Shubham Jain

DevOps Engineer

Pune, Maharashtra, India6 yrs experience
Highly Stable

Key Highlights

  • Expert in Vulnerability Assessment and Penetration Testing.
  • Proficient in Cloud Security and AWS best practices.
  • Strong background in Mobile and API security assessments.
Stackforce AI infers this person is a Cybersecurity Specialist with expertise in Vulnerability Assessment and Cloud Security.

Contact

Skills

Core Skills

CybersecurityVaptCloud SecuritySecurity

Other Skills

API TestingAWSBurp Suite Enterprise EditionBurp Suite ProfessionalForensic AnalysisMobile SecurityNetwork SecuritySource code reviewThick Client Security testing

About

Experienced Security Analyst with a demonstrated history of working in the information technology and services industry. Skilled in VAPT, Forensic Analysis, Android Testing,Ios Testing, Network Security, Source Code Review, Api Testing,Thick Client Security testing.

Experience

Hilabs

Sr Information Security Engineer

Aug 2025Present · 7 mos · Pune, Maharashtra, India · On-site

  • 1. Perform Vulnerability Assessment, Penetration Testing, and Security Audits for API, and Web Applications (SAST/DAST) using a variety of tools and techniques.
  • 2. Conduct application vulnerability scans using industry-standard tools such as Burp Suite Professional, Acunetix, and IBM AppScan
  • 3. Develop and deploy custom Bash scripts to automate asset scanning and exploitation workflows
  • 4. Triage and manage reports on the Bugcrowd platform and coordinate with internal teams for vulnerability remediation and patch management
  • 5. Conduct Vendor Risk Assessments to evaluate third-party integrations, due diligence requirements, and alignment with internal security standards
  • 6. Collaborate with cross-functional teams across lines of business for regular product security audits, supporting teams in the remediation of vulnerabilities
  • 7. Contributed to the development of VAPT methodology, test cases, and technical approach documentation
  • 8. Serve as a Cloud Security Architect, designing and implementing secure cloud solutions and best practices across AWS environments.
  • (I) Defined and enforced cloud security controls for services such as IAM, S3, EC2, VPC, CloudTrail, Config, GuardDuty, WAF, Shield, and Inspector.
  • (ii)Led cloud security posture assessments and remediation efforts for misconfigurations, least privilege violations, and data exposure risks.
  • (iii)Worked with DevOps and Engineering teams to integrate security-by-design principles into cloud-native application deployments.
  • 9. Conducted Cloud Security Risk Assessments and advised leadership on architectural decisions to ensure compliance with industry frameworks (e.g., CIS, NIST, ISO 27001)
API TestingBurp Suite Enterprise EditionCybersecurityNetwork SecuritySource code reviewSecurity+1

Coindcx

Application security engineer

Jul 2022Jul 2025 · 3 yrs · India · Hybrid

  • Perform Vulnerability Assessment, Penetration Testing, Security Audit forMobile (Android/iOS), API and Web applications assessment (SAST/DAST) using avariety of tools and techniques
  • Perform application vulnerability scans using commercial automated vulnerability scanners. Sofar used
  • BurpSuite Professional, Acunetix, AppScan
  • Create and deployed custom bash scripts for automate scanning the assets and exploits
  • Triage and Manage Bugcrowd Platform and further patch update with Internal Teams
  • Conduct Vendor Risk Assessments for Projects to align vendor applications, due diligence, third-party
  • Integration minimum security requirements audit
  • Collaborate with team members and stakeholders on cross-LOB for regular security audits of product and help them in the remediation of vulnerabilities
  • Contributed to preparing VAPT test cases, approach documents.
  • Blockchain security.
  • smart contract audit.
CybersecuritySecurity

Network intelligence

Senior cybersecurity analyst

Apr 2021Jun 2022 · 1 yr 2 mos · Mumbai, Maharashtra, India · Remote

  • Conducting Manual Vulnerability Assessments and Penetration Testing on Web and Network.
  • Thick client applications security testing.
  • Perform Mobile applications security testing android and IOS both.
  • Perform reviews and audits of information security programs and processes as required, covering web
  • mobile application.Network VAPT.
  • Perform mobile security testing dynamic and static both.
  • API Testing.
CybersecuritySecurity

X-biz techventures private limited

Security Analyst

May 2020Apr 2021 · 11 mos · Mumbai, Maharashtra, India · Remote

  • Performed black, grey and white Box security testing of web ,Network and mobile application.
  • Vulnerability assessment, penetration testing, source code review,mitigating vulnerability & reporting.
  • Thick client applications security testing.
  • Perform reviews and audits of information security programs and processes as required, covering web
  • mobile application.Network VAPT.
  • API testing.
CybersecuritySecurity

Aaa technologies ltd.

Security Associate

Oct 2019Feb 2020 · 4 mos · Delhi, India · On-site

  • Performed black, grey and white Box security testing of web application.
  • Prepare vulnerability assessment and app testing report.
  • Performed network VA.
  • Information gathering.
  • OWASP Mobile TOP 10 -2017.
Security

Abir networks pvt. ltd.

Internship

Sep 2018Nov 2018 · 2 mos · Bhopal Area, India

  • Performed black, grey and white Box security testing of web application.
  • Prepare vulnerability assessment and app testing report.
  • Performed network VA.
  • Information gathering.
  • OWASP Mobile TOP 10 -2017.
Security

Education

Lakshmi Narain College of Technology, Kalchuri Nagar, Raisen Road, Post Klua, Bhopal-462021

Bachelor of Engineering - BE — Information Technology

Jan 2013Jan 2018

Stackforce found 100+ more professionals with Cybersecurity & Vapt

Explore similar profiles based on matching skills and experience