R

Ravindra jatav

Operations Associate

Pune, Maharashtra, India4 yrs 3 mos experience
Most Likely To SwitchHighly Stable

Key Highlights

  • 4+ years of experience in Cyber Security
  • Expert in Vulnerability Assessment and Penetration Testing
  • Active contributor in Bug Bounty programs
Stackforce AI infers this person is a Cyber Security Specialist with expertise in VAPT and application security.

Contact

Skills

Core Skills

Vulnerability Assessment And Penetration Testing (vapt)Web App SecurityApi SecuritySecurity Consulting

Other Skills

Vulnerability AssessmentPenetration TestingBurp SuiteNmapNessusOWASP Top 10Burp Suite ProOWASP ZAPMetasploitFridaObjectionPostmanSecuritySafeguardInformation Security Consulting

About

I am a Cyber Security Professional specializing in Vulnerability Assessment & Penetration Testing (VAPT) with 4+ years of hands-on experience securing web applications, mobile apps, APIs, networks, and cloud environments. My expertise lies in identifying complex security flaws, validating real-world attack scenarios, and helping organizations strengthen their overall security posture. Over the years, I’ve performed end-to-end penetration testing for multiple projects, combining manual testing techniques with industry-standard tools such as Burp Suite, Nmap, Nessus, Frida, Objection, OWASP ZAP, and advanced mobile testing frameworks. I have consistently delivered high-quality security assessments aligned with OWASP Top 10, SANS 25, MITRE ATT&CK, and secure coding practices. My approach goes beyond finding vulnerabilities—I focus on root cause analysis, clear and actionable remediation, and close collaboration with development, DevOps, and product teams. I take pride in simplifying complex security findings into practical solutions that help teams deploy secure applications faster. Alongside corporate work, I stay active in the security community through Bug Bounty programs, where I have identified numerous high-impact vulnerabilities across global platforms and earned multiple recognitions in Hall of Fame listings. I’m passionate about continuous learning, exploring new attack techniques, mobile security research, and contributing to the security community. I’m always open to connecting with cybersecurity professionals, security teams, and organizations looking to enhance their security posture. Key Skills: VAPT | Web App Security | Mobile App Security | API Security | Manual Pen Testing | Burp Suite | Frida | Objection | SAST & DAST | OWASP Top 10 | Threat Modeling | Cloud Security Basics | Report Writing | Bug Bounty | Security Best Practices

Experience

Confidential

2 roles

Cyber Security Analyst

Oct 2025Present · 6 mos · Pune District

  • Performed regular vulnerability assessments and penetration testing (VAPT) on web, mobile, and network environments to identify security gaps.
  • Conducted manual and automated testing using tools like Burp Suite, Nmap, and Nessus to uncover vulnerabilities.
  • Identified and exploited security issues such as OWASP Top 10 vulnerabilities including XSS, SQL Injection, and CSRF.
  • Analyzed security findings and provided clear, actionable remediation recommendations to development and IT teams.
  • Prepared detailed VAPT reports with risk ratings, proof of concepts (PoC), and mitigation steps.
  • Collaborated with developers and system administrators to fix vulnerabilities and improve overall security posture.
Vulnerability AssessmentPenetration TestingBurp SuiteNmapNessusOWASP Top 10+2

Cyber Security Analyst

May 2022Sep 2025 · 3 yrs 4 mos · Pune District

  • Conduct end-to-end VAPT for Web, Mobile (Android), and API applications in black-box and grey-box environments.
  • Perform manual penetration testing aligned with OWASP Top 10, API Top 10, MASVS, and SANS 25 standards.
  • Identify critical vulnerabilities such as IDOR, SSRF, SQLi, Authentication flaws, Broken Access Control, and API misconfigurations.
  • Utilize tools such as Burp Suite Pro, OWASP ZAP, Nmap, Nessus, Metasploit, Frida, Objection, ADB, MobSF, and Postman for deep testing.
  • Validate remediation fixes and collaborate with Dev/QA/Infra teams to ensure secure deployment.
  • Prepare detailed VAPT reports containing PoCs, CVSS scoring, and mitigation steps.
  • Handle vulnerability management using Qualys and assist in cloud (AWS) basic security review.
  • Participate in incident simulation, purple team exercises, and internal threat research.
Vulnerability AssessmentPenetration TestingBurp Suite ProOWASP ZAPNmapNessus+6

Progist

Security Consultant

Oct 2021Mar 2022 · 5 mos

  • Performed VAPT for web applications, APIs, and internal networks to identify security weaknesses.
  • Used tools such as Burp Suite, OWASP ZAP, Nmap, Metasploit, and Nessus for automated and manual assessments.
  • Documented vulnerabilities with clear impact, risk severity, and actionable remediation steps.
  • Collaborated with development teams to fix issues and confirm successful mitigation through retesting.
  • Supported security audits and compliance-driven assessments.
  • Ensured timely delivery of reports and maintained strong communication with clients during assessments.
Vulnerability AssessmentPenetration TestingBurp SuiteOWASP ZAPNmapMetasploit+3

Education

SARVEPALLI RADHAKRISHNAN UNIVERSITY

Bachelor of Computer Applications — Bachelor in Computer Application (BCA) is an undergraduate degree course in computer applications.

Jun 2016May 2018

Stackforce found 100+ more professionals with Vulnerability Assessment And Penetration Testing (vapt) & Web App Security

Explore similar profiles based on matching skills and experience