Loading...

Karthikgohul

Cyber Security Engineer

I am a cybersecurity professional with a strong passion for identifying security vulnerabilities, investigating threats, and strengthening digital security. I enjoy exploring security technologies, conducting security research, and continuously learning to stay ahead of emerging cybersecurity threats.

Resume_

Cybersecurity professional with 2.8+ years of hands-on experience in penetration testing, vulnerability assessment and management, endpoint security, Microsoft 365 security, incident response, and security operations. Experienced in securing client and internal environments, conducting security assessments, investigating threats, coordinating remediation, and contributing to improved organizational security posture while continuously developing expertise in emerging security technologies.


EDUCATION

  • SBM College of Engineering and Technology

    2019 - 2023

    Computer Science and Engineering

  • Government Higher Secondary School

    2018 - 2019

    HSC

  • Government Higher Secondary School

    2016 - 2017

    SSLC




General Skills

Penetration Testing

Vulnerability Assessment

Email Security

Endpoint Security

Incident Response

Microsoft 365 Security

DarkNet Monitoring

Linux

HTML

CSS

Responsive Web Design

Javascript

Git

GitHub




Professional Experience

System Security Lead

Claysys Technologies

Professional Experience
Penetration Testing

Conducted web application penetration testing across multiple client and internal applications using industry-standard security tools and OWASP-aligned testing methodologies.

Vulnerability Assessment & Management

Conducted vulnerability assessments across multiple data centers and servers using Tenable Nessus and Rapid7. Analyzed and validated vulnerabilities, prepared risk-based remediation recommendations, and coordinated remediation activities.

Endpoint Security

Managed endpoint security operations using SentinelOne and Trend Micro, including agent deployment, policy management, monitoring, alert investigation, threat analysis, and response actions. Leveraged XDR capabilities for deeper investigation of suspicious processes, endpoint activities, and threat indicators.

Email Security

Managed Microsoft 365 email security operations by monitoring and investigating quarantined and user-reported emails. Identified phishing, spam, and malicious content and performed appropriate response actions.

Microsoft Security Controls

Implemented and managed Microsoft 365 security controls including tenant and user onboarding, license assignment, security policies, Microsoft Secure Score recommendations, DLP, sensitivity labels, and restrictions for unmanaged devices.

Incident Response

Handled security incident response and investigations involving phishing, malicious links, suspicious applications, and endpoint threats. Performed containment, threat analysis, and remediation while coordinating with relevant teams.

Security Awareness & ISMS Training

Conducted security awareness and phishing simulation campaigns, evaluated user responses, identified awareness gaps, and delivered targeted security training. Conducted ISMS awareness sessions for new joiners.

Client Services

Managed security services for multiple clients by coordinating security activities, communicating security findings and recommendations, preparing security reports, addressing client queries, and coordinating remediation activities.

Cyber Security Researcher

Bugcrowd, Independent Security Research

01

Collaborated through vulnerability disclosure programs to help organizations strengthen their security and protect against potential attacks.

02

Discovered and responsibly reported severe security vulnerabilities, receiving Hall of Fame recognition and rewards from multiple organizations.

03

Researched open-source vulnerability disclosure programs and identified security vulnerabilities through manual and automated testing techniques.

04

Performed web application security testing using Burp Suite, Dirbuster, Metasploit, SQLmap, and manual testing techniques.



Achievements

01

Professional Recognition

Claysys Technologies

CERTIFICATE OF MERIT

Outstanding Contribution to Vulnerability Management

Received a Certificate of Merit from Claysys Technologies for outstanding contributions to client vulnerability management initiatives, helping identify, track, and reduce security vulnerabilities while strengthening clients' overall security posture.

02

Security Research & Bug Bounty

Independent Security Research

01

Vulnerability Disclosure

Discovered and responsibly disclosed security vulnerabilities through vulnerability disclosure programs, helping organizations identify and address potential security risks.

02

Hall of Fame Recognition

Received Hall of Fame recognition from organizations for responsibly identifying and reporting security vulnerabilities.

03

Security Research

Conducted security research through vulnerability disclosure programs and identified security vulnerabilities using manual and automated testing techniques.

04

Web Application Security Testing

Performed web application security testing using Burp Suite, Dirbuster, Metasploit, SQLmap, and manual testing techniques.

Recognized Organizations

ROKT View
H&M View
Whimsical View
Maze.co
Maxem.io


Activities

  • Participated in the Inter College meet and talked about the Computer Safety.
  • Participated in the Hackthon conducted by the Wikitechy.
  • Participated in online hacking playgrounds.

  • Classes

    • Participated in Ethical hacking Program conducted by the Prompt Infotech.
    • Participated in the Web development Program conducted by APSSDC and Pantech.

Badges


HackTheBox

TryHackMe



Certificates

HTML certificate by Great Learning

HTML course comeletion certificate by Great Learning

CSS Certificate by Great Learning

CSS course comeletion certificate by Great Learning

Responsive Web Designing provided by Free Code Camp

Responsive Web Designing provided by Free Code Camp

Javascript provided by Udemy

Javascript for Beginners provided by Udemy

React JS 30days Masterclass Program

React JS 30days Masterclass Program

Ethical Hacking Training by Prompt Infotech

Ethical Hacking Training by Prompt Infotech

Penetration Testing Certificate by Udemy

Penetration Testing Certificate provided by Udemy

Digital crime and Cybercrime investigation

Digital Crime and Cybercrime Investigation Provided by Bored Monk Cyber Security Services



Hi There

I am a cybersecurity professional with 2.8+ years of hands-on experience in penetration testing, vulnerability management, endpoint security, Microsoft 365 security, incident response, and security operations. I am passionate about identifying security vulnerabilities, investigating threats, improving security controls, and continuously learning emerging cybersecurity technologies.