R

Raphael Karger

Co-Founder

Seattle, Washington, United States3 yrs 7 mos experience
Most Likely To Switch

Key Highlights

  • Co-Founder and CTO of a cybersecurity startup.
  • Led offensive security campaigns at Google Cloud.
  • Expert in vulnerability research and cloud security.
Stackforce AI infers this person is a Cybersecurity Expert with a focus on Offensive Security and Cloud Infrastructure.

Contact

Skills

Core Skills

CybersecuritySecurity ProtocolsVulnerability ResearchOffensive SecurityCloud SecurityRed TeamingSoftware Development

Other Skills

Incident ResponseData ProtectionComplianceThreat IntelligenceVulnerability DetectionBlockchainInfrastructure SecurityApplication SecurityWeb Application SecurityC++Python (Programming Language)Penetration TestingInformation SecurityWeb DevelopmentSQL

About

Experienced in offensive security and cybersecurity software development.

Experience

3 yrs 7 mos
Total Experience
1 yr 9 mos
Average Tenure
1 yr 11 mos
Current Experience

Zeropath

Co-Founder & CTO

Jun 2024Present · 1 yr 11 mos · San Francisco, California, United States · On-site

Google

4 roles

Cybersecurity Startup Advisor - Startups for Sustainable Development

Dec 2023Jun 2024 · 6 mos

  • Advised startup founders whose companies are working towards addressing the 17 Sustainable Development Goals.
  • Provided coaching and guidance on a wide range of topics related to Security. These requests encompass building robust security protocols, developing incident response plans, enhancing cybersecurity awareness and training, implementing access control measures, and ensuring data protection and compliance.
CybersecuritySecurity ProtocolsIncident ResponseData ProtectionCompliance

Security Engineer - L4

Promoted

Nov 2023Jun 2024 · 7 mos

  • Conducted comprehensive security analysis of Google Cloud Platform (GCP) products, identifying critical vulnerabilities across various product classes.
  • Leveraged threat intelligence data to uncover and exploit new attack vectors, successfully compromising over 200 high-value production systems on GCP.
  • Contributed to developing an internal tool to map potential attack paths within GCP infrastructure, catering specifically to Alphabet's extensive use of GCP services.
  • Designed and executed strategic offensive security campaigns, providing leadership and mentorship to team members throughout the initiatives.
  • Developed and documented security policies for implementing cloud security products, including VPC-SC, within Google's GCP infrastructure.
Vulnerability ResearchThreat IntelligenceOffensive SecurityCloud Security

Security Engineer - L3

Sep 2022Oct 2023 · 1 yr 1 mo

  • Became subject matter expert in cloud database products offered by GCP.
  • Ensured the implementation and design of safe architecture within GCP products by consulting various product teams.
  • Designed, created, and maintained continuous integration tooling used internally to detect vulnerabilities in code.
  • Planned, led, and executed red team exercises to exfiltrate user data. Discovered new exfiltration vectors and web application vulnerabilities in public Google products.
  • Conducted design and implementation reviews for products handling user and financial data.
Cloud SecurityVulnerability DetectionRed Teaming

Security Engineering Intern

Jun 2021Aug 2021 · 2 mos · Greater Seattle Area

  • Contributed to developing Golang-based tooling to detect security misconfigurations and vulnerabilities in infrastructure as Code (Terraform).
  • Wrote peer-reviewed software design document outlining the development I completed.
  • Integrated tool into existing Continuous Integration pipelines and
  • pre-deployment checks.
  • Developed the dynamic generation of functions for a library used to convert
  • Terraform resources to cloud metadata. Used Ruby and the Embedded Ruby
  • templating engine to generate and test entries dynamically.
Software DevelopmentCloud Security

Bishop fox

Cyber Security Consultant Intern

Jan 2021Apr 2021 · 3 mos · Tempe, Arizona, United States

  • Performed source code reviews, network, cloud, and web application penetration tests.
  • Built internal scripts, tools, and methodologies.
  • Developed comprehensive and accurate reports along with presentations for both technical and executive audiences.
  • Worked with client security and IT operation teams to implement remediation plans.
Vulnerability Research

Air force research laboratory

Cyber Security Research Co-Op

Jun 2020Aug 2020 · 2 mos · Rome, New York, United States

  • Engaged in intensive Advanced Course in Engineering (ACE) cyber warfare boot camp through rigorous coursework, research, and multi-domain field operations.
  • Solved graduate-level challenges for open-ended Air-Force relevant problems in exploit development, hardware security, covert communications, software reverse engineering, and red team operations.
  • Participated in leadership and technical development under the mentorship of distinguished leaders in the government and military.
  • Planned, lead, and executed a simulated cyber warfare campaign.
Vulnerability Research

Education

Brown University

Master of Science - MS — Cybersecurity and Policy

Jan 2023Jan 2025

Y Combinator

Jul 2024Oct 2024

University at Albany

Bachelor of Science - BS

Jan 2019Jan 2022

Stackforce found 100+ more professionals with Cybersecurity & Security Protocols

Explore similar profiles based on matching skills and experience