profile-pic

Nilesh

To obtain a responsible, challenging, and awarding position in Information Security field utilizing my skills and knowledge to the best of my abilities and contribute positively to organizations growth as well as my personal growth with the attribute of time, quality and discipline.
  • Role

    Security & Reverse Engineer

  • Years of Experience

    6 years

Skillsets

  • Web application security
  • Mobile application security
  • Secure configuration review
  • Wifi penetration testing
  • Android reverse engineering
  • Api Security
  • DAST
  • hardening
  • Malware Analysis
  • Network vulnerability assessment
  • Penetration Testing
  • SAST

Professional Summary

6Years
  • Aug, 2024 - Present1 yr 8 months

    Security Engineer Senior Specialist

    Google Operations Center
  • Nov, 2022 - Aug, 20241 yr 9 months

    Sr. Cyber Security Engineer

    Reserve Bank Information Technology
  • May, 2019 - Nov, 20223 yr 6 months

    Sr. Consultant- Information Security

    Anzen Technologies

Applications & Tools Known

  • icon-tool

    OWASP

Work History

6Years

Security Engineer Senior Specialist

Google Operations Center
Aug, 2024 - Present1 yr 8 months
    Working as Android Reverse engineer and Security Engineer. Conducting malware analysis and reverse engineering on suspicious code, and producing a detailed report of the findings. Continuously update threat models and scenarios to reflect the evolving threat landscape. Adept in conducting malware analysis on the Android platform and developing detection methods leveraging Yara rules and the VirusTotal API. Identified malware behaviors within applications through static and dynamic analysis of Android APK files using reverse engineering tools, Android emulators, and static code analysis tools. Conducted Reverse engineering on Different Malware files to identify the threats and activities. Crafting generic detection methods for malicious samples to proactively safeguard against emerging threats. Producing detailed write-ups on various malware families, adhering to established formats and security protocols.

Sr. Cyber Security Engineer

Reserve Bank Information Technology
Nov, 2022 - Aug, 20241 yr 9 months
    Working on and Managing Cyber Security Services for Reserve Bank of India as per their requirements. Experience in Vulnerability Assessments & Penetration Testing, also handling the change management as per the clients request. Experience in Web Application, Mobile Application and Network VAPT and having work experience on Network Configuration Audit/Review. Experience and knowledge of Web Application Security standards such as OWASP , SANS 25 etc. Provide Technical Understanding of remedial action to be taken for the vulnerabilities identified. Actively participated in Cyber Drill Activity - IDRBT , CERT in Empanelment Test. Maintaining track and confirm the closure of the vulnerabilities. Managing Team, Handling Client Communication & Escalation. Performed automated and manual security assessments on Web based applications, mobile applications, API security testing, Network vulnerability assesment and penetration testing. Create reports and proofs of concepts for manual application security assessments. Follow up on closure of vulnerabilities.

Sr. Consultant- Information Security

Anzen Technologies
May, 2019 - Nov, 20223 yr 6 months
    Hands-on experience on conducting vulnerability assessment and penetration testing. Responsible for identifying and classifying cyber security vulnerabilities and work on mitigation plans with system owners, ensure plans are documented understood and track the results of the plan execution. Experience in manual methods and automated tools to identify and remediate vulnerabilities. Detailed knowledge of Penetration Testing Tools, Techniques and Methodologies. Track and validate remediation of findings. Verify/validate defect fixes. Hands on experience in secure configuration review and hardening of systems , servers and network devices. Good understanding of CIS-Benchmark and NIST framework. Complete Familiarity with the Open Web Application Security Project (OWASP). Planning and managing the delivery of Application Security tests (both automatic and manual). Hands on experience in creating payloads.

Achievements

  • Won Best Customer Centricity Award in Anzen Technologies(2021-2022)
  • Won High5 Award in ReBIT(2022-2023)

Education

  • Master in Computer Application

    Bharati Vidyapeeth' Institute of Management & information Technology (2018)
  • Bachelor of Science ( Information Technology)

    ICLES' Motilal Jhunjhunwala College (2015)
  • HSC

    Karmaveer Bhaurao Patil College (2011)
  • SSC

    I.E.S Navi Mumbai High School (2009)

Certifications

  • Certified ethical hacker v10

  • Cloudsek xvigil certified sales professional