Back to Developers
Rudra Sonkusare

Rudra Sonkusare

Security Researcher

Pune 3+ yrs exp 87 · Excellent

About

Security professional with L3 product support experience on security-critical systems, now focused full-time on offensive security through active bug bounty research on BugCrowd. Hands-on experience across web application vulnerability assessment, OWASP Top 10 testing, and API security — with a cross-stack background in Linux, APIs, and authentication systems.

Skills & Expertise (22)

OWASP Top 10 Advanced
8.0/10
2
Years Exp
Burp Suite Intermediate
7.5/10
2
Years Exp
API Security Testing Intermediate
7.5/10
2
Years Exp
Nmap Intermediate
7.0/10
2
Years Exp
WIRESHARK Intermediate
7.0/10
2
Years Exp
LINUX Intermediate
7.0/10
2
Years Exp
Postman Intermediate
6.5/10
2
Years Exp
Root Cause Analysis Intermediate
6.5/10
2
Years Exp
Bash Intermediate
6.5/10
2
Years Exp
Python Intermediate
6.5/10
2
Years Exp
Technical Report Writing Intermediate
6.0/10
2
Years Exp
SLA Management Intermediate
6.0/10
2
Years Exp
JavaScript Intermediate
6.0/10
2
Years Exp
PowerShell Intermediate
6.0/10
2
Years Exp
Postgresql Intermediate
6.0/10
2
Years Exp
MongoDb Intermediate
6.0/10
2
Years Exp
MySql Intermediate
6.0/10
2
Years Exp
Docker Intermediate
6.0/10
2
Years Exp
Windows Intermediate
6.0/10
2
Years Exp
cURL Intermediate
6.0/10
2
Years Exp
Firewall Configuration AWS (S3

Work Experience

Security Researcher

BugCrowd (Independent)

Feb 2024 - Present

Identified and responsibly disclosed validated web application and API vulnerabilities — including IDOR, authorization bypass, and business logic flaws — through manual testing against OWASP Top 10 vulnerability classes across multiple live bug bounty programs. Built and maintained a structured testing methodology covering recon, manual exploitation, exploitability assessment, and scope validation, consistently achieving low false-positive and duplicate rates across submissions.

Product Support Engineer

Uniken Pvt. Ltd.

Nov 2022 - Oct 2023

Resolved L3 support cases for security-critical production systems — REST APIs, authentication mechanisms, server-side components — maintaining SLA compliance through root cause analysis across logs, network traffic (Wireshark), and database inspection. Owned end-to-end lifecycle of critical infrastructure cases: database maintenance, server upgrades, DC-DR drills, firewall rule configuration, and third-party integration setup across development and production environments. Developed user-input-driven BASH automation scripts for server-side product installation and configuration, eliminating manual steps from repeatable deployment workflows.

Intern

Virtually Testing Foundation

Oct 2021 - Dec 2021

Hands-on training in network security, Linux hardening, and web application vulnerability assessment using industry tools in simulated attack-and-defense environments.

Education

B. Tech Electronics and Telecommunication - Government College of Engineering, Nagpur

2018 - 2022 · Afghanistan

Certifications

No certifications added yet

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 12/15
💰 Rate 0/5
🏆 Certs 0/5
Verified 5/5
Total Score 87/100

Profile Overview

Member sinceJun 2026

Availability Details

Visa Status

Citizen

Relocation

Depends on Offer