Security Researcher

Deepak Raj

I break things so they can be rebuilt stronger — offensive security across web, mobile, API, cloud and Web3.

deepak@sec — zsh

$ whoami

Deepak Raj — Cybersecurity Researcher

$ cat skills.txt

VAPT | Red Teaming | OSINT | Web3 Security | API Security

$ echo $CURRENT_ROLE

Deputy Manager @ Protiviti

Type help and hit Enter to explore ↓

$

0

Years Experience

0

Security Tests

0

HTB Global Rank

About

I'm a cybersecurity researcher with a passion for discovering vulnerabilities, understanding exploit techniques, and researching emerging threats. Security isn't just about finding bugs — it's about understanding the attacker's mindset.

Currently a Deputy Manager at Protiviti, I run comprehensive security assessments across web applications, mobile apps, APIs, cloud infrastructure, and emerging technologies like Web3.

I thrive on continuous learning — contributing to the security community through writeups, tool development, and knowledge sharing, from manual penetration testing to threat intelligence and red team operations.

Multi-Domain Expertise

Web, Mobile, API, Network, Cloud, Thick Client, Web3

Red Team Operations

Threat modeling and offensive security assessments

Security Research

0-day exploits, CVE analysis, and threat intelligence

Knowledge Sharing

Guest lectures, training delivery, community contribution

Experience

Deputy Manager

Protiviti India Member Firm, Bengaluru

Jan 2026 – Present

  • Leading security assessment and penetration testing engagements
  • Managing security consulting projects and client relationships
  • Overseeing red team operations and vulnerability assessments
  • Mentoring and guiding security team members

Security Delivery Analyst

Accenture, Bengaluru

Sep 2024 – Oct 2025

  • Tailor security assessments aligned with business objectives and compliance
  • Apply SAST methodologies for early vulnerability detection
  • Evaluate APIs, Thick Clients, and Mobile apps for secure implementations
  • Monitor threat intelligence feeds and dark web sources for emerging threats
  • Deliver training on penetration testing, SAST, DAST, and secure coding practices

Consultant 3

Protiviti India Member Firm, Bengaluru

Dec 2023 – Aug 2024

  • Led red teaming activities across web, network, API, and mobile domains
  • Managed penetration testing projects with 3-4 member teams
  • Conducted cloud audits for compliance and risk mitigation
  • Worked with healthcare and banking sector clients

Security Engineer

Accubits Technologies Inc, Kerala

Sep 2022 – Dec 2023

  • Conducted VAPT on Web3 applications, NFTs, and blockchain platforms
  • Automated Attack Surface Management (ASM) with open-source tools
  • Performed comprehensive security testing on web, mobile, and APIs
  • Source code reviews with OWASP Top 10 and SANS Top 25 expertise

Security Analyst

West Advanced Technologies, Inc, Hyderabad

Oct 2021 – Aug 2022

  • Performed black box, gray box, and white box testing
  • Collaborated on red teaming and phishing campaigns
  • Cloud Application Testing on AWS

Featured Projects

DorkScanner

Powerful Google Dork search automation tool for security researchers and penetration testers

Automation Google Dorks Selenium

Scrapes Google dork entries from Exploit-DB, searches against target domains, crawls discovered URLs, and supports export functionality with retry/resume logic.

View on GitHub

Reconner

Modular reconnaissance tool integrating multiple recon utilities into a single command

Recon Subdomain CORS

Integrates assetfinder, subjack, CloudFail, Arjun, and Smuggler. Supports targeted or full-scope engagements with proper output logging for bug bounty hunters and red teamers.

View on GitHub

Bug Bounty Contributions

Active bug bounty hunter with recognized security vulnerabilities reported

Synack Red Team PentaBug Hall of Fame

Hall of Fame recognition from BMW Group and Synack targets. Live bug bounty hunting session at Nullcon invited by Airtel. Active contributor identifying security flaws across platforms.

Contact for Details

Technical Skills

Testing & Assessment

Web Penetration Testing Mobile App Security (Android) API Security Testing Network Penetration Testing Thick Client Testing Cloud Security Audit

Security Specializations

Red Team Operations Threat Intelligence OSINT Application Security Vulnerability Management Compliance Audit

Emerging Technologies

Web3 Security Blockchain Security NFT Security AI Security Smart Contract Auditing

Tools & Methodologies

Burp Suite OWASP ZAP Kali Linux Qualys MobSF SAST/DAST

Code Analysis

OWASP Top 10 SANS Top 25 Source Code Review Data Encryption Secure Coding

Soft Skills

Communication Team Leadership Problem Solving Research & Analysis Training Delivery

Certifications

CAP
eWPTX
RastaLabs Pro
PentesterLab
Synack Red Team

Latest Writeups

Achievements & Recognition

Hall of Fame Recognition

Recognized by BMW Group and Synack targets for submitting valid security bugs

Top 500 on Hack The Box

Ranked among top 500 globally on HackTheBox platform

Guest Lecturer

Delivered cybersecurity lecture at Dr. NGP College of Arts and Science

CTF Event Organizer

Organized and conducted Capture The Flag event at Dr. NGP College

Nullcon Invited Speaker

Invited by Airtel for live bug bounty hunting session at Nullcon

Security Certifications

CAP, eWPTX, RastaLabs Pro, PentesterLab certifications

Get In Touch

Location

Coimbatore, Tamil Nadu, India