Shaunak Chattopadhyay

Software Engineer

Bengaluru, Karnataka, India4 yrs 6 mos experience
AI EnabledAI ML Practitioner

Key Highlights

  • Led over 30 threat models preventing breaches.
  • Executed 100+ application assessments focusing on injection vulnerabilities.
  • Expert in AI Security and Embedded Systems Security.
Stackforce AI infers this person is a Cybersecurity expert specializing in AI Security and Embedded Systems.

Contact

Skills

Core Skills

Threat ModelingEmbedded Systems SecurityAi SecurityIot SecurityEthical HackingPenetration TestingAutomationInformation SecurityVulnerability AssessmentWeb Application Security

Other Skills

Mobile Application SecuritySecurity ConsultingOT Penetration TestingThreat & Vulnerability ManagementKali LinuxMicrosoft WordInternal Penetration TestingOSINTCensysRed TeamingNmapBurp SuiteLeadershipVulnerability ManagementMetasploit

About

Shaunak is a passionate and driven security engineer with experience in customer-facing roles. Skilled and Adept at Threat Modeling, Design Reviews, and executing red team operations, with a knack for uncovering risks and delivering actionable insights. He is proficient in Web & API Security Assessment, Embedded Security Assessment, and AI/LLM Red teaming. I have helped organizations secure emerging technologies by: ✅ Leading security assessments for Web/API, IoT Systems & Cloud infra ✅ 30+ iterative threat models preventing breaches pre-deployment ✅ 100+ application assessments specializing in injection vulnerabilities ✅ Advanced red team operations for IT/OT environments ✅ Transforming technical risks into actionable business insights Proven in: • AI Security: Guardrails against prompt injection/LLM supply chain attacks • Embedded Devices/IoT: Hardware pentesting & protocol security • Secure SDLC: SAST/DAST integration, reducing vulnerabilities in CI/CD pipelines Let's secure the future together → shaunak.chattopadhyay99@gmail.com

Experience

Enphase energy

Senior Engineer - Security Test and Development

Nov 2025Present · 4 mos · On-site

  • Building and Breaking security sometimes in H/W, sometimes maybe Applications ;)
Threat ModelingMobile Application SecurityWeb Application SecurityEmbedded Systems SecurityPenetration Testing

Payatu

Senior Security Consultant

Jul 2025Oct 2025 · 3 mos · Remote

  • Back to basics, hacking web applications for bread and butter ;)

Kpmg india

2 roles

Cyber Security Consultant

Promoted

Apr 2024Jul 2025 · 1 yr 3 mos · Bengaluru, Karnataka, India

  • Training team members on niche areas i.e. threat modelling, AI Security, IoT/OT Security and AppSec.
  • Conducted Security Design Reviews and Threat Modeling for IoT products, evaluating secure architecture requirements for hardware, cloud, APIs, and mobile applications.
  • Identified vulnerabilities in AI/LLM-based platforms (supply chain risks, prompt injection flaws); implemented guardrails and secure coding practices with developers.
  • Developed advanced phishing frameworks, utilising Deepfake, AI base Voice Cloning and Vishing.
  • Designed SIEM use cases for IIoT grade embedded devices and further implemented niche detection techniques specifically for Custom Linux OS.
IOT SecurityAI SecurityThreat ModelingSecurity ConsultingOT Penetration Testing

Associate Consultant

Feb 2023Apr 2024 · 1 yr 2 mos · Bengaluru, Karnataka, India

  • Performed SAST for Ruby/C/C++ codebases; integrated findings into CI/CD pipelines to reduce vulnerabilities during development.
  • Collaborated with engineering teams to prioritize and remediate critical issues (e.g., command injection, RCE).
  • Led Red Team exercises for OT/IT systems, improved incident response playbooks.
Ethical HackingThreat & Vulnerability ManagementPenetration TestingKali LinuxMicrosoft WordInternal Penetration Testing+18

Tata consultancy services

2 roles

Senior Security Analyst

Promoted

Apr 2022Feb 2023 · 10 mos

  • ‣ Led a team of 4 to gather remediation plans/risk acceptances, and ensure effective communication of solutions to stakeholders via meetings or mail.
  • ‣ Researched, developed & implemented process improvement for clients by creating interactive dashboards & custom automation in the environment.
  • ‣ Created cybersecurity best practice communications to educate staff against breaches, zero-day vulnerabilities & remedial measures through research.
  • ‣ Developed options to advise on prioritization of remediation actions and reconciliation of vulnerability mitigation action date.
AutomationThreat & Vulnerability ManagementInformation SecurityMicrosoft WordJiraVulnerability Management+7

Cyber Security Analyst | TCS Digital

Aug 2021Feb 2023 · 1 yr 6 mos

  • ‣ Joined TCS as a Digital Cadre being in the top 0.1% of the hiring drive.
  • ‣ Performed vulnerability assessment scans on the client side to ensure maximum coverage and conducted penetration tests for clients.
  • ‣ Reviewed violations of computer security procedures and supported the remediation plan development as well as the current status of remediation plan execution.
ResearchPenetration TestingKali LinuxVulnerability AssessmentRequirements AnalysisInformation Security+17

Nciipc india (a unit of ntro)

Intern

Aug 2020Nov 2020 · 3 mos

  • ‣ The objective of the project was to identify online ICS/SCADA/IoT systems and their vulnerabilities using passive reconnaissance.
  • ‣ Developed a framework that uses APIs (Censys, Shodan, etc) to enumerate ICS/SCADA/IoT devices used by GOI which are vulnerable to foreign threats.
Information SecurityOpen-Source SoftwareCensysPython (Programming Language)UnixLinux+2

Safehack

Intern WAPT

May 2020Jun 2020 · 1 mo · Bhubaneshwar, Odisha, India

  • ‣ Tested security of systems by attempting to gain access to web-based applications.
  • ‣ Documented penetration testing findings.
Web Application SecurityPenetration TestingInformation SecurityBurp SuiteUnixLinux

Education

Siksha 'O'​ Anusandhan University

Bachelor of Technology - BTech — Computer Science and Information Technolgy

Jan 2017Jan 2021

Stackforce found 100+ more professionals with Threat Modeling & Embedded Systems Security

Explore similar profiles based on matching skills and experience