i
iamanandmahajan

Anand Mahajan

@iamanandmahajan

Expert Penetration Tester, Offensive Security, OSINT

India
Hindi, Maratí
Parte de la información aparece en idioma inglés.
Sobre mí
I’m a cybersecurity professional with almost 4 years of work experience specializing in Web, API & Mobile Application Penetration Testing and VAPT. I combine manual security testing with industry-standard methodologies to uncover vulnerabilities that automated scanners often miss—including authentication, authorization, business logic, API and OWASP Top 10 issues. You’ll receive clear evidence, risk ratings, practical remediation guidance, and a professional security report. My goal is simple: help you identify weaknesses before real attackers do and give you actionable insights to fix them.... Lee más

Habilidades

i
iamanandmahajan
Anand Mahajan
desconectado • 
Tiempo medio de respuesta: 1 hora

Revisa mis servicios

Seguridad
I will perform professional web application penetration testing with detailed report
Soporte técnico
I will perform professional ios app penetration testing and vapt

Porfolio

Experiencia laboral

Confidentials

Assistant Manager

Confidentials • Tiempo completo

Jul 2023 - Present3 yrs 2 mos

Assistant Manager | Offensive Security Directed VAPT projects and collaborated closely with CISOs, security leads, and technical teams to design and deliver effective security solutions for Fortune 500 enterprises. •Managed and delegated tasks within the team to ensure efficient project delivery. •Mentored junior staff on penetration testing best practices and methodologies. •Coordinated end-to-end pentesting phases, ensuring high-quality, actionable reports. •Integrated security testing into CI/ CD pipelines by collaborating with DevOps and development teams. •Drove threat modeling sessions and advised on risk mitigation strategies. •Utilized OSINT to augment findings and inform client recommendations. Cyber Security Consultant | Offensive Security Conducted web, mobile, and network VAPT for FMCG and BFSI clients using OWASP Top 10 methodology. •Identified and remediated SQLi, XSS, IDOR, and access control vulnerabilities through manual and automated testing tools (Burp Suite, Nessus, Nmap, Metasploit). •Performed mobile app security testing using MobSF, JADX, Burp Suite, and Ghidra. •Executed API security assessments focusing on authentication, authorization, and session management with Postman and OWASP ZAP. •Applied threat modeling (STRIDE and IriusRisk) to recommend mitigation strategies. •Leveraged OSINT for enhanced security insights during engagements.