Subhash Paudel β Security Consultant
Subhash is an Experienced Security Consultant and Penetration Tester with a proven track record of working with global clients across the information security domain. He has conducted penetration tests on enterprise-scale web applications, APIs, mobile, IoT, wireless, and network infrastructures, uncovering and remediating critical vulnerabilities. He is a Partner of MITRE CNA, actively leading CVE services and vulnerability management. He has published 10+ CVEs in open-source projects, identifying issues such as SQL injection, XSS, and XPath injection. In addition, he has authored multiple blogs and articles on offensive security and cloud security, contributing to the wider cybersecurity community. With strong expertise in Red Teaming, Purple Teaming, and advanced adversary simulations, he is highly skilled in frameworks and standards, including MITRE ATT&CK, Cyber Kill Chain, NIST 2.0, OWASP, PTES, ISO 27001, and Essential 8. Professional Portfolio spans: π© Web Application & API Penetration Testing π© Internal | External Assessments | Purple Teaming π© Office/M365 and Cloud Security Reviews π© IoT | Wireless & Physical Security Testing π© Threat Hunting | EDR Monitoring & SIEM Management π© Incident Response and Digital Forensics π© Awareness Training | Phishing Campaigns π© Vulnerability Management | Password Audits π© Security Uplift through NIST Zero Trust Implementation Known for being an enthusiastic, ethical, and driven professional, he has a strong record of identifying critical issues such as account takeover, SQL injection, XSS, and unrestricted file uploads, often compromising entire domains during controlled engagements. Certifications: CREST CRT/CPSA, OSCP, OSEP, CRTO, CBBH, CASA, CISCO, Microsoft, Qualys, Rapid7, etc.
Stackforce AI infers this person is a Cybersecurity expert specializing in penetration testing and vulnerability management.
Location: Geelong, Victoria, Australia
Experience: 8 yrs 5 mos
Skills
- Penetration Testing
- Cloud Security
- Vulnerability Management
- Vulnerability Assessment
- Training Development
- Cybersecurity Awareness
- Vulnerability Reporting
- Network Support
Career Highlights
- Published 10+ CVEs in open-source projects.
- Expert in Red Teaming and advanced adversary simulations.
- Led vulnerability management achieving Essential 8 Maturity Levels.
Work Experience
Spartans Security
Security Consultant (1 yr 9 mos)
Penetration Tester (1 yr 2 mos)
Hacking Articles
Cyber Security Consultant (10 mos)
Nexon Asia Pacific
Penetration Tester / Security Specialist (6 mos)
Bugcrowd
Security Researcher (11 mos)
Total IT Global
Network and System Support Engineer (2 yrs)
Coles
Customer Service Representative (2 yrs 11 mos)
Education
GRC Approch Managing Cyber Security at Kennesaw State University
Bachelors at University of South Australia