Yogeshwaran Chandrasekaran — Security Engineer
Very much Passionate towards Cyber Security . Strong knowledge of OWASP Top 10 Web , API , Mobile Identified various vulnerabilities like Sql Injection, CSRF, SSRF, CORS, XSS, Session Fixation, Business Logic, Privilege escalation, IDOR , Template injection , Account / SD takeovers etc. Strong knowledge of root detection, pinning bypass & integrity checks bypass techniques Strong knowledge of tools like Apktool, Frida, objection, Burp Suite, dex2jar, Mobsf, Jd-gui, ADB, Nuclei , httprobe , Metasploit Framework, Nmap, Wireshark, SQLMap, Trivy, Kube-bench, Kubehunter, Kubescape, Falco , OPA , ZAP , Linkfinder , Ffuf , Pingsafe , dependency-check, secret checks , Dalfox , masscan Strong knowledge of AWS Security services like Guardduty , Inspector , WAF , Shield Advanced , AWS Macie , AWS config , cloudtrail , AWS Organization , Session Manager , Trusted Advisor , cloud watch etc. Experience in performing secure SDLC activities like Risk assessment, architecture/design review, threat modeling, source code review, SAST, DAST, IAST, IaC, manual penetration testing, vulnerability assessments, incident response and security awareness training Experience in DevSecOps approach in CI/CD pipeline via Precommit & commit hooks , SCA , SBOM , SAST , Image Security , Container Security , DAST Experience in Cloud Security (AWS , GCP) | AWS Certified Security - Specialty Experience with industry standard web application frameworks such as Burp Suite, AppScan and Nikto but more importantly can think outside-the-box to develop tailored solutions for non-standard problems. Experience with Network/Wireless analysis tools, attack frameworks and vulnerability scanners (Nmap, Nessus, Kali Linux, Metasploit, Kismet etc.) Experience with Mobile Application penetration testing tools like apktool, drozer, dex2jar, frida, mitmproxy etc. Knowledgeable with Cyber security tools, particularly MetaSploit, nMap, QualysGuard, ArcSight, Splunk, Archer among other tools used to conduct required testing. Knowledge over OWASP TOP10 / Sans 25 Vulnerabilities. Hands on Experience in vulnerability assessment and penetration testing using various tools like Burp Suite, Dir-Buster, OWASP ZAP proxy, Accunetix, NMAP, Nessus, Nikto, web scanner, w3af, HP Fortify, IBM App Scan enterprise, Kali Linux. Hands on Experience in both Manual & Automatic Pentesting. Completed Xtreme Ethical Hacking course with good results. Actively listening to DefCon, Blackhat, NullCon conferences.
Stackforce AI infers this person is a Cybersecurity expert with a focus on penetration testing and cloud security.
Location: Bengaluru, Karnataka, India
Experience: 5 yrs 8 mos
Skills
- Penetration Testing
- Vulnerability Assessment
Career Highlights
- Expert in OWASP Top 10 vulnerabilities.
- Strong experience in cloud security and DevSecOps.
- Hands-on with a wide range of penetration testing tools.
Work Experience
ShopBack
Senior Security Engineer (1 yr 4 mos)
Tekion Corp
Security Engineer II (2 yrs)
Halodoc
Security Engineer II (8 mos)
Security Engineer I (1 yr 8 mos)
learnmall.in (Ice Labs)
Alpha Cyber Security - Intern (3 mos)
Education
Bachelor of Engineering - BE at Kalasalingam Institute of Technology