Swaroop Yermalkar — DevOps Engineer
Hey! I'm Swaroop Yermalkar, a cybersecurity professional with more than a decade of experience, currently based in Sydney. I started my cybersecurity journey right after finishing my engineering degree. Since then, I've worked in many different security roles - from Security Analyst and Security Engineer to Product Security Lead and Head of Red Teaming. I really enjoy helping technical teams and business leaders understand each other when it comes to security. I've worked at companies like ThriveDX, Philips Healthcare, Khoros, Traveloka, and Persistent Systems. Now I work as an independent security researcher and consultant, helping companies improve their security with solutions that actually work in the real world. I am the author of “Learning iOS Penetration Testing”, published by Packt (UK). The book teaches how to perform iOS application penetration testing, starting from the basics and moving to more advanced security techniques. It is designed to help security professionals, developers, and beginners understand how to test and secure iOS apps properly. I also lead the OWASP iGoat open-source project, which focuses on mobile security education. iGoat is a CTF-style iOS application that includes multiple hands-on challenges related to iOS penetration testing and security vulnerabilities. It is designed to make learning iOS security practical, interactive, and fun. I love sharing my research globally and have been fortunate to speak at conferences including Defcon (AppSec Village), AppSec USA (2017/2018), HITB, BruCON, SEC-T, and AppSec Israel (2018/2023), as well as HITCON, c0c0n, Bugcrowd LevelUp, KazHackStan, GroundZero, EuropeanSec, 0x90, and GNUnify. I have certifications like OSCP, OSCE, OSWP, and CREST. I'm also a top-rated pentester on platforms like Cobalt.io and HackerOne, having successfully led 500+ pentests for global companies, identified 1,000+ vulnerabilities, and managed global teams of up to 6 pentesters. I believe in always learning new things and helping others in the security community. Whether I'm mentoring people who are new to security, working on open source projects, or helping companies stay safe - I'm always happy to share what I know.
Stackforce AI infers this person is a Cybersecurity Specialist with extensive experience in mobile and application security.
Location: Sydney, New South Wales, Australia
Experience: 10 yrs 4 mos
Skills
- Security Research
- Penetration Testing
- Cyber-security
Career Highlights
- Over 500 successful penetration tests led globally.
- Author of 'Learning iOS Penetration Testing'.
- Top-rated pentester on Cobalt.io and HackerOne.
Work Experience
Corellium
Sr Security Researcher (1 yr 7 mos)
ThriveDX
Senior Cyber Security Researcher (AppSec) (11 mos)
Red Team Security Researcher (3 yrs 11 mos)
Traveloka
Lead Security Engineer (Product Security Team) (1 yr 2 mos)
Khoros
Senior Security Engineer (1 yr 1 mo)
OWASP Foundation
OWASP iGoat Project Lead (Community Project) (9 yrs)
Cobalt
Pentest Lead (9 yrs 7 mos)
Philips Health Systems
Senior Software Engineer (Security) (1 yr 8 mos)
Synack Red Team
Security Researcher (freelancer) (11 yrs 1 mo)
Persistent Systems
Domain Consultant (Cyber Security) (2 yrs 6 mos)
Education
at MIT College of Engineering Pune