Palyam Ajaykumar
About Candidate
Education
Work & Experience
Basic understanding of web application and network penetration testing concepts. • Collaborated with team members to remediate vulnerabilities and enhance the application's security. • Presented findings and recommendations for improving network security. • CTF Exploitation. • Pentest report writing
OWASP Top 10 and its fundamentals. • Web application penetration testing - Labs. • Professional use of pentest tools (Burp Suite). • Vulnerability exploitations. • Final CTF with a vulnerable environment. • Professional pentest report writing. • Networked with the community through social media.
Faculty of Ethical Hacking, Web Application Penetration Testing, Network Penetration Testing, Android Penetration Testing and Bug Bounty. • Conducted Web Application Penetration Testing of E-commerce Applications, and Social Networking Websites. • Android Application Penetration Testing including Static and Dynamic Analysis. • Prioritizing OWASP top 10 vulnerabilities while conducting Appsec testing. Follow OWASP Checklist. • Conducted Vulnerability Assessment and Penetration testing (VAPT) on network IP’s Automated Scanning and Manual Verification of the findings thus eliminating false positives. • Perform Infrastructure (Internal and External) vulnerability assessment and penetration tests including Assessment for servers, desktops, routers and all middleware applications. • Pinpoint methods that attackers could use to exploit weaknesses and logic flaws. □ Basis analysis providing recommendations to mitigate detected vulnerabilities. • Performing security analysis and identifying possible vulnerabilities in the key derivation function, creating Vulnerability Assessment report detailing exposures that were identified, rating the severity of the system & suggesting mitigating any exposure & testing known vulnerabilities. • Knowledge on open source and commercial security assessment tools e.g. Burpsuite, Nessus, Appscan, nmap etc. • Work closely with research and development teams for vulnerability remediation. • Leading penetration testing projects, supervising junior and medior colleagues.
• Executed penetration testing engagements on diverse client environments, focusing on network infrastructure, web applications, API and mobile applications (Android & iOS). • Developed and maintained penetration testing methodologies in alignment with industry best practices and emerging threats. • Collaborated with cross-functional teams to remediate identified vulnerabilities and enhance security controls. • Delivered detailed reports to clients, including executive summaries, technical findings, and prioritized recommendations for risk mitigation. • Discovered and more reported vulnerabilities (e.g., Broken access control issues, authentication flaws, input validation issues). • Continuously enhanced personal skills through hands-on testing and industry knowledge updates • Knowledge on open source and commercial security assessment tools e.g. Burp suite, Nessus, Appscan, Netsparker,Acunetix, nmap etc