced Java Technology (J2EE). Along with that developed a web application using that technology.

Bagaria engineers private limited

Security Engineer

May 2016 โ€“ Oct 2016 ยท 5 mos ยท Kolkata, West Bengal, India

  • Securing the internal network and the intra web applications was my main objective. Apart from that developed few automation tools to ease the daily workload.

Cmc ltd

Summer Trainee

Apr 2015 โ€“ May 2015 ยท 1 mo ยท Kolkata Area, India

  • Completed project cum training in Advanced Java Technology (J2EE) and used Oracle 11g as the database.

Globsyn technologies

Summer Trainee

Jun 2014 โ€“ Jul 2014 ยท 1 mo ยท Kolkata Area, India

  • Completed project cum training in Dotnet technology using C#.

Education

Future Institute Of Engineering and Management

B.Tech โ€” Computer Science

Jan 2012 โ€“ Jan 2016

HARTLEY'S HIGHER SECONDARY SCHOOL

Higher Secondary โ€” Science

Jan 2010 โ€“ Jan 2012

Stackforce found 100+ more professionals with Application Security & Cloud Security

Explore similar profiles based on matching skills and experience