Vaibhav Bedi

Product Manager

India2 yrs 10 mos experience

Key Highlights

  • Nearly 4 years of experience in cybersecurity.
  • Expert in IoT security and vulnerability assessment.
  • Recognized industry influencer with community engagement.
Stackforce AI infers this person is a Cybersecurity expert specializing in IoT and application security.

Contact

Skills

Core Skills

CybersecurityApplication SecurityIot SecurityVulnerability AssessmentFirmware Analysis

Other Skills

ATmega8ArduinoBluetooth Low EnergyBluetooth hackingBrupsuiteCClassic BluetoothDjangoEmbedded SystemsGithubGraphical User Interface (GUI)HTMLHTTPSHardware HackingHardware Security

About

Results-driven cybersecurity professional with nearly 4 years of hands-on experience in the Internet of Things (IoT), penetration testing, and vulnerability assessment. Adept at identifying and mitigating security risks across a wide range of smart devices and applications, including BLE-based smart bulbs, home automation switches, medical devices like Cough Assist, smart connected TV applications, and Esp8266 Wi-Fi chips. Specialized in application security assessment encompassing Web, Mobile, Docker, IoT, Bluetooth, and Wi-Fi security testing. Proficient in fuzzing, firmware analysis, and hardware security testing, demonstrating a comprehensive understanding of both software and hardware vulnerabilities. Experienced in extracting firmware and skilled in exploiting JTAG, SPI, I2C, and UART interfaces. Recognized as an industry influencer, I have shared insights and expertise by delivering talks at esteemed open-source communities, including NULL Bangalore, c0c0n Kerala, Red Team Security Summit, OWASP, and Test Tribe. Thrives in collaborative environments, demonstrating a passion for knowledge sharing and community engagement.

Experience

2 yrs 10 mos
Total Experience
8 mos
Average Tenure
--
Current Experience

National university of singapore

Cyber Security Research Assistant N-CRiPT Lab

Feb 2022Mar 2024 · 2 yrs 1 mo · Singapore · Hybrid

  • Led the design and development of robust and scalable application architectures, ensuring optimal performance and security.
  • Designed and implemented intuitive graphical user interfaces using HTML and CSS, ensuring a user-friendly experience for application.
  • Worked closely with stakeholders to understand user requirements for optimize the interface design.
  • Conducted security testing on applications, identifying and mitigating vulnerabilities to enhance overall application resilience.
  • Conducted financial risk assessments to evaluate the organization’s cyber risk exposure.
  • Conducted performnace and load test to assess scalability.
  • Conducted knowledge transfer session to the end-users and understanding of implemented system.
  • Extensive experience with Linux, Git, Python, Elasticsearch and scrapy.
Web DevelopmentCybersecurityRisk ManagementResearch and Development (R&D)Python (Programming Language)Django+2

Singapore university of technology and design (sutd)

Cyber Security Research Staff ASSET Research Group

Jan 2020Jan 2022 · 2 yrs · Singapore · Hybrid

  • Led efforts to modify the stack of Bluetooth classic devices, enhancing functionality and security.
  • Conducted hands-on firmware extraction from Bluetooth Classic devices, enabling in-depth analysis and modification.
  • Demonstrated proficiency in hardware interfaces, including SPI, I2C, and UART, leveraging these protocols to enhance communication and security features.
  • Utilized tools like IoT Cube, Bluetooth Stack Smasher, InternalBlue, Bettercap, Wifuzzit, Scapy, Frankenstein, Tcpdump, Boofuzz, WiFuzz, and IoTFuzzer for targeted assessments.
CybersecurityInternet of Things (IoT)Hardware SecurityClassic BluetoothIoT Security

Hakin9 magazine

Course Instructor

Jun 2019Jul 2021 · 2 yrs 1 mo · Remote

  • Preparation of training materials and videos for every module
  • Preparation of exercises, including instructions, answer keys and attachments or test files
  • Providing guidance, additional clarification and answering questions from students during the course session.
  • Preparation and evaluation of the final exam;

L&t technology services limited

Cyber Security Engineer

Jan 2019Sep 2019 · 8 mos · Bangalore

  • Led technical security assessments, including penetration testing, on diverse cyber assets such as web applications, mobile platforms, networks, and Internet of Things (IoT) devices.
  • Conducted comprehensive evaluations to identify vulnerabilities and assess overall security postures.
  • Executed both Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST) methodologies.
  • Utilized tools like Burp Suite and Acunetix for dynamic analysis, identifying runtime vulnerabilities, and conducted static code analysis for early detection of security flaws.
  • Demonstrated advanced expertise in widely-used security tools, such as Burp Suite, Nmap, SQLMap , and Kali Linux.
  • Conducted vulnerability assessments, providing detailed reports with prioritized recommendations for remediation.
  • Participated in training programs, conferences, and workshops to enhance skills and maintain a high level of proficiency in the rapidly evolving field of cybersecurity.
Information SecurityCybersecurityVulnerability Assessment and Penetration Testing (VAPT)Vulnerability Assessment

Attify inc.

