i
iamanandmahajan

Anand Mahajan

@iamanandmahajan

Expert Penetration Tester, Offensive Security, OSINT

India
Hindi, Marathi
About me
I’m a cybersecurity professional with almost 4 years of work experience specializing in Web, API & Mobile Application Penetration Testing and VAPT. I combine manual security testing with industry-standard methodologies to uncover vulnerabilities that automated scanners often miss—including authentication, authorization, business logic, API and OWASP Top 10 issues. You’ll receive clear evidence, risk ratings, practical remediation guidance, and a professional security report. My goal is simple: help you identify weaknesses before real attackers do and give you actionable insights to fix them.... Read more

Skills

i
iamanandmahajan
Anand Mahajan
Offline • 
Average response time: 1 hour

See my services

Security
I will perform professional web application penetration testing with detailed report
Technical Support
I will perform professional ios app penetration testing and vapt

Portfolio

Work experience

Confidentials

Assistant Manager

Confidentials • Full-time

Jul 2023 - Present3 yrs 2 mos

Assistant Manager | Offensive Security Directed VAPT projects and collaborated closely with CISOs, security leads, and technical teams to design and deliver effective security solutions for Fortune 500 enterprises. •Managed and delegated tasks within the team to ensure efficient project delivery. •Mentored junior staff on penetration testing best practices and methodologies. •Coordinated end-to-end pentesting phases, ensuring high-quality, actionable reports. •Integrated security testing into CI/ CD pipelines by collaborating with DevOps and development teams. •Drove threat modeling sessions and advised on risk mitigation strategies. •Utilized OSINT to augment findings and inform client recommendations. Cyber Security Consultant | Offensive Security Conducted web, mobile, and network VAPT for FMCG and BFSI clients using OWASP Top 10 methodology. •Identified and remediated SQLi, XSS, IDOR, and access control vulnerabilities through manual and automated testing tools (Burp Suite, Nessus, Nmap, Metasploit). •Performed mobile app security testing using MobSF, JADX, Burp Suite, and Ghidra. •Executed API security assessments focusing on authentication, authorization, and session management with Postman and OWASP ZAP. •Applied threat modeling (STRIDE and IriusRisk) to recommend mitigation strategies. •Leveraged OSINT for enhanced security insights during engagements.