Available for Opportunities

Security Engineer Enterprise Platform Developer

Building enterprise-scale security platforms, custom static analyzers & mobile security tools β€” from source code to smart contracts

125+
Detection Rules
10+
Audit Findings
3+
Enterprise Platforms
Scroll Down

About Me

I'm a Security Engineer and Enterprise Platform Developer based in Chennai, Tamil Nadu, with a passion for building security tools from scratch.

My expertise lies in developing enterprise-scale security platforms that handle massive data volumes, creating innovative security tools, and conducting thorough security research. I don't just use toolsβ€”I build them, combining deep technical knowledge with practical security experience.

Currently serving a 6-month notice period, I'm available to join immediately upon negotiation for the right opportunity.

πŸ›‘οΈ

Security Innovation

Creating novel solutions combining traditional and cutting-edge approaches

πŸ—οΈ

Builder Mindset

Developing tools from scratch with deep understanding of underlying systems

⚑

Enterprise Scale

Experience with production platforms handling massive data volumes

Contact Information

  • πŸ“ Chennai, Tamil Nadu
  • πŸ“ž +91 9994745592
  • πŸŽ“ B.Tech in Information Technology
  • πŸ›οΈ Anna University, 2024

Work Experience

Full-Time

Security Platform Engineer

Current Company — Chennai, Tamil Nadu

July 2024 – Present

Core engineer responsible for designing and building enterprise-grade security platforms from the ground up β€” handling architecture, backend development, and full product delivery at scale.

01

Passive Reconnaissance Platform

Enterprise Security Tool
  • Scans GitHub, Google, and Reddit for credential leaks and sensitive data exposures with scheduled automated monitoring
  • Double-layer encryption for secure data transmission; webhook delivery via Telegram and Microsoft Teams
  • Queue-based architecture for efficient large-scale scanning with pluggable data source and notification channel support
PythonQueue SystemsREST APIsWebhooks
02

Dark Web Credential Monitoring Platform

Credential Intelligence
  • ElasticSearch implementation handling massive unstructured datasets with optimized query and retrieval performance
  • Reusable microservice payment module integrated across multiple products, reducing development overhead
  • Real-time data streaming pipeline for live monitoring experience; external API endpoints for third-party consumption
ElasticSearchMicroservicesData StreamingPostgreSQL
03

VAPT Automation Platform

Security Automation
  • Automated end-to-end vulnerability assessment and penetration testing workflows with integrated industry-standard security tools
  • Queue-based tool orchestration with load balancing; node-based workflow backend for flexible process automation
  • Built a native Android application for mobile VAPT β€” HTTP/HTTPS traffic interception via custom proxy, dynamic SSL certificate installation, and real-time request/response capture for mobile security assessments
  • Android app leverages VPN Service API with TUN interface, enabling transparent traffic routing without root access; JNI/NDK integration for performance-critical interception logic
Android (VPN API)Go (Proxy)Flutter/DartJNI/NDKQueue Systems

Featured Projects

πŸ€–

Automated API Security Testing Pipeline

Personal Project

Created BurpSuite-like tool using proxy + AI analysis (OpenAI/Gemini). Automatically captures requests/responses, identifies test points, generates payloads.

  • Combines regex pattern matching with AI for intelligent vulnerability discovery
  • Automated payload generation and testing
AI/ML API Security Automation
πŸ“Š

Enterprise Code Analysis Suite

Professional Contribution

Developed SonarQube integration tools, bypassed technical limitations in community edition(10,000).

  • Built custom code analyzers for PL/SQL and Dart similar to SonarQube architecture
  • Created automation for exporting SonarQube, SpotBugs, Semgrep reports at any volume
  • Developed project creation and scanning automation based on LoC input
SonarQube Code Analysis Automation
πŸ”‘

Keyscanner - Optimized Secret Detection

Personal Project

Scans GitHub, NPM, Python for secret patterns while avoiding rate limits.

  • Implements optimization tricks for efficient large-scale codebase scanning
  • Rate limit handling and intelligent scanning strategies
Secret Detection GitHub API Python

Security Research & Achievements

πŸ†

Bug Bounty & Responsible Disclosure

Meesho Security Finding

May 2025
  • Identified and reported credential leak in supplier portal
  • Security team validated findings, invalidated compromised credentials
  • Invited to Hall of Fame for responsible disclosure

Continuous monitoring and reporting of security issues for various organizations

🎯

Competitive Security Audits

10+
Validated Findings

Cyfrin First Flight smart contract audit competitions

  • Demonstrated ability to identify critical vulnerabilities under time pressure
  • Proven track record in Web3 security research and analysis

Skills & Technologies

Languages

Python Go Solidity Dart / Flutter JavaScript Rust SQL / PL/SQL

Security Domains

Source Code Audit VAPT Smart Contract Auditing Mobile Security Web3 / DeFi Security API Security Static / Dynamic Analysis HTTP Interception Certificate Pinning Bypass Secret Detection Encryption Threat Intelligence

Security Tools

PTSScan (Custom Builder) ANTLR / AST Parsing Burp Suite Nmap Nuclei SQLMap Slither Mythril SonarQube Semgrep SpotBugs

Mobile Development

Android (VPN Service API) JNI / NDK Integration Flutter (Complex UI) Provider State Management TUN Interface Network Traffic Interception

Backend & Architecture

Microservices Queue Systems REST APIs Go Proxy Server Network Programming Compiler Design Event-Driven Architecture Webhooks

Frontend & AI

React HTML / CSS OpenAI API Gemini API AI-Powered Analysis

Blockchain

EVM / Ethereum DeFi Protocols ERC-20 / 721 / 1155 EIP-712 Aptos Access Control Vulnerabilities Economic Attack Vectors

Databases & Cloud

ElasticSearch PostgreSQL AWS Docker CI/CD Pipelines

Key Strengths

πŸ”¨

Builder Mindset

Doesn't just use tools - builds them from scratch

πŸ“ˆ

Enterprise Scale

Experience with production platforms handling massive data

πŸ’‘

Security Innovation

Creates novel solutions combining traditional and cutting-edge approaches

🌐

Full-Stack Security

From infrastructure to mobile to Web3 security β€” end to end

βœ…

Proven Expertise

Validated findings in professional, competitive, and bug bounty settings

πŸ”¬

Compiler-Level Knowledge

Custom AST parsers, static analysis engines, and detection rule systems built from scratch

Get In Touch

I'm currently serving a 6-month notice period and available to join immediately upon negotiation. Let's discuss how I can contribute to your security initiatives.