j
joyfernandas

Joy F

@joyfernandas

security analyst

India
Tamil, Inglese
Alcune informazioni sono riportate in lingua inglese.
Chi sono
Web App & API Security Expert | VAPT Specialist (CEH, MCSA) Are you a SaaS founder or tech team worried about hidden vulnerabilities in your web app or APIs? I help you find and fix security gaps before attackers exploit them. I am a Security Analyst from India with over 2 years of hands-on experience in: - Web application and API penetration testing (OWASP-based VAPT) - Cloud and hybrid environment security (SIEM, log monitoring, incident response) - Phishing simulations and security awareness for 200+ employees - Malware analysis and threat modeling (STRIDE) - AI-assisted security automati... Continua a leggere

Competenze

j
joyfernandas
Joy F
offline • 

Consulta i miei servizi

Sicurezza
I will perform web app penetration testing and deliver detailed vulnerability report
Sicurezza
I will perform API security testing and deliver vulnerability report with fixes

Esperienza lavorativa

Security Analyst

DNV • Full time

Oct 2023 - Present2 yrs 7 mos

Performed Vulnerability Assessment and Penetration Testing (VAPT) for web applications, APIs, and mobile platforms to identify and remediate security vulnerabilities. Implemented and managed SIEM solutions (Wazuh, Log360) to improve threat detection, log monitoring, and incident visibility across hybrid cloud environments. Led incident response activities, created security playbooks, and supported endpoint threat mitigation. Designed and executed phishing simulation campaigns, reducing employee susceptibility to social engineering attacks by over 90%. Conducted monthly security awareness training for 200+ employees covering phishing, secure coding, and incident response. Developed AI-assisted security automation tools for vulnerability triage, compliance scanning, and reporting, reducing manual effort by 60%. Performed threat modeling using the STRIDE methodology for critical applications. Conducted malware analysis using static and dynamic techniques to identify advanced threats.