Dilip Prasad
Security Analyst | Penetration Tester | Bug Bounty Researcher
{ About }
OSCP-certified Penetration Tester with hands-on experience in web and network exploitation, AI-assisted vulnerability analysis, and automation scripting. Proven success identifying and reporting over 50+ high-severity vulnerabilities across enterprise and bug bounty programs.
Passionate about red teaming, AI-driven exploitation, and developing scalable offensive security frameworks. Experienced in communicating complex vulnerabilities clearly for remediation and impact understanding.
< Experience />
Bug Bounty Hunter
September 2023 – PresentIndependent Security Researcher — Multiple Enterprise Programs
- Conducted independent web and API vulnerability research for enterprise applications.
- Discovered and responsibly disclosed critical vulnerabilities such as IDOR, SSRF, RCE, and authentication bypasses.
- Performed deep reconnaissance and chain exploitation to demonstrate real-world business impact.
- Developed custom Python automation tools for recon, fuzzing, and parameter discovery.
- Integrated findings into professional workflows, enhancing exploit methodology and efficiency.
Penetration Tester — Securin Inc.
Aug 2021 – Aug 2023Chennai, India
- Conducted web, API, and network penetration testing engagements across healthcare and finance sectors.
- Discovered authentication bypasses, business logic flaws, and chained exploits to escalate impact.
- Built Python scripts automating enumeration and payload generation, reducing manual workload by 40%.
- Delivered detailed reports with clear remediation guidance to technical and executive stakeholders.
Freelance Penetration Tester
Jan 2021 – Aug 2021Chennai, India
- Participated in bug bounty programs on HackerOne and Bugcrowd.
- Reported over 20 verified vulnerabilities via private VDP and BBP programs.
- Used TryHackMe and HackTheBox for continuous skill development.
App Developer — Sarada Technologies
Jul 2020 – Dec 2020Chennai, India
- Developed a home automation platform for IoT device control using AWS and GCP.
- Integrated third-party devices securely via RESTful APIs.
🎓 Education
MSc Cyber Security — University of Birmingham
Sep 2023 – Sep 2024
Thesis: Integrating AI and Traditional Tools for Enhanced Penetration Testing
BSc Computer Science — SRM University
Jul 2016 – May 2020
Project: Blood Bank Donation System with Secure Access Controls
# Certifications
OSCP — Offensive Security Certified Professional
Certified: October 2025