Angad Singh
I'm
About
I'm a cybersecurity specialist focused on web application penetration testing. I have hands-on experience with tools like Burp Suite, OWASP ZAP, and many more scripts mainly manual testing. My skillset includes testing for common vulnerabilities like SQLi, XSS, CSRF, and IDOR, API testing, authentication failures and others. I focus on protecting network infrastructure and client data. I hold the CISCO CERTIFIED NETWORK ASSOCIATE (CCNA) certification and have a solid understanding of connectivity, IP services, core routing, and network troubleshooting. I also have basic knowledge of languages such as C, Python, HTML, and JavaScript. I have completed my Postgraduate Degree in Computer Programming, Specific Applications at Indira Gandhi National Open University, where I gained knowledge in informatics, automation, and wireless LAN controllers. I am Currently Pusruing Masters in Cybersecurity with main elective as cybersecurity from Jain University. I am passionate about continuously expanding my domain expertise and strongly believe in the power of connection and the value of a robust professional network.
Skills
Resume
Sumary
Angad Singh
Cybersecurity professional with overtwo years of experience in network security and web application penetration testing. Skilled in firewall management, securing network environments, and identifying web application vulnerabilities. CCNA and CC certified, focusing on ensuring robust security forinternal systems and client projects.
- Delhi, India
- 1147ad.opoe.381n48ok@gmail.com
Education
Masters In Computer Application (Cyber Security)
2024 - 2026
Indira Gandhi National Open University
Post Graduate Diploma In Computer Application
2022 - 2023
Indira Gandhi National Open University
Professional Experience
Cyber Security Specialist
February 2024 - Present
Centilytics, Noida
- Working as a Cyber Security Specialist at Centilytics,responsible for overseeing the overall security posture ofthe company.
- Special focus onwebsite application security for both internal company systems and customer-facing platforms.
Network Security Engineer
August 2022 - February 2024
Isourse Technologies Pvt Ltd, Delhi
- Managed network security infrastructure, including switches, firewalls, and servers, while implementing best practices for wireless network security using Ruckus virtual smart zone and cloud.
- Conducted vulnerability assessments and simulated cyber attacks as a SOC Engineer, utilizing advanced tools to identify andmitigate potentialrisks to the company's network.
Projects
Information Leakeage In Adhesive Manufacturing Company
Performed reconnaissance phase and google dorking on a manufacturing company and found a link of their vendors table which was behind a login page but without logging in, through a direct link. Table contained PII.
Found Graphql IDOR In Hotel Industry
Bypassed user authentication process through a GRAPHQL IDOR vulnerability. I was able to login at different user profile by changing the user id and other required details. Even though i didn't knew his/her password or username.
Authentication Bypass And Brute-force In Finance Industry
Bypassed user authentication process through brute forcing the password after entering the mobile number of the user and also was able to login by manipulating the packet when not brute-forcing it.
Hosted A Phishing Campaign In A Company
Hosted a phishing campaign by acting as a microsoft login page and extracted the victim's password by the script in json.
Found Union-Based SQLi in a Company
Found union-based sql injection in login panel of a company which gave me the entire database( its name, tables, etc). Got control of all methods DROP,CREATE,READ and UPDATE.
Performed Stored XSS And Defaced User Panel In Quick Commerce Company
Performed stored XSS attack on commerce industry based company where I injected an injection in their CRM Portal in the notes section that got executed and defaced entire user page.
Automation Scripts
As a Network Security Engineer, I have developed automation scripts using the Python Seleniumlibrary to streamline daily routine tasks. These scripts have been designed to enhance efficiency and productivity, whilemitigating the risk of errors that can occurthroughmanual execution.
Firewall Integration with Active Directory - (Remote LDAP Server) for User-based Authentication
As part of our ongoing effortto ensure the security of our company's infrastructure, I have successfully implemented RuleBased Access Controls (RBAC) and integrated ourfirewall with ActiveDirectory for user-based authentication using Remote LDAP Server. This integration has allowed us to streamline access controls while improving our security posture.
Guest Pass Policy
I implemented aGuest Pass Policy for guests whowantto connectto the company's network. Randomguest passes are generated for a limited period and are specific to each guestmachine. This is one ofthe technical security controls implemented in the company's infrastructure.
DHCP Snooping and Port-Security
This project gaveme practical exposure to preventing Man-in-the-Middle (MITM) attacks, includingDHCP spoofing and Mac flooding. ImplementingDHCP snooping and port-security features on the Cisco switches proved valuable in securing the network from various cyberthreats. I performed demo attacks before implementing themon the network.
Re-designing Network Architecture
We improved our network infrastructure to benefit employees by strategically relocating components, optimizing configurations, and implementing security measures. The project was successful, providing an efficient and secure network environment for enhanced productivity and peace of mind.
Remote Active Directory with the Company’s Ruckus SmartZone
I successfully integrated the client's remote ActiveDirectory with our company's Ruckus Smartzone to enable user-based authentication. This integration will streamline the authentication process and enhance the overall security of our network
Contact
For any related queries, please feel free to contact!
Address
Delhi, India
Call Us
+91-7042779093
Email Us
1147ad.opoe.381nn48ok@gmail.com