Swetha B

Security Engineer

San Francisco, California, United States2 yrs 1 mo experience
Most Likely To Switch

Key Highlights

  • Reduced alert fatigue by 30% through automation.
  • Built RBVM dashboard prioritizing vulnerabilities.
  • Expert in bridging offensive and defensive security.
Stackforce AI infers this person is a Cybersecurity Engineer specializing in cloud security and automated defense systems.

Contact

Skills

Core Skills

Security AssessmentZero-trust ArchitectureIncident ResponseThreat DetectionVulnerability ManagementPenetration TestingVulnerability AssessmentNetwork SecurityWeb Application SecurityIntrusion Detection

Other Skills

LinuxVulnerability Assessment and Penetration Testing (VAPT)WiresharkAWS SecurityCloud SecurityQualysSecurity ResearchCybersecurityCTFDockerStreamlitpytestSQLAlchemyRegexChrome API

About

Hi, I am Swetha, a security engineer who thinks like an attacker and builds like a defender. My journey has taken me from web application pentesting to cloud security engineering, and now into building automated defense systems and zero-trust frameworks at scale. I hold a Master's in Cybersecurity from the University of Maryland, where I focused on penetration testing, incident response, and cloud security. Along the way, I have contributed at organizations like Wipro and the UMD Security Operations Center, reducing alert fatigue by 30%, automating incident response, and remediating critical AWS vulnerabilities before attackers could exploit them. Here is what drives me: โ†’ Building detection systems that catch real threats, not just generate noise โ†’ Automating security at scale, from PKI rotation to compliance enforcement โ†’ Bridging offensive and defensive security to create defenses that actually work โ†’ Making security accessible for developers and operators, not just security teams Certifications: ๐Ÿ” OSCP / OSCP+ (Offensive Security) โ˜๏ธ AWS Solutions Architect โ˜๏ธ AWS Cloud Practitioner ๐Ÿ›ก๏ธ CompTIA Security+ ๐ŸŽฏ eJPT (Junior Penetration Tester) I care more about solving real problems than collecting badges. I am currently exploring how AI can augment security workflows and recently built an RBVM dashboard that prioritizes vulnerabilities using threat intelligence from CISA and EPSS. My toolkit: Python, Go, Bash | AWS Security Services | ELK, Splunk | Burp Suite, Metasploit ๐Ÿš€ Currently open to security engineering roles in cloud security, detection engineering, or security platform development where I can combine offensive expertise with building scalable, automated defenses. If you are hiring or know someone who is, let us chat: ๐Ÿ“ง swethab@terpmail.umd.edu ๐ŸŒ swethab.dev Github: https://github.com/0xsrb Or if you are working on hard problems at the intersection of cloud, automation, and threat detection, let us connect and trade ideas!

Experience

2 yrs 1 mo
Total Experience
11 mos
Average Tenure
1 yr 2 mos
Current Experience

Ysecurity

Security Engineer

Feb 2026 โ€“ Present ยท 3 mos ยท San Francisco, CA ยท Hybrid

Community dreams foundation

Security Engineer

Aug 2025 โ€“ Present ยท 9 mos

  • Led security assessments and attack-surface reviews for 10+ sites and apps, using AI-assisted tooling to prioritize exploitable issues and cut mean time to remediation by 30%.
  • Designed and enforced RBAC and zero-trust access patterns for 1,000+ users, aligning with SOC2 requirements and reducing risky access paths.
  • Built automated compliance and risk dashboards aggregating data from 5 teams, giving leadership a live view of top vulnerabilities and incidents.
Security AssessmentZero-Trust Architecture

Women in cybersecurity (wicys)

Member

Mar 2025 โ€“ Present ยท 1 yr 2 mos

University of maryland

Security Operations Center Analyst

Dec 2024 โ€“ May 2025 ยท 5 mos

  • Investigated and triaged alerts in ELK-based SIEM, tuning rules to reduce false positives and improve detection accuracy by ~30%.
  • Authored IR playbooks and integrated Tines workflows to automate containment steps, shrinking time-to-containment by 25%.
  • Performed threat modeling and configuration reviews that uncovered misconfigurations in critical systems and informed remediation priorities.
Incident ResponseThreat Detection

Wipro

2 roles

Cyber Security Engineer

Promoted

Sep 2022 โ€“ Aug 2023 ยท 11 mos

  • Drove vulnerability management across AWS, remediating 10+ critical issues in EC2, IAM, and S3 that exposed high-risk attack paths.
  • Implemented and automated IAM guardrails and enforcement using AWS Lambda and policy-as-code, reducing unauthorized access risk.
  • Performed targeted penetration tests on internet-facing assets, partnering with product teams to close exploitable flaws and improve secure defaults.
LinuxVulnerability ManagementPenetration Testing

Cyber Security Analyst

Mar 2022 โ€“ Sep 2022 ยท 6 mos

  • Conducted VAPT on 15+ web applications using Burp Suite, Nmap, and OWASP testing methodology, identifying 30+ vulnerabilities (SQLi, XSS, CSRF) and creating detailed remediation reports
  • Performed network security assessments with Wireshark and Qualys, analyzing packet captures to detect anomalous traffic patterns and potential intrusions
  • Assisted in security research projects evaluating emerging threats, documenting findings in technical reports that informed security policy updates
Vulnerability Assessment and Penetration Testing (VAPT)WiresharkAWS SecurityCloud SecurityQualysSecurity Research+2

Ignited sparks technical solutions

Cyber Security Analyst

Sep 2020 โ€“ Dec 2021 ยท 1 yr 3 mos ยท India ยท Remote

  • Executed web application security testing on 8+ client projects using Burp Suite and OWASP ZAP, uncovering 25+ security flaws including authentication bypasses and injection vulnerabilities
  • Developed security documentation and remediation guides for development teams, translating technical findings into actionable fixes that reduced vulnerability recurrence by 20%
  • Monitored intrusion detection systems and analyzed security logs to identify suspicious activity patterns, supporting early threat detection
CybersecurityIntrusion DetectionCTFWeb Application Security

Education

University of Maryland

Master of Engineering - MEng โ€” Cybersecurity

Aug 2023 โ€“ May 2025

University of Maryland

Graduate Certificate โ€” Cloud Engineering

Aug 2023 โ€“ May 2025

Stackforce found 100+ more professionals with Security Assessment & Zero-trust Architecture

Explore similar profiles based on matching skills and experience