Nancy Ratnakar
Lead Software Testing Engineer
- Role
- IT Security Test Lead at Ferguson
- Location
- Alexandria, VA, US
- LinkedIn followers
- 500 followers
About Nancy Ratnakar
As a Security Lead, I am passionate about securing digital systems against attacks. With 12 plus years of experience in the field, I have honed my skills in identifying vulnerabilities and developing solutions to mitigate them. My expertise includes conducting penetration testing to evaluate the security of systems and networks, analyzing vulnerabilities, and developing strategies to address them. I have experience working in different domains such as Banking, Retail, Healthcare, and Education. My technical skills include proficiency in using tools like Kali Linux, Metasploit, Nmap, and Burp Suite. I have experience in performing various penetration testing techniques such as black-box testing, white-box testing, and grey-box testing. In addition to technical skills, I have experience leading teams of security professionals and providing technical guidance to team members. I have experience in training and mentoring junior team members in the field of penetration testing. I am passionate about staying up-to-date with the latest security trends and technologies. I regularly attend security conferences and training sessions to improve my knowledge and skills in the field.
Experience
IT Security Test Lead
Jan 2019 — Present · Newport News, VA, US
As a Security QA Lead, I am responsible for overseeing the daily activities of QA staff across various projects and ensuring the successful completion of quality initiatives at every stage of the Software Development Life Cycle (SDLC). I identify dependencies between applications to eliminate/reduce risks and potential conflicts during releases. Additionally, I work on resource allocation for security projects. I have experience in adding direct connectors for Active Directory, LDAP, and Exchange Online via SailPoint, and have worked on identifying Critical, High, Medium, and Low vulnerabilities in applications based on OWASP Top 10. I have led teams in conducting application penetration testing of internal applications and worked on Master Policy/ Platform policy and ServiceNow tickets. My expertise includes identifying and exploiting vulnerabilities such as Cross-Site Scripting (XSS), Broken Authentication and Session Management, SQL Injection, and Sensitive Data Exposure. I also have experience in conducting vulnerability assessments and penetration tests following OWASP guidelines to uncover security vulnerabilities in internally developed software products. My expertise includes analyzing complex risk scenarios and providing recommendations for mitigating identified risks. I work closely with cross-functional teams to develop and implement risk management strategies that align with organizational goals and objectives. I specialize in validating Identity and Access Management (IAM) systems using SailPoint.
Education
Kendriya Vidyalaya
High School
2003 — 2004
University of Mumbai
Bachelor of Engineering - BE, Information Technology
2004 — 2008
Find verified contacts for anyone on LinkedIn
Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.
Free plan included · No credit card required
This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.