Giter VIP home page Giter VIP logo

Hi, I'm Arun Nagath 👋

Introduction

I'm a highly self-motivated individual with a deep passion for computer security, boasting a robust foundation in cybersecurity and a Bachelor of Technology degree in Computer Engineering. With over 4 years of hands-on experience, I specialize in various aspects of cybersecurity, including web application security, vulnerability assessment, penetration testing, and mobile application security for both iOS and Android platforms.

About Me

I am a highly self-motivated individual with a passion for computer security, boasting a robust foundation in cybersecurity and a Bachelor of Technology degree in Computer Engineering. With over 4 years of hands-on experience, I specialize in areas such as web application security, vulnerability assessment, penetration testing, and mobile application security for iOS and Android platforms.

My expertise extends to both black-box and white-box security testing methodologies, enabling me to conduct thorough security assessments on web applications, APIs, enterprise, and engineering applications. I am well-versed in dynamic application security testing (DAST) tools like Burp Suite Professional, Qualys, and Traceable, as well as Static Application Security Testing (SAST) tools such as GitHub Advanced Security and Mobile Security Framework (MobSF).

I have a keen understanding of web security principles, techniques, and technologies, utilizing a diverse range of penetration testing tools. My hands-on experience includes executing attack vectors from the OWASP Top 10 and working with various open-source security tools, including proxies and fuzzers.

Actively engaging in security-specific conferences, webinars, and Capture The Flag (CTF) contests, I stay abreast of the latest developments in the field. Strong in documentation, I excel in delivering thorough penetration test reports. My skills and knowledge equip me to tackle complex security challenges with a creative and out-of-the-box thinking approach.

  • 🌱 Always learning and staying up-to-date with the latest trends in cybersecurity.
  • 💬 Ask me about web security, penetration testing tools, or mobile application security.

Experience

  • 💼 ZEE - Technology & Innovation/Security Engineer

    • • Performed Manual and Automated Web application security (Black Box, White Box), Vulnerability assessment (Static application security testing (SAST) and Dynamic application security testing (DAST)), Penetration testing, API security, Mobile Application security for iOS and Android platforms in line with OWASP TOP 10 Network Penetration testing. • Successfully led the organization-wide adoption of DevSecOps practices, enhancing collaboration between development, security, and operations teams for streamlined and secure software delivery. • Managed enterprise level automated tools like GitHub Advance security for securing enterprise repositories. • Provided developer support in securing applications and assisting in the identification and remediation of vulnerabilities of the applications. • Hands-on experience with commercial and open-source tools e.g., Burp suite Professional, Metasploit, SQLMAP, Nmap, Qualys, FUFF, Dirsearch, Objection, Frida, MobSF, iOS Jailbreaking tools, GitHub Advanced Security, Strobes etc.
  • 💻 Ernst & Young/Security Analyst

• Conducted Black Box, Grey Box, White Box Web Application and Network Penetration Testing • Created reports and developer support in securing applications and assisting in the identification and remediation of vulnerabilities of the applications. • Audits of third-party vulnerability reports for internal applications, ensuring proactive identification and resolution of potential security risks.

Skills

  • Cybersecurity: Web application security, penetration testing, vulnerability assessment.
  • Tools: Proficient in Burp Suite Professional, Qualys, Traceable, GitHub Advanced Security, and Mobile Security Framework (MobSF).
  • Methodologies: Black-box and white-box testing, OWASP Top 10, dynamic and static application security testing.
  • Platforms: iOS, Android, Apple TV.

Education

  • 🎓 Bachelor of Technology in Computer Engineering

Certifications

  • 🏆 • Microsoft Certified: Azure Fundamentals (AZ-900) • Certified Ethical Hacker (CEH) • Qualys Certified Specialist • Rapid7 InsightVM Certified Administrator • EY Cybersecurity Bronze

Security Community Involvement

  • 🌐 Actively participate in security-specific conferences and webinars.
  • 🚩 Regularly engage in Capture The Flag (CTF) contests.

Get in Touch

Thanks for stopping by my profile! Feel free to connect and explore my projects.

Arun Nagath's Projects

auth-boss icon auth-boss

🔒 Become an Auth Boss. Learn about different authentication methodologies on the web.

b-xssrf icon b-xssrf

Toolkit to detect and keep track on Blind XSS, XXE & SSRF

beanstack icon beanstack

X41 BeanStack - Stack Trace Fingerprinting BETA

bigipsecurity icon bigipsecurity

This document describes common misconfigurations of F5 Networks BigIP systems.

bwapp icon bwapp

bWAPP, or a buggy web application, is a free and open source deliberately insecure web application. bWAPP helps security enthusiasts, developers and students to discover and to prevent web vulnerabilities. bWAPP prepares one to conduct successful penetration testing and ethical hacking projects. What makes bWAPP so unique? Well, it has over 100 web bugs! It covers all major known web vulnerabilities, including all risks from the OWASP Top 10 project. The focus is not just on one specific issue... bWAPP is covering a wide range of vulnerabilities!

ctf-tools icon ctf-tools

Some setup scripts for security research tools.

depix icon depix

Recovers passwords from pixelized screenshots

domain-ip icon domain-ip

this tool take a list of subdomains and give you the ip for each

dsp_repo icon dsp_repo

A template for Docker Security Playground projects

foca icon foca

Tool to find metadata and hidden information in the documents.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.