Aarti S.

Operations Associate

Noida, Uttar Pradesh, India10 yrs 10 mos experience

Key Highlights

  • Led a team in penetration testing engagements.
  • Expert in risk assessment and vulnerability management.
  • Strong client engagement and communication skills.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on Penetration Testing and Vulnerability Management.

Contact

Skills

Core Skills

Penetration Testing

Other Skills

Project DeliveryVulnerability AssessmentActive DirectoryCyber Threat Hunting (CTH)Network SecurityInformation SecuritySecurityInformation Security ManagementFirewallsKali LinuxLinuxEthical HackingMetasploitNetworkingWeb Application Security

About

Role: Lead Pentester As a Lead Pentester, I play a pivotal role in ensuring the cybersecurity resilience of our organization. I lead a team of skilled professionals in conducting penetration testing activities to identify and mitigate security vulnerabilities across our systems, networks, and applications. Here are some of the key responsibilities I handle: 1. Team Leadership: I provide guidance, mentorship, and technical expertise to my team members, fostering a collaborative and high-performing environment. 2. Project Management: I oversee the planning, coordination, and execution of penetration testing engagements, ensuring that projects are completed on time and within scope. 3. Technical Expertise: With my deep understanding of penetration testing methodologies, tools, and techniques, I continuously strive to stay updated with the latest industry trends and advancements. 4. Risk Assessment: I conduct thorough risk assessments based on penetration test findings, prioritizing vulnerabilities and providing actionable recommendations for remediation. 5. Client Engagement: I serve as the primary point of contact for clients, effectively communicating technical findings, recommendations, and security implications in a clear and concise manner. 6. Report Generation: I prepare detailed penetration test reports that comprehensively document findings, vulnerabilities, exploitation techniques, and remediation strategies. 7. Collaboration: I collaborate closely with cross-functional teams, including IT, security operations, and development teams, to address identified security issues and implement effective security controls. 8. Continuous Improvement: I continuously evaluate and enhance our penetration testing methodologies, processes, and tools to adapt to evolving security threats and challenges. 9. Compliance and Standards: I ensure that our penetration testing activities comply with relevant regulatory requirements, industry standards, and best practices in cybersecurity. 10. Training and Development: I provide training and knowledge-sharing sessions to empower team members with the necessary skills and expertise to excel in penetration testing roles.

Experience

10 yrs 10 mos
Total Experience
2 yrs 3 mos
Average Tenure
2 yrs 1 mo
Current Experience

Self-employed

Cyber Security Consultant

Mar 2024Present · 2 yrs 1 mo · Delhi, India · Remote

Sopra steria

Technical Lead- Penetration Tester

Sep 2022Feb 2024 · 1 yr 5 mos · India

  • ## Roles and Responsibilities of Team Lead for Penetration Testing Services:
  • Project Management: Lead and manage penetration testing projects.
  • Technical Oversight: Provide technical guidance and review testing methodologies.
  • Team Leadership: Supervise and mentor team members, fostering collaboration.
  • Client Engagement: Serve as the main client contact, present findings, and identify opportunities.
  • Continuous Improvement: Stay updated on cybersecurity trends, and implement process improvements.
  • ## Role of Team Lead for CERT-CTI Services:
  • CTI Advisory Monitoring: Continuously monitor Cyber Threat Intelligence (CTI) advisories and alerts from various sources.
  • Risk Analysis: Analyze CTI advisories to assess potential impacts on organizational systems, networks, and assets, focusing on zero-day vulnerabilities.
  • Patch Management: Recommend patch solutions based on CTI advisories, prioritizing zero-day vulnerabilities and their exploitation trends.
  • Reporting: Prepare and maintain reports on released advisories, categorized by weekly, monthly, and yearly periods, highlighting trends in zero-day exploits across various products.
  • Trend Analysis: Conduct trend analysis on zero-day exploits, identifying highly exploited vulnerabilities and their affected products.
  • Stakeholder Communication: Communicate trend analysis findings to stakeholders, emphasizing the importance of proactive measures and patches.
  • Coordination: Collaborate with relevant teams to ensure timely deployment of patches for highly exploited zero-day vulnerabilities.
  • Documentation: Maintain comprehensive documentation of released advisories and trend analysis reports for historical reference and future decision-making.
Penetration Testing

Ignite technologies

Cyber Security -Project Manager

May 2021Feb 2023 · 1 yr 9 mos

  • Currently working as Project Manager to provide various services such as Corporate Training, Vulnerability Assessment and Penetration testing, and threat modeling.
  • Managed the cycle of project continuity, reviewed the technical work of the team, and ensured the
  • quality of service deliverable.
  • Work closely with the Sales team to identify business opportunities which helps create a sales pitch that highlights the Service's features and benefits Candidature.
  • Assisted customer in understanding risk and threat level associated with vulnerability so that customer may or may not accept risk with respect to business criticality Identifying the critical, High, Medium, Low vulnerabilities in the applications based on OWASP Top 10 and SANS 25 and prioritizing them based on the criticality.
Penetration TestingProject Delivery

Tata advanced systems limited

Specailist in Cyber threat Vulnerbililty Management

Feb 2019Apr 2021 · 2 yrs 2 mos · Noida, Uttar Pradesh, India

  • ·Experienced in an information security role, preferably in vulnerability management. Performed application and infrastructure penetration tests, as well as physical security review and social engineering tests for our global clients.
  • Reviewed and defined requirements for information security solutions by designing SOP VAPT and checklist Services for Web, Android, Network, Clouds and IOT.
  • Analyze systems for potential vulnerabilities that may result from improper system configuration, hardware or software flaws, or operational.
  • Involved within SOC team for implementing Threat Intelligence Model & Blue Team Operations Notify proper representatives of the company when high-grade threats to critical informational
  • infrastructure elements are identified.
  • Evaluating vendors tool designed to perform vulnerability management and Data loss protection, Anti virus bypass.
  • Collaborated with fellow analyst and leadership to develop and streamline operational guidelines
  • Achieved Cert-in Certification for Tata Advanced System Limited
Penetration Testing

Hacking articles

Penetration Tester | Security Analyst | Chief Content Writer | CTF Player

Apr 2015Mar 2019 · 3 yrs 11 mos

  • Ran vulnerability and compliance scanning on test machines and reviewed security standard and Minimum Security Baseline for the client.
  • Assisted on Monthly conference call to discuss implementation and upgrade of critical infrastructure Port scan servers using NMAP and close all unnecessary ports to reduce the attack surface.
  • Conducted Black/white/gray box penetration testing on the financial systems using Kali Linux.
  • Trained 350 end users on security processes, procedures and risks via the company’s first security education program, which is being rolled out companywide.
  • Work together with the marketing team to design the best design for the company
  • Published 200+ Infosec-related posts @ Hacking Articles
Vulnerability AssessmentPenetration Testing

Education

BITS Pilani Work Integrated Learning Programmes

Master's degree — Computer Technology/Computer Systems Technology

Jul 2019Apr 2021

KCC Institute of Technology and Management - Greater Noida

Bachelor's degree — Computer Science

Aug 2013May 2017

Stackforce found 100+ more professionals with Penetration Testing

Explore similar profiles based on matching skills and experience