P
purushotham's photo
Purushotham Sharma R
From India 07:14 PM (GMT+05:30)
$30/hr or $50,000/yr

Active over a week ago


Member since Mar 2026

Share this profile:

Product Security Engineer

Cybersecurity Engineer
Available for hire
Years of experience
3+ years
Experience level
Mid-level
Available for
Full-time, Part-time, Freelance
Download Resume / CV

Product Security Engineer with experience securing web applications, APIs, and distributed systems through application security testing, threat modeling, and secure architecture reviews. Skilled in building and automating security tooling using Python, integrating SAST, DAST, SCA, and secrets scanning into CI/CD pipelines, and enabling developer‑first security practices. Experienced with REST APIs, security automation, security telemetry, and secure SDLC implementation across modern cloud and containerized environments. Passionate about building scalable security tooling that integrates directly into developer workflows.

Languages

Employment History

Platform Specialist - Product Security at Zerofox 2023 - 2025
• Performed application security assessments for web applications, APIs, and distributed systems aligned with OWASP Top 10. • Built Python-based security automation scripts. • Developed internal automation utilities to support SAST, DAST, and SCA workflows and improve vulnerability detection coverage. • Integrated automated security checks into CI/CD pipelines using GitHub Actions and GitLab CI. • Worked with REST APIs and security scanning tools to automate vulnerability testing and reporting pipelines. • Conducted threat modeling and security architecture reviews for authentication, authorization, and data protection mechanisms. • Performed manual penetration testing using Burp Suite, OWASP ZAP, SQLmap, and Nmap. • Developed scripts to correlate scanner findings, reduce false positives, and prioritize remediation. • Collaborated with engineering teams to embed security controls directly into the SDLC. • Contributed to developer security guidance, documentation, and remediation best practices. • Conducted API security testing including authentication, access control, and data exposure risk analysis. • Supported secure design discussions and provided engineering-focused remediation recommendations.

Education

No education history.