Aditya Verma

Security Engineer

Bengaluru, Karnataka, India4 yrs 5 mos experience
Most Likely To Switch

Key Highlights

  • Expert in blending offensive security with automation and AI.
  • Proven track record in vulnerability management and remediation.
  • Active contributor to the security community through CTFs and bug bounties.
Stackforce AI infers this person is a Cybersecurity expert with a strong focus on automation and vulnerability management.

Contact

Skills

Core Skills

Security EngineeringAutomationVulnerability ManagementSecurity Implementation

Other Skills

AdministrationAmazon Web Services (AWS)Attack surface managementBashBurp SuiteC (Programming Language)C++Continuous Integration and Continuous Delivery (CI/CD)CybersecurityData StructuresDockerGoogle Cloud Platform (GCP)Internet Protocol (IP)Internet Protocol Suite (TCP/IP)Invicti

About

Security Engineer at Rubrik, blending offensive security with automation and AI to turn research into repeatable, reliable defenses. Work spans vulnerability management, external attack surface monitoring, and cloud-native/container security, with an emphasis on shift-left practices that cut noise and accelerate remediation. Active in the security community through bug bounty research, CTF leadership, and hands-on education—authoring TryHackMe rooms, publishing practical write-ups, and releasing open-source tools. Known for mentoring and for building systems that make security scalable.

Experience

Rubrik, inc.

3 roles

Senior Security Engineer

Promoted

May 2025Present · 10 mos

  • AI Agent for Security Validation: Built an autonomous agent powered by large language models to verify and triage findings from a DAST scanner. The system leveraged LLM-assisted reasoning to drive context-aware request replay, dynamic payload generation, and intelligent response interpretation, filtering out false positives, streamlining validation workflows, and enhancing detection accuracy across security pipelines.
  • Runtime Container Security & Performance Optimization: Led the end-to-end integration of advanced runtime container scanning across dynamically provisioned Kubernetes clusters in a public cloud environment. Architected and validated agent resource requirements, developed custom Helm-based deployment solutions, and integrated secure credential management, establishing a robust and scalable security baseline for containerized product deployments.
KubernetesLarge Language Models (LLM)Security EngineeringAutomation

Security Engineer

Jul 2023May 2025 · 1 yr 10 mos

  • Zero-Day Vulnerability Detection: Built and operationalized an automated zero-day alerting platform, enabling rapid detection and notification within hours of public disclosure. Successfully identified and reduced exploitation risk across critical platforms including operating systems, enterprise applications, and network hardware.
  • Shift-Left Container Security: Designed and implemented shift-left security pipeline integrating multiple vulnerability scanning solutions including Wiz, Snyk, Prisma Cloud, and Invicti, standardizing reports and streamlining remediation workflows. Enhanced Jenkins workflows to automatically scan newly built container images, enabling early vulnerability detection and remediation ahead of production deployment.
  • External Attack Surface Management (EASM): Developed automated tooling to identify and alert on newly exposed domains and potential subdomain takeover risks. Enhanced proactive security by integrating regular web application scanning using Burp Enterprise and Nuclei to detect and report vulnerabilities across external-facing assets.
  • Enterprise VM Security Hardening: Significantly improved security posture of infrastructure VMs by introducing secure "golden image" standards in collaboration with infrastructure team, resulting in reduced vulnerabilities and more secure baseline configurations.
  • Enterprise-Wide Vulnerability Management: Established continuous vulnerability scanning coverage across the entire data center infrastructure. Delivered comprehensive visibility into vulnerabilities, enabling proactive identification, reporting, and prioritization for remediation.
DockerAttack surface managementAmazon Web Services (AWS)Tenable NessusVulnerability ManagementSnyk+4

Intern - Offensive Security

May 2022Nov 2022 · 6 mos

Razorpay

Security Engineer

Feb 2022May 2022 · 3 mos

Cloudsek

Security Engineer

Sep 2021Feb 2022 · 5 mos

  • Created an automation tool to create security reports depending upon the issues identified through BeVigil, which reduced the work load on security analysts by 50%.
  • Performed passive testing on clients to find weak endpoints leaking sensitive information.
  • Contributed to the development of a worldwide Log4shell scanner that was able to find 100+ RCEs in various organisations including some well known banks.

Vault infosec

Penetration Tester

Jul 2021Aug 2021 · 1 mo

Axios, iiit lucknow

2 roles

Lead Information Security Wing

Promoted

Apr 2021May 2022 · 1 yr 1 mo

  • Hosted Global Capture the Flag event Incognito, which saw the participation of 800+ teams from 45+ countries. Created 5 Virtual Machines each with its own website and system configuration that allowed exploitation of it in a specific manner while keeping the system's security and integrity from other attack vectors, along with numerous other challenges of Web Exploitation, Steganography, Cryptography, etc.
  • Led college's Capture the Flag team in various CTF events.

Member, Information Security Wing

Aug 2020Apr 2021 · 8 mos

  • - Participate in CTF events solving various type of security challenges ranging from various categories including but not limited to Web Exploitation, Steganography, Cryptography, Forensics, Binary Exploitation.

Hackerone

Security Researcher

Sep 2020May 2021 · 8 mos

Education

Indian Institute of Information Technology Lucknow

Bachelor of Technology - BTech — Information Technology

Jan 2019Jan 2023

Stackforce found 100+ more professionals with Security Engineering & Automation

Explore similar profiles based on matching skills and experience