Kartheek Dasari

Researcher

Bengaluru, Karnataka, India4 yrs 11 mos experience
AI ML PractitionerHighly Stable

Key Highlights

  • Expert in building scalable cloud solutions.
  • Pioneered AI-native applications for intelligent automation.
  • Proven track record in network security and vulnerability management.
Stackforce AI infers this person is a Cybersecurity and DevOps expert specializing in automation and network security.

Contact

Skills

Core Skills

Vulnerability ManagementApi SecurityAi & AutomationCloud, Devops & IacTesting & Performance

Other Skills

Python (Programming Language)TypeScriptBurp SuitePostmanRESTful WebServicesPoC Exploit DevelopmentBug Bounty TriageJenkinsTerraformLarge Language Models (LLM)Go (Programming Language)ScapyNmapPlaywrightAnsible

About

I am a Senior Python & Automation Engineer with over 5 years of experience building scalable cloud solutions, securing enterprise networks, and pioneering AI-native applications. I specialize in bridging the gap between deep infrastructure reliability and next-generation automation. Throughout my career at companies like Cisco and Bugcrowd, I’ve worn multiple hats—from engineering robust PyTest and aioquic frameworks for advanced QUIC/HTTP3 protocol validation, to architecting CI/CD pipelines with Jenkins and Terraform that slash deployment times from days to hours. I have a deep-rooted background in network security, validating IDS/IPS systems, tuning NGFW policies, and triaging complex vulnerabilities (XSS, SQLi, SSRF) for global enterprise clients. Recently, my focus has expanded into the cutting edge of GenAI. I actively leverage Large Language Models (Gemma, Qwen-Coder), local inference, and agentic workflows to build intelligent automation systems. Whether it's fine-tuning models on Hugging Face to parse security vulnerability reports or writing custom Python/Golang scripts to detect network anomalies, I am passionate about using AI to eliminate operational bottlenecks and scale cloud resilience. 🛠️ Core Specialties:- • Languages & Frameworks: Python (PyTest, Scapy, asyncio, aioquic), Golang, Bash, TypeScript, Robot Framework • AI & Automation: Agentic Workflows, LLM Fine-Tuning (Gemma, Qwen-Coder), GenAI Integration, Hugging Face, Local Inference, AI Threat Analysis • Cloud, DevOps & IaC: AWS (EC2, VPC), Kubernetes, Docker, VMware, Terraform, Ansible, Jenkins, CI/CD Pipelines, Linux Administration • Security & Vulnerability Management: IDS/IPS, NGFW (Snort, pfSense), Threat Modeling, Bug Bounty Triage, PoC Exploit Development, OWASP Top 10, DAST/SAST, API Security, Packet/Log Analysis (Wireshark, tcpdump, Nmap) • Advanced Networking: QUIC/HTTP3, TCP/UDP, IPv4/IPv6, TLS, DNS, DHCP, NAT64/DNS64, BGP, OSPF, VLAN, STP, Layer 2/3 Routing, Linux Networking Stack • Testing & Performance: E2E Testing, Scalability & Latency Optimization, Fuzzing, Playwright, Selenium, Breaking Point, IxLoad, Spirent • Databases & Methodologies: MySQL, PostgreSQL, Oracle, MS-SQL, Clustering, Git, Agile/Scrum, TDD I am always open to connecting with fellow engineers, security researchers, and tech leaders. Feel free to reach out!

Experience

4 yrs 11 mos
Total Experience
4 yrs 9 mos
Average Tenure
2 mos
Current Experience

Bugcrowd

Researcher

Apr 2026Present · 2 mos · Remote · Remote

  • Verified complex security flaws including XSS, SQLi, SSRF, and IDOR to ensure rapid enterprise fixes.
  • Triaged high-severity vulnerabilities submitted by a global researcher network to maintain high reporting fidelity.
  • Developed custom Python PoC exploits to safely validate attack vectors and payload efficacy against systems.
  • Researched emerging zero-day threats and CVEs to proactively defend enterprise platform environments.
  • Engineered automated security scanners into the CI/CD pipeline to permanently block vulnerable code deployments.
  • Integrated DAST and SAST testing protocols into the development lifecycle for continuous security verification.
  • Leveraged LLMs and custom Python scripts to parse vulnerability data and reduce report triage turnaround time.
  • Automated the identification of recurring attack patterns across microservices by deploying agentic workflows.
  • Conducted deep proactive security assessments using Burp Suite to uncover hidden application logic flaws.
  • Evaluated complex API and REST endpoints utilizing Postman to prevent unauthorized external data access.
  • Performed extensive threat modeling and Attack Surface Management (ASM) to fortify overall system resilience.
  • Partnered with cross-functional engineering teams to define strict security test plans against production risks.
  • Implemented robust vulnerability management frameworks to maintain strict compliance with OWASP Top 10 standards.
  • Formulated comprehensive remediation strategies for enterprise clients to permanently eliminate discovered system threats.
Python (Programming Language)TypeScriptBurp SuitePostmanAPI securityRESTful WebServices+3

Cisco

Software Test Engineer

Jul 2021Apr 2026 · 4 yrs 9 mos · India · Hybrid

  • Directed the end-to-end testing strategy for QUIC and HTTP/3 protocols to ensure seamless network integration.
  • Built a Python, PyTest, and aioquic automation framework that increased overall testing coverage by 40 percent.
  • Optimized CI/CD pipelines utilizing Jenkins and Terraform to reduce cloud environment provisioning from days to hours.
  • Wrote custom Python and Scapy scripts to simulate malicious traffic and validate IDS/IPS system resilience.
  • Fine-tuned Snort threat detection rules within Next-Generation Firewall (NGFW) environments to maximize alert accuracy.
  • Analyzed massive volumes of syslog and pcap data using Python to swiftly identify and resolve hidden network bottlenecks.
  • Resolved high-priority customer escalations through deep-dive root cause analysis and targeted Python regression tests.
  • Contributed performance optimization code to major open-source implementations including curl, NGINX, and aioquic.
  • Architected a regional performance testing platform from scratch to rapidly identify and remediate latency degradations.
  • Automated crucial pre-commit code quality checks across deployment pipelines using customized Ansible playbooks.
  • Deployed local AI models such as Google Gemma and Qwen-Coder to dramatically accelerate Playwright script generation.
  • Designed system-level security testing utilizing Linux cgroups and namespaces for isolated NGFW policy validation.
  • Implemented real-time telemetry monitoring pipelines to enable proactive anomaly detection and reduce system downtime.
  • Conducted extensive exposure assessments using Nmap and Scapy to distinguish core infrastructure failures from application bugs.
Python (Programming Language)Go (Programming Language)JenkinsTerraformScapyNmap+4

Education

Jawaharlal Nehru Technological University, Kakinada

Bachelor of Technology - BTech

Jun 2016Jun 2020

Stackforce found 100+ more professionals with Vulnerability Management & Api Security

Explore similar profiles based on matching skills and experience