Vishnu K.

Red Team Engineer (Professional Management Level VI)

Berlin, Germany

Experience

Jun 2023 - Present
2 years 6 months

Red Team Engineer (Professional Management Level VI)

Schwarz Group

  • Developed Red Team infrastructure for real-world attack simulations using Sliver C2 and custom tools
  • Executed advanced Red Team operations, integrating AI/LLM Security research for prompt injection attacks
  • Conducted comprehensive breach assessment attacks and vulnerability assessments across enterprise infrastructure
  • Performed root cause analysis and purple team exercises, generating executive-level reports
  • Lead LLM Red Teaming initiatives to improve AI Model Security for GPT-4, Mistral, and internal GenAI models
Dec 2021 - May 2023
1 year 6 months

Senior Security Engineer

Finoa GmbH

  • Established comprehensive vulnerability management processes with automated asset discovery and remediation workflows
  • Built successful bug bounty and vulnerability disclosure programs with efficient triage processes
  • Developed an automated scanning framework to ingest, parse, and triage vulnerabilities from external penetration-test disclosure reports, streamlining the vulnerability management workflow and accelerating remediation efforts
  • Integrated SAST and DAST tools into the secure SDLC, comprehensively addressing OWASP Top 10 vulnerabilities and overseeing the full product security lifecycle from threat modeling and secure design reviews to in production penetration testing and continuous security monitoring
  • Conducted monthly cybersecurity risk assessments, using CVSS scores to prioritize threats and deliver clear, actionable reports to the CISO
Apr 2018 - Aug 2021
3 years 5 months

Lead Security Engineer / Security Engineer

UST

  • Led a team of penetration testers delivering cloud security testing, API security audits, and web application security testing
  • Conducted network hardening assessments, wireless security audits, and cloud security reviews
  • Created security scripting solutions with Python, PowerShell, and Bash to automate vulnerability scanning
  • Collaborated with SOC teams for incident response and threat intelligence initiatives
  • Managed end-to-end client penetration testing engagements, from initial scoping and onboarding calls through hands-on testing, technical reporting, and post-mortem retrospectives, ensuring clear communication, timely deliverables, and continuous process improvement

Summary

Red Teamer, Product Security Engineer with expertise in AI/LLM Security, creator of open-source LLM security scanner framework, with critical vulnerability discoveries recognized by industry leaders

Versatile Security Engineer with 7+ years of expertise in Vulnerability Management, Attack Surface Management, Application Security, SSDLC, and Penetration Testing. Proven success securing AI/LLM products, Cloud Security (AWS, GCP), and Bug Bounty triage. Skilled in CVSS scoring, threat prioritization, risk-based remediation, and root cause analysis. Recognized by Google, Facebook, Oracle, and 100+ organizations for vulnerability disclosures and red teaming initiatives.

Languages

English
Advanced

Education

Arden University

M.Sc. · IT Security Management · Germany

Rabindranath Tagore University

Bachelor of Computer Applications · Computer Applications · India

Certifications & licenses

CRTP

Certified AI/ML Pentester

EWPTX

OSCP

OSWE

Need a freelancer? Find your match in seconds.
Try FRATCH GPT
More actions