Back to Developers
Ankur Acharjee

Ankur Acharjee

Application Security Engineer / Security Researcher

Rangapara, Assam, India
80
Profile Score

About

Security Engineer with strong hands-on experience in Web & API Security, manual security code review, penetration testing, secure SDLC practices, and vulnerability research across monolithic and microservice-based architectures.

Skills & Expertise (32)

Application & API Security Advanced
8.7/10
4
Years Exp
Web Application Security Advanced
8.5/10
4
Years Exp
OWASP Top 10 Advanced
8.5/10
4
Years Exp
API Security Penetration Testing Advanced
8.4/10
4
Years Exp
Code, Config & Integration Review Advanced
8.2/10
4
Years Exp
Threat & Detection Advanced
8.2/10
3
Years Exp
Manual Code Review Advanced
8.1/10
4
Years Exp
CI/CD Pipelines Advanced
8.0/10
3
Years Exp
Burp Suite Advanced
8.0/10
4
Years Exp
Attack Scenarios Advanced
8.0/10
3
Years Exp
CI/CD Security Advanced
8.0/10
3
Years Exp
Architecture & Platform Security Advanced
8.0/10
4
Years Exp
Secure Configuration Review Advanced
8.0/10
4
Years Exp
CVSS Advanced
7.9/10
4
Years Exp
Integration Security Advanced
7.9/10
4
Years Exp
Threat Modeling Advanced
7.9/10
3
Years Exp
Docker Advanced
7.8/10
3
Years Exp
Infrastructure Security Advanced
7.8/10
3
Years Exp
MITRE ATT&CK Advanced
7.8/10
3
Years Exp
OWASP ZAP Advanced
7.8/10
4
Years Exp
Business Logic Testing Advanced
7.8/10
4
Years Exp
Checkmarx SAST Advanced
7.7/10
3
Years Exp
Microservices Advanced
7.6/10
3
Years Exp
Tenable Nessus Advanced
7.6/10
3
Years Exp
Containers Advanced
7.6/10
3
Years Exp
Postman Advanced
7.5/10
4
Years Exp
ELK Stack Advanced
7.5/10
3
Years Exp
Database Security Advanced
7.5/10
4
Years Exp
GitHub Advanced
7.5/10
4
Years Exp
Sigma Rules Advanced
7.4/10
3
Years Exp
TLS Concepts Advanced
7.4/10
4
Years Exp
Monolithic Systems Intermediate
6.8/10
2
Years Exp

Work Experience

Security Researcher

Loginsoft Pvt Ltd

Jun 2023 - Nov 2025

Performed security testing and penetration testing of web applications and APIs to identify vulnerabilities beyond OWASP Top 10. Conducted manual security code reviews using Git to confirm vulnerable and exploitable code paths. Designed realistic attack scenarios to validate exploitability across microservice-based architectures. Assessed application, API, container, and CI/CD security including dependency chains and remediation commits. Reviewed CVE and non-CVE findings, CVSS severity, and affected/fixed versions for accurate risk prioritization. Performed SAST, DAST, and fuzz testing on applications to improve resilience. Guided engineering teams on secure SDLC practices, CVEs, CWEs, and remediation strategies. Automated parts of vulnerability triage and analysis to improve detection efficiency.

Threat Researcher

Loginsoft Pvt Ltd

Jan 2022 - May 2023

Developed Sigma rules to detect Windows RCE CVE exploitation using Sysmon and Winlogbeat. Conducted advanced threat hunting in Elasticsearch and Kibana. Mapped attacker techniques to MITRE ATT&CK and validated detections. Deployed and analyzed T-Pot honeypots integrated with MISP.

Cyber Security Specialist

Blue Planet Infosolutions Pvt. Ltd.

Feb 2021 - Jan 2022

Performed manual and automated penetration testing of web applications and APIs. Identified and remediated 500+ vulnerabilities including SQLi, XSS, IDOR, auth flaws, and misconfigurations. Reviewed application configurations, integrations, and server security.

Cyber Security Analyst

TheSmartBridge

Feb 2021 - May 2021

Performed web, mobile, and network penetration testing. Investigated security incidents and documented impact and remediation.

Education

B.E. – CSE (Hons.), Information Security - Chandigarh University

2019 - 2023 · Afghanistan

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceFeb 2026

Availability Details

Visa Status

Citizen

Relocation

Depends on Offer

Skills (32)

Application & API Security Web Application Security OWASP Top 10 API Security Penetration Testing Code, Config & Integration Review Threat & Detection Manual Code Review CI/CD Pipelines Burp Suite Attack Scenarios +22 more