Senior Cyber Security Analyst
Current• Conduct black box penetration testing on internet and intranet-facing applications.• Conduct Vulnerability Assessment and Security Testing (VAST).• Identify and prioritize vulnerabilities based on OWASP Top 10.• Assess web applications for vulnerabilities in authentication, authorization, and input data validation.• Utilize tools such as Burp Suite and HP Web Inspect for vulnerability assessment.• Collaborate with development teams to remediate reported vulnerabilities.• Employ Kali Linux and tools like Dirbuster, Nikto, NMap, and IBM App Scan for web application assessment.• Craft and execute payloads for XSS and other attacks.• Identify and address issues related to session management, input validation, output encoding, logging, exceptions, cookie attributes, encryption, and privilege escalation.• Conduct static application security testing, dynamic application security testing, and manual penetration testing.• Provide stakeholders with detailed issue reports and remediation plans.• Verify and enhance existing security controls.• Collaborate on cross-team technical issues and contribute to the knowledge base.