I lead the APAC Security Operations team at Bugcrowd, overseeing security triage and validation. I stay hands-on with the technical work, including zero-day response, and lead projects across the wider team in internal tooling, automation, and AI. I also work directly with customers and collaborate with Product and Engineering on the platform.
Previously, I was a Senior Security Engineer at Postman, where I led security engineering teams and the bug bounty program. I researched new vulnerability classes, found and fixed critical issues, and helped address SSRF at its root cause. I also mentored engineers and developed security tooling and training resources.
Earlier, I was a founding member and Lead Security Engineer at CloudSEK, where I helped build the core security product and led teams working on security research and engineering.
Research & community#
I’ve reported security issues to Google, GitHub, Slack, Swisscom, and others through their bug bounty programs. In 2017, I won HackerOne’s CTF and took part in the H1-702 live hacking event.
I used to be active on Stack Overflow, where I enjoyed working through problems with other developers and sharing what I learned.
Stack Overflow- Est. reach
- 6.4m
- Answers
- 1,443
- Reputation
- 76.9k
Outside work#
Away from work, I enjoy traveling, hiking, swimming, reading, getting to the gym, and playing chess.
You can find me on GitHub, LinkedIn, or X. Feel free to say hi.