Filter interviews by
I applied via Referral and was interviewed before Jun 2022. There were 3 interview rounds.
Security concepts in cyber security refer to fundamental principles and practices that help protect information and systems from unauthorized access, use, disclosure, disruption, modification, or destruction.
Confidentiality: Ensuring that information is only accessible to those who are authorized to view it.
Integrity: Ensuring that information is accurate and has not been tampered with.
Availability: Ensuring that infor...
DoS attack targets a single system, while DDoS attack targets multiple systems simultaneously.
DoS stands for Denial of Service, where a single system is targeted with overwhelming traffic to make it unavailable to users.
DDoS stands for Distributed Denial of Service, where multiple systems are used to launch the attack simultaneously.
DoS attacks can be carried out by a single attacker, while DDoS attacks require multipl...
Cyber Kill Chain is a framework used to describe the stages of a cyber attack, from initial reconnaissance to data exfiltration.
Cyber Kill Chain was developed by Lockheed Martin to help organizations understand and defend against cyber attacks.
The stages of Cyber Kill Chain include reconnaissance, weaponization, delivery, exploitation, installation, command and control, and actions on objectives.
By understanding each s...
I applied via Referral and was interviewed in Oct 2024. There was 1 interview round.
I came across a vulnerability in a web application that allowed for SQL injection attacks.
Identified lack of input validation in user inputs
Discovered that the application was directly executing user-supplied SQL queries
Suggested implementing parameterized queries to prevent SQL injection
Tested the vulnerability by attempting to inject SQL code through input fields
It depends on the specific use case and requirements.
TCP is reliable and ensures all data is delivered in order, but it can be slower due to the overhead of error-checking and retransmission.
UDP is faster and more efficient for real-time applications like video streaming or online gaming, but it does not guarantee delivery or order of packets.
Choose TCP for applications that require reliable data transmission, such as ...
Hashing is a process of converting input data into a fixed-size string of bytes using a mathematical algorithm.
Hashing is commonly used in password storage to securely store user passwords without storing the actual password.
Hashing is used in digital signatures to ensure the integrity of the signed data.
Blockchain technology uses hashing to create a secure and tamper-proof record of transactions.
File integrity checks ...
A DNS server is a computer server that contains a database of public IP addresses and their associated hostnames.
Translates domain names to IP addresses
Resolves queries from clients
Helps in navigating the internet by mapping domain names to IP addresses
The Qualys agent is a lightweight software installed on endpoints to collect security data and perform security assessments.
Qualys agent is a lightweight software installed on endpoints to collect security data.
It helps in performing security assessments by scanning for vulnerabilities and compliance issues.
The agent continuously monitors the endpoint for any security threats and sends the data to the Qualys Cloud Plat...
I am a dedicated Information Security Analyst with a strong background in cybersecurity and a passion for protecting data.
Experienced in conducting security assessments and implementing security measures
Skilled in analyzing security breaches and responding effectively
Proficient in using security tools and technologies such as firewalls and encryption
Strong understanding of compliance regulations and best practices in i
I applied via Naukri.com and was interviewed in Oct 2024. There was 1 interview round.
posted on 18 Oct 2024
I applied via Naukri.com and was interviewed in Sep 2024. There was 1 interview round.
The MITRE ATT&CK framework is a knowledge base of adversary tactics and techniques based on real-world observations.
MITRE ATT&CK provides a comprehensive list of techniques used by attackers to compromise systems.
Techniques are categorized into tactics such as Initial Access, Execution, Persistence, etc.
Examples of techniques include Spearphishing Attachment, Command and Scripting Interpreter, and Registry Run Keys / S
I applied via Naukri.com and was interviewed before Jun 2023. There were 3 interview rounds.
Aptitude test was taken in Round 1
I applied via Walk-in and was interviewed before Aug 2022. There were 3 interview rounds.
General Aptitude tests
General Group Discussion Topics like - How EVs will help in future transport
I applied via Newspaper Ad and was interviewed in Apr 2022. There were 2 interview rounds.
posted on 12 Jun 2024
Handling security incidents requires quick response, analysis, and communication to mitigate risks.
Quickly assess the situation to determine the severity of the incident
Isolate affected systems to prevent further damage
Collect evidence for analysis and potential legal action
Communicate with stakeholders, including IT teams, management, and possibly law enforcement
Implement security measures to prevent future incidents
Malware refers to malicious software designed to disrupt, damage, or gain unauthorized access to a computer system.
Viruses: self-replicating programs that attach themselves to clean files and spread throughout a computer system
Trojans: disguised as legitimate software, they trick users into installing them and then perform malicious actions
Worms: self-replicating malware that spreads across networks without user interv...
Software Engineer
66
salaries
| ₹3.5 L/yr - ₹9 L/yr |
Devops Engineer
22
salaries
| ₹5.9 L/yr - ₹12 L/yr |
Software Developer
17
salaries
| ₹3.5 L/yr - ₹10 L/yr |
Salesforce Developer
14
salaries
| ₹5 L/yr - ₹10 L/yr |
Test Engineer
13
salaries
| ₹4.2 L/yr - ₹8.6 L/yr |
TCS
Wipro
Infosys
HCLTech