About Me
Experienced Security Engineer skilled in threat modeling, security design reviews, penetration testing, red
teaming, blockchain security and bug bounty. Has excellent communication skills and a proven track record in
vulnerability discovery and rapid Proof of Concept (PoC) development.
Active participation in the security community and can effectively assess and communicate risks to
internal and external organizations.
300+
Applications Secured
20+
Hall of Fame
10+
Years of
experience
experience
Technical Skillset
Technical Skills
Application Security
95%Network Security
95%AI Red Teaming
95%Cloud Security
95%Secure Code Review / AI-SAST
90%Threat Modeling
90%Secure SDLC
90%AI Agentic Security
75%Bug Bounty
95%Management Skills
Leadership
95%Project Management
95%Communication
95%Risk Management
85%Compliance Security
75%Strategic Planning
85%Qualification
Crusoe.ai
Sr. Product Security Engineer
2025 - Present
- Lead Product Security for Crusoe's GPU cloud platform - the
AI infrastructure powering large-scale ML training and inference workloads.
- Developed Agentic AI workflows for AI-SAST, Pentesting, Infrastructure Security.
- Drive threat modeling and secure design reviews for new AI/ML services, partner services, and customer-facing APIs before they ship.
- Architect secure-by-default patterns for multi-tenant GPU isolation, model serving, and data pipelines.
Amazon
Offensive Security Engineer II
2023- 2025
- Responsibe for conducting Red & Purple Team engagements,
simulating advanced adversary tactics.
- Conducted Pentesting with source code analysis and secure SDLC integration.
- Performed cloud security assessments, identifying and mitigating risks in cloud infrastructures.
- Executed hardware pentesting for Robotics and IoT systems, uncovering vulnerabilities in embedded devices.
Apple
Security Engineer
2023 - Present
- Performed threat modeling techniques to enhance the security
posture of software applications, assisting developers in effectively mitigating potential risks.
- Conducted comprehensive source code analysis, penetration testing, and contributed to the implementation of secure software development practices, ensuring adherence to industry standards.
- Strengthened cloud security through comprehensive assessments and implemented strategies to safeguard critical infrastructure.
Security Research Lead
CRAC Learning
2022 - Present
- Led security research initiatives as a volunteer at CRAC
Learning.
- Delivered mentorship and training to a team of volunteers on the intricacies of Security Research.
Security Consultant
Varutra Consulting
2017 - 2022
- Performed SAST/DAST Security Assessment using OWASP/NIST
Security Standards for over 200+ clients
- Performed Onsite Engagements such as Wi-Fi Hacking, Red Teaming, Cloud Audit (AWS, GCP, Azure, Oracle Cloud (OCI))
- Conducted and led security assessments for multiple clients.
Independent Security Researcher
HackerOne | Bugcrowd | Synack
2016 - Present
- Conducted independent vulnerability assessments on various
targets during personal time.
- Proficient in Attack Surface Management, Reconnaissance, and Application Security.
- Identified and reported critical vulnerabilities to various bug bounty programs.
AI Red Team - Attacking AI
Arcanum Information SecurityUniversity of Maryland, College Park
Masters of Engineering in CyberSecurity- Acquired in-depth knowledge in areas such as network security, binary exploitation, reverse engineering, digital forensics, threat modeling, encryption, vulnerability assessment, and incident response.