Mayank Kumar Choubey

Security Engineer Ethical Hacker

Summary

Security Engineer with around 3 years of experience delivering penetration testing engagements across web applications, mobile platforms (iOS & Android), APIs, and cloud environments. Proven ability to identify and remediate high-impact vulnerabilities, conduct threat modeling, and perform cloud security assessments with a focus on AWS misconfigurations and IAM risks. Hands-on experience with Kubernetes security hardening and DAST tooling. Ranked top 20 globally on Amazon VRP. Adept at producing client-ready reports and collaborating with development teams to drive secure-by-design practices. Committed to continuous learning and active contribution to the cybersecurity community.

Experience

Payatu - Associate Security Consultant
Aug 2024 - Present
  • Conduct comprehensive penetration testing on web, mobile (iOS & Android), and API-based applications.
  • Perform threat modeling to identify potential attack vectors and prioritize risks in target environments.
  • Engage in cloud security assessments, focusing on misconfigurations and IAM vulnerabilities in AWS environments.
  • Contribute to technical blogs and knowledge sharing, and participate in internal and external tech talks.
Staff Augmented to BCG (Boston Consulting Group)
  • Delivered end-to-end penetration testing engagements covering web applications, APIs, and mobile platforms (iOS & Android) for BCG clients.
  • Performed cloud security assessments with a focus on identifying misconfigurations, privilege escalation paths, and IAM vulnerabilities across cloud environments.
  • Conducted Kubernetes security hardening assessments — reviewing cluster configurations, RBAC policies, network policies, and pod security standards to reduce attack surface.
Appsecure Security - Security Engineer
July 2023 - Aug 2024
  • Conduct thorough penetration testing on web applications and mobile applications to identify vulnerabilities and security weaknesses.
  • Prepare detailed reports outlining the findings of the penetration tests, including specific vulnerabilities discovered and recommended remediation steps.
  • Collaborate with development teams to implement necessary security fixes and enhancements based on the identified vulnerabilities.

Skills

Technical Skills

Web App Pen-testing
API Testing
Mobile App Testing
Source Code Review
JavaScript
Python
Cloud Security
AWS Security
Kubernetes Security
DAST

Soft Skills

Communication
Problem-Solving
Time Management

Achievements

Certificates

Education

SPD College, Garhwa
BSc. Physics (Hons.) - 9.2 CGPA
Intermediate Board Examination, C.B.S.E, Class 12th
92.8% [PCM]