Back to Developers
OM PATIL

OM PATIL

Vulnerability Assessment & Penetration Testing (VAPT) Analyst

Mumbai, India 80 · Excellent

About

Cybersecurity professional with 7 months of hands-on experience in Vulnerability Assessment and Penetration Testing (VAPT), Application Security, and Network Security Testing. Experienced in performing security assessments, manual penetration testing, vulnerability management, and remediation validation aligned with OWASP Top 10 and OWASP API Security standards. Strong understanding of reconnaissance, authentication & authorization testing, risk assessment, and security reporting.

Skills & Expertise (40)

Web Application Penetration Testing Intermediate
7.1/10
1
Years Exp
API Security Testing Intermediate
7.0/10
1
Years Exp
Network vulnerability Assessment Intermediate
6.7/10
1
Years Exp
Security Assessment Intermediate
6.5/10
1
Years Exp
Vulnerability Management Intermediate
6.3/10
1
Years Exp
Basic Lateral Movement IBM QRadar CVSS scoring Proof of Concept (PoC) Risk Analysis Impact assessment Remediation Guidance Security Documentation Burp Suite OWASP ZAP SQLmap Nmap Nessus WIRESHARK Metasploit Kali Linux Splunk Access Control Testing Retesting & Validation OWASP Top 10 OWASP API Security Risks SQL Injection (SQLi) Cross-Site Scripting (XSS) IDOR CSRF Broken Authentication Privilege Escalation Session Management Testing Reconnaissance Enumeration Active Directory Lab Setup Kerberoasting AS-REP Roasting Password Spraying SMB Enumeration

Work Experience

VAPT Analyst Intern

Employee Forums (Information Security Team)

Apr 2025 - Nov 2025

Conducted end-to-end VAPT on 5+ internal web applications and identified 15+ high and critical vulnerabilities including SQL Injection, XSS, IDOR, broken authentication, and access control flaws. Performed manual penetration testing using Burp Suite focusing on authentication bypass, session handling, and business logic vulnerabilities. Executed network vulnerability assessments using Nmap and Nessus with manual validation to eliminate false positives. Conducted API penetration testing including token manipulation and authorization bypass testing. Prepared detailed VAPT reports with CVSS scoring, risk ratings, impact analysis, and remediation recommendations. Coordinated with development teams to validate patches and perform security retesting before production deployment.

Education

M.Sc. Computer Science - KJ Somaiya University

2025 - · Afghanistan

B.Sc. Computer Science - University of Mumbai

2022 - 2025 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 80/100

Profile Overview

Member sinceFeb 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation