About
I am a junior security analyst and full-stack developer based in Mangaluru, India. I build web applications with Next.js, TypeScript, and PostgreSQL, and perform manual penetration testing focused on business logic and API security vulnerabilities.
Over the past 6 months at CyberSapiens EdTech, I performed manual web and API penetration testing, identifying vulnerabilities including BOPLA, BFLA, Mass Assignment, SSRF, Blind SQL Injection, and authentication bypass flaws. I produced structured vulnerability reports with technical details, business impact, and remediation guidance.
Outside of security testing, I have built and deployed 3 production applications: an order management platform for KeebForge, a community keyboard vendor directory (KeyDir.in), and a business website. I also hold CEH, CRTOM, CRPO, and ISO 27001 certifications.
Technical Skills & Expertise
• Web Application & API Penetration Testing
• Full-Stack Development (Next.js, TypeScript, PostgreSQL)
• Authentication & Authorization Security
• Bug Bounty Programs (Bugcrowd, HackerOne)
• Docker & Linux Administration
• Security Tooling & Automation
Currently Learning
• Advanced exploitation techniques
• Cloud security architecture (AWS)
• Go for security tooling
• Reverse engineering with Frida
Projects
Production applications, client projects, and open-source work. Each project includes the problem, solution, tech stack, and impact.
Experience
Professional experience and education timeline.
Certifications
Industry certifications in offensive security, cloud security, and information security management.
Contact
Available for security consulting, full-stack development, and collaboration. All profiles are actively maintained.