Hi, I'm Rounak and I'm a Penetration Tester

OSCP+ certified · PwC & KPMG India · Offensive security specialist

2+ Years · Big 4
100+ Apps tested
50+ Critical findings
7 Certifications

01 / About

A bit about me.

Penetration tester based in Mumbai. At PwC and now KPMG, I break into web apps, APIs, mobile apps and Active Directory. Then I explain clearly how I got in and how to shut it down.

I hold OSCP+, OSCP, OSWP, CPENT and CEH. What I enjoy most is the hunt: chaining a few small mistakes into a real compromise, and writing the kind of report a team actually wants to act on.

03 / Experience

Where I've operated.

  1. Associate Consultant

    KPMG India

    Apr 2026 - Present
    • Web · API · Mobile · Infra VAPT
    • Active Directory
    • Red Team
    • AI Tooling
    • Performed Active Directory configuration reviews (PingCastle, Purple Knight) and supported authenticated AD penetration testing (BloodHound, Impacket, NetExec), identifying misconfigurations, stale accounts, excessive delegation, weak Kerberos encryption and Kerberoastable service accounts.
    • Supported a Red Team engagement, performing external reconnaissance through OSINT, subdomain enumeration and attack-surface mapping.
    • Performed black-box security testing on Android and iOS applications per OWASP MASVS and NPCI guidelines, covering certificate pinning, insecure data storage, traffic interception and IPC exposure.
    • Contributed to an internal AI-powered penetration testing tool, reviewing model-generated findings and flagging false positives and negatives to improve accuracy.
  2. Associate

    PwC India

    Sep 2023 - Jul 2025
    • Web · API · Mobile · Infra VAPT
    • Red Team
    • CERT-IN
    • Secure Code Review
    • Conducted VAPT for 100+ applications (Web, API, Mobile) and 5000+ IPs; triaged and reported 50+ high/critical findings and delivered prioritized remediation guidance.
    • Key contributor to CERT-IN Empanelment VAPT, achieving 90%+ vulnerability coverage across enterprise infrastructure.
    • Executed full-scale Red Team operations, improving client detection/response by 20-30%.
    • Conducted assessments of SaaS / cloud integrations (SOC2 readiness, IAM validation, config auditing).
    • Authored 100+ detailed security reports including PoCs, exploit chains, lateral movement paths and prioritized remediation.
    • Performed secure code review for 200k+ LOC using Fortify / SonarQube, identifying logic flaws.
    • Automated enumeration and reporting processes, reducing manual testing effort by 25%.
    • Received 2 “Above and Beyond” Awards for exceptional NAC Bypass and Red Teaming contributions.
  1. Cybersecurity Consultant Intern

    Vaisansar Technologies Pvt. Ltd

    Internship
    • Malware Defence
    • Web Security
    • Monitored malware-detection projects, reducing attacks on CDNs and SSL cross-site scripting by 15%.
    • Ran security inspections for a 1,500+ user site and scanned regularly for malware, protecting 5,000+ machines.
    • Discovered 3+ web-server vulnerabilities and recommended upgrades.
  2. Web Development Intern

    Nibodh Educare Pvt. Ltd

    Internship
    • Web Dev
    • UI/UX
    • Designed UI/UX and built responsive interfaces for web-based systems.
    • Delivered hands-on Adobe-software training to the technical team.
    • Assisted with website maintenance and troubleshooting.
    View certificate
  3. Summer Intern

    Nibodh Educare Pvt. Ltd

    Internship
    • Web Security
    • Mentoring
    • Resolved issues from testing and customer feedback while mentoring a team of 4 developers, improving performance by 35%.
    • Designed and implemented website security measures such as firewalls and login encryption.
    View certificate

04 / Capabilities

Where I operate.

100+ apps assessed
5,000+ IPs tested
200k+ LOC reviewed
50+ critical findings

Penetration Testing

Web, API, network, Active Directory, and mobile assessments across black-box to full-knowledge engagements.

100+ apps · 5,000+ IPs · CERT-IN empanelled

  • Burp Suite
  • Nmap
  • FFUF
  • Impacket
  • BloodHound
  • Frida
  • JADX
OSCP+OSCPOSWP

AppSec & Code Review

SAST/DAST, manual source code review, and vulnerability triage against OWASP standards.

