Aniket Sinha

DevOps Engineer

Bengaluru, Karnataka, India3 yrs 2 mos experience
Most Likely To Switch

Key Highlights

  • Specialized in Application Security and Penetration Testing.
  • Expert in identifying critical vulnerabilities in various applications.
  • Proficient in cloud security auditing and policy reviews.
Stackforce AI infers this person is a Cybersecurity professional with expertise in Application Security and Penetration Testing.

Contact

Skills

Core Skills

Web Application SecurityMobile Application SecurityApi SecurityCloud Security Auditing & Policy ReviewVulnerability Assessment And Penetration Testing (vapt)Application Security

Other Skills

Mobile PentestingInfrastructure SecurityExternal pentestingInternal pentestingDASTSASTCloud auditAutomationSource code reviewNetwork SecurityOwsap 10Palo Alto NetworksAPI penetration testingNetwork penetration testingBurp Suite

About

Security Researcher and Penetration Tester specializing in Application Security (Web, API, Mobile) and Network Penetration Testing. Experienced in performing comprehensive Vulnerability Assessments and Penetration Testing (VAPT) aligned with industry standards such as OWASP Top 10, OWASP MASVS, and OWASP API Security Top 10. Skilled in cloud security auditing and policy review, with hands-on experience in source code review encompassing both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST). I actively participate in Capture The Flag (CTF) challenges and bug bounty programs, constantly refining my skills and knowledge to stay at the forefront of cybersecurity trends. Core Skills: Web Application Security API Security Mobile Application Security Network Security Secure Code Review Cloud Security Auditing & Policy Review Linux & Networking Fundamentals Tools & Technologies: Burp Suite, OWASP ZAP Proxy, Postman, Wireshark, Metasploit, Hashcat, Nmap, OpenVAS, ADB, Frida, Objection, JADX-GUI, Drozer, MobSF, Acunetix, GitHub Copilot, SonarQube

Experience

3 yrs 2 mos
Total Experience
9 mos
Average Tenure
1 yr 2 mos
Current Experience

Deloitte

Senior Security Analyst

Apr 2025Present · 1 yr 2 mos · Bengaluru, Karnataka, India · Hybrid

Mobile PentestingInfrastructure SecurityExternal pentestingInternal pentestingWeb Application SecurityMobile Application Security

Secureu

Security Engineer

Dec 2024Apr 2025 · 4 mos · Bengaluru, Karnataka, India · Remote

  • Conducted penetration testing on Web, API, and Mobile applications, following OWASP Top 10 standards.
  • Identified and reported 20+ critical and high-severity vulnerabilities during web application assessments.
  • Performed mobile application security testing, including both SAST (Static Application Security Testing)
  • and DAST (Dynamic Application Security Testing), using techniques such as method hooking and
  • reverse engineering.
  • Conducted depth API penetration testing, discovering critical issues like BOLA (Broken Object Level
  • Authorization), BFLA (Broken Function Level Authorization), and Mass Assignment.
  • Engaged in Source Code Analysis (SCA) to identify vulnerabilities at the code level, using manual
  • review and automated tools integrated with Snyk and GitHub Copilot, resulting in a 70%
  • improvement in issue detection efficiency.
  • Participated in cloud penetration testing, cloud auditing, and cloud policy reviews to identify security
  • misconfigurations and ensure secure cloud architecture.
  • Integrated AI-based solutions for automated report generation, reducing reporting time from 2 days
  • to just 3 hours, significantly boosting delivery speed and operational efficiency.
Mobile PentestingAPI SecurityDASTSASTCloud auditAutomation+2

Connectup it solutions

Freelance AppSec

Jun 2024Sep 2024 · 3 mos · Remote

  • Conducted in-depth penetration testing across API, web applications, and network infrastructures,
  • ensuring comprehensive security coverage and identifying potential vulnerabilities.
  • Ensured all tests were aligned with the OWASP Top 10, providing a robust framework for identifying
  • critical vulnerabilities.
  • Performed VAPT on both internal and public IP networks using OpenVAS, enhancing the security
  • posture of the systems tested.
  • Researched and documented publicly known vulnerabilities (CVE catalog),contributing to knowledge
  • sharing and security improvements.
  • Utilized industry-standard tools like BurpSuite, OWASP ZAP Proxy, Nmap,Acunetix, OpenVAS, and
  • Wireshark to conduct effective and efficient security assessments.
API penetration testingNetwork penetration testingWeb Application SecurityOwsap 10Burp SuiteNmap+2

Cyber heals

Cyber Security Trainee

Feb 2024Nov 2024 · 9 mos · Chennai, Tamil Nadu, India · On-site

Vulnerability Assessment and Penetration Testing (VAPT)Application SecurityNetwork SecurityOwsap 10Palo Alto Networks

Hamilton research & technology private limited

Software Engineer

Mar 2023Feb 2024 · 11 mos · Kolkata, West Bengal, India · On-site

  • Worked on SCADA software that manages and monitors industrial processes, infrastructure, and
  • facilities and provides real-time control, data acquisition, and visualization of the entire system.
  • Managing APIs to ensure smooth communication between the backend and frontend, enhancing
  • overall functionality
  • Worked on both backend (Node.js and Express.js) and frontend (React.js) with a focus on diverse tasks
  • such as API handling, data fetching, and displaying content on the frontend.
  • Thoroughly tested projects by intercepting requests and responses, ensuring the reliability and
  • efficiency of the developed applications.
HTMLCascading Style Sheets (CSS)JavaScriptBootstrap (Framework)React.jsNode.js+6

Persistent systems

Software Developer Trainee

May 2022Jun 2022 · 1 mo · Kolkata, West Bengal, India · Remote

  • 5 weeks intership learing program.Learned concept of Operating
  • System,DBMS,DSA and Computer Networks.
Computer NetworkingOperating SystemsMySQLC++Database Management System (DBMS)

Education

Asansol Engineering College (AEC)

Bachelor of Technology - BTech — Computer Science

Jun 2019Jun 2023

RSVM Dhanbad

High School — CBSE 12th Science

Apr 2016Apr 2018

Stackforce found 100+ more professionals with Web Application Security & Mobile Application Security

Explore similar profiles based on matching skills and experience

Aniket Sinha - DevOps Engineer | Stackforce