d
defensys_innv

Vaibhav J

@defensys_innv

Senior Application Security and Penetration Testing Consultant

Inde
Anglais, Hindi
Certaines informations sont présentées en anglais.
À propos de moi
Application Security & Penetration Testing professional specializing in Web, API, Mobile, Cloud, and Secure Code Review. I help startups, SaaS companies, and enterprise teams identify real security risks, validate exploitability, and deliver clear remediation guidance. Certified OSCP, OSWE, eWPTXv2, CRTP, and RTO. I focus on hands-on testing, practical reporting, and actionable findings—not scanner-only results. I also work through Defensys, focused on high-quality application and product security assessments.... Plus d’infos

Compétences

d
defensys_innv
Vaibhav J
hors ligne • 
Temps de réponse moyen de 1 heure

Voir mes services

Programmation et Tech
I will perform manual security assessment of application and API

Portfolio

Expérience professionnelle

Founder and Lead Security Engineer

Defensys Innovations • Temps plein

Jan 2026 - Present8 mos

Defensys Innovations provides expert penetration testing and application security services. We help organisations secure their digital products through manual, adversary-driven testing and clear, actionable remediation guidance.

Coursera

Senior Appication Security Engineer

Coursera • Temps plein

Mar 2025 - Present1 yr 6 mos

Lead and perform application security assessments across web, API, and cloud environments, including penetration testing, secure design reviews, threat modeling, and vulnerability validation. Work closely with engineering teams to identify exploitable security issues, assess business impact, and provide practical remediation guidance. Contribute to improving secure development practices, security tooling, and product security processes across the software development lifecycle.

Bugcrowd

Application Security Engineer

Bugcrowd • Temps plein

Sep 2023 - Mar 20251 yr 6 mos

Performed application security testing and vulnerability validation across web applications, APIs, and related attack surfaces. Assessed reported security issues for reproducibility, exploitability, severity, and real-world impact, while providing clear technical guidance for remediation. Worked across common vulnerability classes including access control, authentication, injection, XSS, SSRF, business logic, and API security.