Shobhit Srivastava ๐Ÿ‡ฎ๐Ÿ‡ณ

DevOps Engineer

Ahmedabad, Gujarat, India6 yrs 3 mos experience
Highly Stable

Key Highlights

  • Global ranking under 400 in Google Bug Hunters
  • Multiple Hall of Fame acknowledgments for vulnerability disclosures
  • Expertise in OWASP Top 10 vulnerabilities
Stackforce AI infers this person is a Security Researcher specializing in SaaS and information security.

Contact

Skills

Core Skills

Web Application SecuritySecurity ResearchPenetration TestingAutomation

Other Skills

Application Programming Interfaces (API)Burp SuiteCSRFCommunicationEthical HackingHack The Box AcademyHacking LabsInformation SecurityManagementNetwork SecuritySQL InjectionSecurity ControlsSecurity Patch ManagementThreat modelingVulnerability

About

As a Security Researcher at Google, I conduct advanced security tests, identifying and addressing potential vulnerabilities, including those outlined in OWASP's top 10 like XSS, CSRF, and SQLi. My contributions to security research have been recognized in multiple Hall of Fame acknowledgments from leading organizations such as Google, Shopify, and GitLab for responsibly disclosing critical vulnerabilities. With a Bachelor of Technology in Computer Science and Engineering from Shri Mata Vaishno Devi University, my expertise spans security research, penetration testing, and vulnerability assessment. My goal is to advance the field of information security by ensuring robust and secure systems, collaborating with teams, and contributing to impactful security solutions.

Experience

6 yrs 3 mos
Total Experience
1 yr 8 mos
Average Tenure
--
Current Experience

Google

Google Bug Hunter โ€“ Security Researcher (Independent Contributor)

Jul 2025 โ€“ Present ยท 10 mos ยท Remote

  • As a Security Researcher (Independent Contributor) at Google, I specialize in identifying and mitigating security vulnerabilities through rigorous testing. My role involves focusing on critical threats like XSS, CSRF, and SQL injection, ensuring robust protection for users. I have achieved a global ranking under 400, reflecting my commitment to excellence in security research.
  • Also, my experience includes:
  • Actively identify and validate security vulnerabilities across Google products through systematic
  • manual and automated testing, following the guidelines and scope defined by the Google Bug Hunters
  • platform.
  • Specialize in detecting critical issues such as XSS, CSRF, SQL Injection, access control flaws,
  • misconfigurations, privilege escalation, and other OWASP Top 10 vulnerabilities.
  • Achieved a global ranking under 400 on the Google Bug Hunters leaderboard, demonstrating
  • consistent high-quality findings and impact-driven security research.
  • Conduct in-depth security assessments of Web applications, APIs, Android components, and Google
  • AI products, strictly adhering to Googleโ€™s responsible disclosure and testing rules.
  • Utilize industry-standard tools, custom scripts, and advanced testing methodologies to uncover
  • security weaknesses within in-scope targets.
  • Perform comprehensive information gathering, threat modeling, test case creation, vulnerability
  • discovery, exploitation, and proof-of-concept development.
  • Document findings with clear technical explanations and remediation recommendations, ensuring
  • reproducibility, clarity, and alignment with Bug Hunters reporting standards.
Web Application SecurityEthical HackingSecurity ResearchApplication Programming Interfaces (API)Information Security

Net square solutions pvt. ltd.

Senior Security Engineer

Apr 2022 โ€“ May 2025 ยท 3 yrs 1 mo ยท Remote

  • Responsible for conducting penetration testing.
  • Code review.
  • Developing information security tools.
  • Information security research.
  • Conducting vulnerability assessment of live applications such as internet banking systems etc.
  • Android Security Testing.
  • Thick and Thin Client Testing.
Web Application SecurityPenetration TestingEthical HackingNetwork SecurityCommunicationBurp Suite+4

Vineti

Implementation Engineer

May 2021 โ€“ Dec 2021 ยท 7 mos ยท Armenia ยท Remote

  • Execute highly-scalable automation frameworks in Javascript
  • Execute software quality strategy
  • Set measures and targets for product quality and defect management
  • Write test plans and scripts to align development activities with product targets
  • Gather and analyze data on quality and defects
  • Work closely with Engineering, Product Management and DevOps to ensure quality goals
  • Perform other duties as assigned
  • (Through BigBinary)

Bigbinary

Automation Engineer

Apr 2021 โ€“ Mar 2022 ยท 11 mos ยท San Francisco, California, United States ยท Remote

Web Application SecurityManagementAutomationCommunicationInformation Security

Epitome technologies ltd.

Penetration Tester

Dec 2018 โ€“ Mar 2021 ยท 2 yrs 3 mos ยท Mohali, Punjab, India ยท On-site

Web Application SecurityCommunicationBurp Suite

Defence research and development organisation (drdo)

Intern

Jun 2017 โ€“ Aug 2017 ยท 2 mos ยท Kanpur Area, India ยท On-site

Education

ALLEN

High School

Shri Mata Vaishno Devi University

Bachelor of Technology โ€” Computer Science and Engineering

Stackforce found 100+ more professionals with Web Application Security & Security Research

Explore similar profiles based on matching skills and experience