IoT Security Researcher

May 2018Nov 2018 · 6 mos · Greater Bengaluru Area

  • Conducted comprehensive initial reconnaissance to understand the internal workings and communication mechanisms of embedded products.
  • Developed threat models to delineate actors and entity boundaries, providing a structured approach to security assessments.
  • Provided detailed documentation of findings, vulnerabilities, and recommendations, enabling stakeholders to implement effective security measures.
  • Led firmware vulnerability analysis by extracting firmware, performing manual reversing of binaries, and understanding the firmware update process.
  • Demonstrated expertise in hardware and radio security testing, including data extraction from external flash memory, UART and JTAG debug port testing, and detection of hardcoded sensitive information in
  • firmware.
  • Identified and addressed security vulnerabilities in BLE Smart Bulb using BTLEjuice, contributing to the improvement of the device’s security posture.
IoT SecurityBluetooth hackingFirmware AnalysisHardware Security

Indian institute of technology, mandi

Junior Research Fellowship (Project Associate)

May 2017May 2018 · 1 yr · Himachal Pradesh, India

  • A system for detecting biological molecule and method of using the same." Indian Patent Application no. 201811047739, dated 17.12.2018.

Indian institute of technology, indore

Project Staff-Smart Manufacturing Lab

Jun 2016Feb 2017 · 8 mos · Indore Area, India

  • Technology - Industry 4.0, Smart Manufacturing
  • Project 1: Developed a social network of industrial assets to enable smart decision making. The project is based on the Industry 4.0, which involves the application of a cyber-physical system (CPS), Industrial IoT and Computer Optimization. The idea of this project is to include these three concepts to develop a platform (based on what) to create a system capable of remote monitoring of machines and intelligent planning of the production chains autonomously.
  • 🡺 Industrial Components - 3D Printer, Robotic Arm, Conveyor Belt, CNC Machine.
  • Project 2: Design a Social Network based system of a 3D Printer machine for generalized group based communication between industrial assets. This project is based on the social networking concept (like Google+ Circles, Facebook, WhatsApp etc). For implementing this idea we have designed user interface of the login page and machine profile using java. When machine entered log of text such as User ID and passwords then login option sends the request in SQL database using jQuery. If the machine is registered in the database then it allows the machine to show it’s personal profile.
  • 🡺 Language - JFrame, SQL DataBase, JQuery

Indian institute of technology, delhi

Internship-Cutting Edge Medical Devices Pvt Ltd

Jan 2016Feb 2016 · 1 mo · Delhi, India

  • Project - IR based optoelectronic device for measuring displacement and Timer Circuits
  • The techniques include in this project involves intensity based sensing for measuring a distance between the light source and a detector, in which the light intensity reflected from the object onto the detector(device) and also device senses the light source and automatically rotate the servo motor with respect to 90 degrees angle (as defined in coding). If there is an interpretation in the signal intensity will be change distance. The two IR sensor used in this device for detecting the light source.

Department of science and technology

Summer Internship

Jun 2015Aug 2015 · 2 mos · North East Centre ,New Delhi

  • Project - Monitoring the health of UAV in Ground Computer using Mission Planner
  • The goal of this project is to basically develop the communication system of the UAV to the Ground Station, Commonly known as Telemetry which basically sends real-time data like Altitude, Attitude, Battery Health, etc to the Ground Computer. For established the communication system we have used two XBee radios (one for the ground station and one for the vehicle) and one is connected with ground station computer and another one which can be connected to the flight controller (pixhawk).After successfully established the communication we have analyzed the data in Mission Planner software using various experimental observation and monitor the condition of UAV.

Education

Kurukshetra University

Bachelor of Technology (B.Tech.) — Electronics and Communications Engineering

Jan 2013Jan 2017

Star Paper Mills Saraswati Vidhya Mandir Saharanpur

Higher Secondary School

Jan 2012Jan 2013

Stackforce found 100+ more professionals with Cybersecurity & Application Security

Explore similar profiles based on matching skills and experience