Back to Developers
Pratik Ray

Pratik Ray

Junior Security Engineer

Bengaluru, KA
80
Profile Score

About

Junior Security Engineer with over 1 year of hands-on experience in application security, API pentesting, WAF engineering, and automation. Skilled in uncovering critical vulnerabilities, improving remediation cycles, and building internal tools that optimize manual VAPT processes.

Skills & Expertise (27)

OWASP Top 10 Intermediate
7.3/10
1
Years Exp
Application Security Intermediate
7.1/10
1
Years Exp
Cloud & WAF Security Intermediate
7.0/10
1
Years Exp
AWS WAF Intermediate
7.0/10
1
Years Exp
Cloudflare WAF Intermediate
7.0/10
1
Years Exp
Security Tools & Automation Intermediate
7.0/10
1
Years Exp
API Pentesting Intermediate
6.9/10
1
Years Exp
Threat Analysis Intermediate
6.8/10
1
Years Exp
Mobile Security Intermediate
6.7/10
1
Years Exp
Authentication & Session Testing Intermediate
6.7/10
1
Years Exp
FFUF Intermediate
6.5/10
1
Years Exp
Appknox Intermediate
6.5/10
1
Years Exp
Metasploit Intermediate
6.5/10
1
Years Exp
Nikto Intermediate
6.5/10
1
Years Exp
LINUX Intermediate
6.5/10
1
Years Exp
Jira Intermediate
6.5/10
1
Years Exp
Python Intermediate
6.5/10
1
Years Exp
Bash Intermediate
6.5/10
1
Years Exp
Nmap Intermediate
6.5/10
1
Years Exp
MobSF Intermediate
6.5/10
1
Years Exp
AppCheck Intermediate
6.5/10
1
Years Exp
Burp Suite Pro Intermediate
6.5/10
1
Years Exp
Rule Tuning Intermediate
6.5/10
1
Years Exp
Traffic Filtering Intermediate
6.5/10
1
Years Exp
Route 53 Migration Intermediate
6.5/10
1
Years Exp
AWS IAM Basics Intermediate
6.5/10
1
Years Exp
AWS S3 Intermediate
6.5/10
1
Years Exp

Work Experience

CyberSecurity Trainee

Formidium

Sep 2024 - Nov 2024

Performed initial VAPT using AppCheck automated scanning, triaged findings, and manually validated high-risk issues using Burp Suite and browser-based testing. Created developer-friendly vulnerability documentation with impact details, PoC steps, and remediation guidance.

Volunteer

Seasides Conference

Feb 2025 - Present

Junior Security Engineer

Formidium

Dec 2024 - Present

Led manual VAPT across applications, network, and infrastructure to map risk exposure, uncovering and prioritizing 25 critical vulnerabilities, and reducing high-risk exposure by 40%. Authored detailed vulnerability reports (with reproducible steps, risk ratings, and remediation), improving developer understanding and cutting remediation time by 35%. Onboarded Appknox as the mobile security platform. Integrated automated scans into release workflow. Configured assessment policies and triage process, boosting detection accuracy by 30%. Deployed and operationalized Cloudflare WAF by migrating traffic from AWS WAF Route 53, configuring managed rulesets, enabling bot protection, and exporting logs to AWS S3—reducing false positives by 50% and improving overall threat visibility. Developed an internal recon automation script integrating Subfinder, FFUF, Nuclei, and httpx to speed up target enumeration and vulnerability discovery. Enhanced testing tool chains and playbooks, automating key parts and optimizing processes to boost testing coverage by 60% and reduce manual effort by 50%.

Education

Bachelor's of Business Administration - RIBS - Bengaluru City University

2020 - 2023 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceFeb 2026

Skills (27)

OWASP Top 10 Application Security Cloud & WAF Security AWS WAF Cloudflare WAF Security Tools & Automation API Pentesting Threat Analysis Mobile Security Authentication & Session Testing +17 more