Back to Developers
Mangesh Damdar

Mangesh Damdar

Security Engineer

Pune, Maharashtra 2+ yrs exp 85 ยท Excellent

About

Results-driven Security Engineer with 2.5+ years of experience in Web, API, Mobile, and Network Vulnerability Assessment and Penetration Testing (VAPT). Skilled in manual and automated security testing using Burp Suite Professional, Nmap, Nessus, SQLMap, MobSF, OWASP ZAP, and Postman. Experienced in identifying vulnerabilities aligned with OWASP Top 10, OWASP API Security Top 10, and OWASP Mobile Top 10, including SQL Injection, XSS, IDOR, BOLA, SSRF, Authentication & Authorization flaws, and Security Misconfigurations. Proficient in HTTP/HTTPS, REST APIs, SSL/TLS, CVSS v3.1, and delivering actionable security reports with remediation recommendations.

Skills & Expertise (33)

Web Application Security Testing Intermediate
7.5/10
2.5
Years Exp
Burp Suite Professional Intermediate
7.5/10
2.5
Years Exp
Vulnerability Assessment & Penetration Testing Intermediate
7.5/10
2.5
Years Exp
OWASP Top 10 Intermediate
7.5/10
2.5
Years Exp
API Security Testing Intermediate
7.5/10
2.5
Years Exp
Authentication & Authorization Testing Intermediate
7.0/10
2.5
Years Exp
Mobile Application Security Testing Intermediate
7.0/10
2.5
Years Exp
Network vulnerability Assessment Intermediate
7.0/10
2.5
Years Exp
Nessus Intermediate
7.0/10
2.5
Years Exp
Python Intermediate
6.5/10
2.5
Years Exp
Linux Fundamentals Intermediate
6.5/10
2.5
Years Exp
Windows Networking Fundamentals Kali Linux TLS SSL REST APIs HTTPS HTTP JavaScript Ubuntu Linux HTML Postman WIRESHARK Nikto MobSF Metasploit SQLmap Nmap OWASP ZAP CVSS v3.1 OWASP Mobile Top 10 OWASP API Security Top 10

Work Experience

Security Engineer

Axiomtech IT Solutions

Dec 2023 - Present

Conduct Web, API, Mobile, and Network Vulnerability Assessment and Penetration Testing (VAPT) using manual and automated testing techniques. Perform Web Application Security Testing aligned with OWASP Top 10, identifying vulnerabilities such as SQL Injection, XSS, CSRF, IDOR, SSRF, Authentication, Authorization, and Security Misconfigurations. Execute API Security Testing based on OWASP API Security Top 10, identifying vulnerabilities including BOLA, IDOR, Injection flaws, and Authentication/Authorization issues. Conduct Network Vulnerability Assessments using Nmap and Nessus for service enumeration, vulnerability identification, validation, and risk analysis. Utilize Burp Suite Professional, Postman, SQLMap, and OWASP ZAP for security testing, request manipulation, and vulnerability validation. Assign CVSS v3.1 risk ratings and prepare comprehensive VAPT reports with proof of concept (PoC), business impact, and remediation recommendations. Collaborate with clients and development teams to validate findings, eliminate false positives, and support timely vulnerability remediation.

Education

Bachelor of Engineering (Computer Engineering) - Savitribai Phule Pune University

- 2024 ยท Afghanistan

HSC - Maharashtra State Board

- 2020 ยท Afghanistan

SSC - Maharashtra State Board

- 2018 ยท Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

๐Ÿ“ท Photo 10/10
๐Ÿ“„ Resume 10/10
๐Ÿ’ผ Job Title 10/10
โœ๏ธ Bio 10/10
๐Ÿ› ๏ธ Skills 20/20
๐ŸŽ“ Education 10/10
โฑ๏ธ Experience 10/15
๐Ÿ’ฐ Rate 0/5
๐Ÿ† Certs 0/5
โœ… Verified 5/5
Total Score 85/100

Profile Overview

Member sinceAug 2026

Availability Details

Relocation

Open to Relocation