Simran Sohal


Location

Boston, MA
Education
    Northeastern University
    September 2021 - May 2023
    degree
    Master's
    major
    Cyber Security Systems
    coursework
    Foundations of Information Assurance, Network Security Practices, Security Risk Management & Assessment, Computer System Security, IT Governance Risk & Compliance, Wireless & Mobile Network Security
    Institute of Engineering and Technology DAVV
    August 2016 - May 2020
Work Experience
    Bloomberg LP
    Product Security Intern
    New York City, NY, United States, 10075
    May 2023 - August 2023
    company
    Bloomberg LP
    title
    Product Security Intern
    overview
    • Collaborated with developers for secure code reviews using SAST tools Fortify and Checkmarx to identify vulnerabilities in code such as XML eXternal Entity injection (XXE), SQL injection, cross-site scripting (XSS), path manipulation, etc. • Performed grey box penetration testing using Burp Suite and identified vulnerabilities such as Improper Access Control, Identification and Authentication failure, Improper Session Handling, etc., and provided security recommendations. • Built CI/CD Jenkins pipeline for security automation testing processes using cmake and proprietary tools. • Implemented OAuth 2.0 authentication protocol for Single Sign On (SSO) to access different applications seamlessly.
    Northeastern University College of Engineering
    Teaching Assistant
    Boston, MA, United States, 02297
    September 2021 - May 2023
    INDIAN RAILWAYS
    Network Operations Intern
    Boston, MA, United States, 02297
    January 2019 - April 2019