200k+ LOC reviewed · Fortify · SonarQube · OWASP Top 10

  • Fortify
  • SonarQube
  • OWASP ZAP
  • SQLmap
  • Semgrep
CEH

Engineering & Tooling

Security tooling, automation scripts, and full-stack products built for the security industry.

SecHeaders in production · Python / Bash / JS automation

  • Python
  • Bash
  • PowerShell
  • JavaScript
  • Cloudflare Workers
KLCP

Arsenal

Tools by role.

Web Testing

  • Burp Suite Pro
  • OWASP ZAP
  • SQLmap
  • XSSer
  • Nikto
  • Gobuster
  • Wfuzz
  • Arjun

API Testing

  • Burp Suite
  • Postman
  • FFUF
  • Arjun
  • JWT_Tool
  • HTTPie

Mobile Testing

  • Frida
  • JADX
  • MobSF
  • Objection
  • ADB
  • APKTool
  • drozer

Active Directory

  • Impacket
  • BloodHound
  • NetExec
  • PingCastle
  • Responder
  • Evil-WinRM
  • Kerbrute

Infrastructure

  • Nmap
  • Masscan
  • Nessus
  • OpenVAS
  • Wireshark
  • Netdiscover

Source Code Review

  • Fortify
  • SonarQube
  • Semgrep
  • Bandit
  • CodeQL
  • JADX

Recon

  • FFUF
  • Shodan
  • WhatWeb
  • Amass
  • theHarvester
  • Subfinder
  • Netdiscover

Automation & Dev

  • Python
  • Bash
  • PowerShell
  • JavaScript
  • Cloudflare Workers
  • Docker

Reporting & Standards

  • CVSS v3.1
  • OWASP Top 10
  • PTES
  • NIST
  • NPCI Guidelines
  • CERT-IN

Standards & Frameworks

  • OWASP Top 10
  • OWASP MASVS
  • PTES
  • OSSTMM
  • MITRE ATT&CK
  • CVSSv3
  • NPCI Guidelines
  • NIST

Languages

  • Python
  • Bash
  • PowerShell
  • JavaScript
  • Java
  • SQL

CTF & Labs

  • HackTheBox
  • TryHackMe
  • PG Practice
  • OSWP Labs

05 / Projects

SecHeaders.

I got tired of manually checking security headers and wondering if I missed something, so I vibe-coded SecHeaders. It grades headers, maps findings to CWEs, and hands you a copy-ready curl command to verify and retest every one yourself.

You paste a domain and get an A–F grade with the exact score deductions. Each finding shows its evidence, CWE ID and fix, and you can retest a single header to check the diff after you patch it.

  • HTTP headers security check
  • 14 check categories
  • CWE-mapped
  • Retest & diff
  • SSRF-hardened
  • Zero deps
SecHeaders home, paste any domain to begin
SecHeaders report for rounak.me, Grade A, 97/100, score deductions listed
SecHeaders finding card, CWE ID, evidence, impact rating, copy-ready remediation
SecHeaders verify-this-finding panel with expected-if-fixed/vulnerable values, and a Still Present badge after retesting
SecHeaders inspect response headers panel, copy-ready HEAD and GET curl commands for the scanned host
Report, dark theme (follows system color-scheme) Report, light theme (follows system color-scheme)

06 / Research

Published research.

Peer-reviewed engineering publications. The security work itself lives in Experience and the writeups.

Estate Digitization using Blockchain

Estate Digitization using Blockchain

  • Ethereum
  • Solidity
  • React.js
  • IJRAR Published

A consensus-based land registry on Ethereum that makes records immutable via smart contracts while keeping transfers transparent and real-time. Published in IJRAR (Apr 2023).

Object Recognition for the Visually Impaired

Object Recognition for the Visually Impaired

  • Google Cloud Vision
  • Raspberry Pi
  • gTTS
  • IJSRD Published

An assistive object-detection system using Google Cloud Vision API on Raspberry Pi that returns audio output, helping visually impaired users identify surroundings and navigate.

07 / Contact

Let's talk security.

Mumbai, India · Offensive Security Consultant

Reach out for security consulting, research collaboration, or CTF team-ups. Fastest response via LinkedIn or email.