Back to Developers
rakesh m

rakesh m

Security Engineer

4+ yrs exp 89 · Excellent

About

Over 4 years of experience in Application Security Testing, including Web Applications, Mobile Applications, APIs, and Network Security Assessments. Skilled in conducting manual penetration testing using tools such as Burp Suite, OWASP ZAP, Nmap, Nessus, and Wireshark. Strong understanding of OWASP Top 10 vulnerabilities, including XSS, SQL Injection, CSRF, IDOR, Authentication & Authorization Bypass, Session Management, and Cryptographic flaws. Experienced in analyzing automated scan results and eliminating false positives using tools like Acunetix and other security scanners. Proficient in preparing detailed vulnerability assessment reports with evidence, business impact analysis, remediation recommendations, and CVSS-based severity ratings.

Skills & Expertise (30)

Burp Suite Advanced
8.8/10
4
Years Exp
Nmap Advanced
8.5/10
4
Years Exp
OWASP ZAP Advanced
8.3/10
4
Years Exp
Nessus Advanced
8.0/10
4
Years Exp
WIRESHARK Advanced
8.0/10
4
Years Exp
ADB CVSS XSS SQL Injection CSRF IDOR Authentication & Authorization Bypass Session management Cryptographic Flaws Secure Coding Practices Agile Vulnerability Management jadx-gui Objection Frida MobSF Nikto Dirbuster SQLmap Metasploit Framework Netcat OpenVAS Checkmarx WebInspect Acunetix

Work Experience

Security Engineer

Hover Technologies Pvt Ltd

Feb 2022 - Jun 2026

Conducted web application penetration testing on business applications. Perform infrastructure security assessments by analysing the networks, enumeration of services on hosts and identify vulnerabilities. Exploitation of identified vulnerabilities in network hosts by using existing exploits or manual methodologies. Manual web application penetration testing using Burp Suite. Proficient in identifying application-level vulnerabilities like XSS, SQL Injection, CSRF, IDOR, Authentication & Authorization bypass and Cryptographic flaws etc. False positives removal by analysing the results from automated scanners. Reporting the vulnerabilities with evidence, business impact and remediation steps. Responsible for timely delivery of status updates and final reports to clients. Work closely with developers and network/system administrators while fixing the findings. Vulnerability management by keeping track of reported issues and ensure fixing.

Education

B.Tech - CMR Institute of Technology

2013 - 2017 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 14/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 89/100

Profile Overview

Member sinceMay 2026

Availability Details

Visa Status

Need Sponsorship

Relocation

Open to Relocation

Skills (30)

Click a skill to find developers with the same skill