Rishab Nayyar
mavisingh28072001@gmail.com | linkedin.com/in/mavisec
# Profile
Information Security enthusiast with strong interest in Information Security, specifically Penetration Testing and Offensive Security.
Strong background in security tools, emerging technologies, processes and best practices.
Tech nerd who loves everything about computers.
# Technical Expertise
Networking: Storage Networks, Network Security, Server Networks, IP Protocols, LAN/WAN Switching, Troubleshooting.
Security Assessment: SAST, DAST, VAPT, Open-Source Analysis, OWASP top 10, Mitre Att&ck Framework, SANS top 25.
Operating Systems: Ubuntu, CentOS, Kali Linux, MacOS, Windows Servers.
Cloud/DevOps technologies: Azure, Web Server, AWS Cloud, Python, Bash.
Security & Testing tools: Snyk, BloodHound, Burp Suite, Tenable.io, Nmap, gobuster, Metasploit, OWASP ZAP, Postman, Wireshark etc.
# Certifications
Introduction to Azure Penetration Testing - Altered Security
210W-06 ICS Cybersecurity Threats - Cybersecurity and Infrastructure Security Agency (CISA)
[NSE1] Fortinet Network Security Expert Level 1: Certified Associate
# Experience
Microsoft — Future Ready Talent; Research Intern
02/2021 - 12/20212
- Designed and implemented cloud security strategies on Microsoft Azure, leveraging Azure security center and Azure Policy.
- Configured and managed Azure Active Directory (AAD) for secure user identity and access management, ensuring compliance with organizational policies.
- Deployed and managed Azure Key Vault for secure storage of encryption keys, certificates and secrets.
- Implemented network security solutions such as Azure Firewall, Network Security Groups (NSGs) and DDoS Protection ensuring security traffic flow and minimizing attack surfaces.
- Worked towards solving business challenges and creating innovative solutions using the power of Microsoft Azure and Github Tools.
- Hands-on experience with Azure Security Products.
SISTMR Australia — Research Intern
01/2022 - 05/2022
- Conducted in-depth security research focused on identifying vulnerabilities in Active Directory.
- Used tools like Bloodhound, Mimikatz, CrackMapExec, Impacket and Metasploit to perform penetration tests on corporate networks and identify security weaknesses.
- Assisted senior researchers in analyzing security threats, developing mitigation strategies and documenting findings.
- Provided expertise, vision and hands-on guidance to the junior members of the team.
- Collaborated with team members to evaluate and test new security tools and software for organizational use.
- Presented findings to senior management, contributing to the development of security protocols and awareness training.
Bell Canada — Sales Representative
09/2024 - Present
- Managed client accounts, providing tailored telecom solutions, including mobile, internet and TV Packages.
- Proficiency in CRM tools like Salesforce and Microsoft Dynamics.
- Conducted product demonstrations and presentations explaining features and benefits to potential clients.
- Negotiated pricing, terms and contracts to close deals, achieving or surpassing monthly sales targets.
- Awarded “Top Sales Performer” for straight 3 months out of a team of 12 representatives.
- Utilized POS+, Retail Citrix to track sales activities, customer data and ensure accurate reporting
# Education
Sri Guru Gobind Singh College (SGGS College) - Chandigarh, India
01/2019 - 08/2022
Loyalist College in Toronto — Ontario College Graduate Certificate in Cyber Security
01/2023 - 08/2024