Ghufran Khan, Cyber Security Analyst

Ghufran Khan

Cyber Security Analyst

xBiz Techventures

Location
India - Mumbai
Education
Bachelor's degree, Bachelors of Engineering (Computer
Experience
2 years, 11 Months

Share My Profile

Block User


Work Experience

Total years of experience :2 years, 11 Months

Cyber Security Analyst at xBiz Techventures
  • India - Mumbai
  • My current job since October 2022

Worked in Banking and Insurance Sector. Conducted Red Teaming assesments and found critical vulnerabilities like SSRF, Payment Tampering etc. Conducted routine assessments and testing to enhance system resilience. Collaborated with teams to streamline critical recurring vulnerabilities, minimizing downtime. Offered expert guidance to management, improving security posture and employee awareness, consequently reducing breaches. Identified risks promptly through regular network assessments. Developed comprehensive incident response plans to ensure minimal disruption during breaches. Provided technical guidance on secure coding practices for compliance. Contributed to the development of attack surface monitoring. Authored a whitepaper on the security of APIs.

Jr. Cybersecurity Analyst at Brightex Solution
  • India - Bengaluru
  • July 2021 to September 2022

Conducted penetration tests on network infrastructure, web applications, and other systems to identify security vulnerabilities. Performed security assessments and risk analysis to proactively identify potential threats and mitigate risks. Collaborated with senior cybersecurity analysts to develop and implement comprehensive security protocols and procedures. Analyzed and interpreted security data from various sources to identify trends and potential security incidents. Assisted in the development and implementation of incident response plans and procedures. Stayed updated on the latest cybersecurity trends, threats, and best practices to ensure the organizations security posture remained robust. Provided support in security awareness training initiatives for employees to enhance overall cybersecurity awareness within the organization. Assisted in the documentation of security processes, procedures, and findings

Education

Bachelor's degree, Bachelors of Engineering (Computer
  • at Mumbai University
  • February 2022

Specialties & Skills

IT Security
Active Directory
Networks
Penetration Testing
Web Pentesting
Mobile Pentesting
APPLICATION PROGRAMMING INTERFACE (API)
RISK ANALYSIS
SECURITY AWARENESS
INCIDENT RESPONSE
INFRASTRUCTURE
MANAGEMENT
SECURE CODING
WEB APPLICATIONS
NETWORK INFRASTRUCTURE
SOURCE (GAME ENGINE)
Container Security
Code Review
Active Directory Exploitation
API Pentesting
Cloud Audit

Social Profiles

Languages

English
Expert
Hindi
Native Speaker
Urdu
Expert
Arabic
Beginner

Training and Certifications

CEH Practical (Certificate)
Date Attended:
November 2023
Valid Until:
November 2026
Cyber Crime Intervention Officer (Certificate)
Date Attended:
July 2023
Valid Until:
July 2026
Certified Network Security Practitioner (Certificate)
Date Attended:
March 2023
Valid Until:
March 2025
Certified Appsec Practitioner (Certificate)
Date Attended:
December 2022
Valid Until:
December 2024
Oracle Cloud Architect Associate (Certificate)
Date Attended:
September 2023
Valid Until:
September 2026

Hobbies

  • Bug Bounty, Football, Reading