At Amazon, I conduct security assessments across banking, insurance, e-commerce, and non-financial applications.
I've performed web, mobile, API, network, and cloud penetration testing using manual techniques and automated scanners. My work includes infrastructure assessments, service enumeration, vulnerability exploitation, and Android application testing.
I identify and report issues including XSS, SQL injection, CSRF, IDOR, authentication and authorization bypasses, session-management weaknesses, and cryptographic flaws. I use CVSS to assess severity and provide evidence, business impact, and remediation guidance.
I work closely with developers, network and system administrators to validate findings, remove false positives, track remediation, and support secure architecture reviews and threat modelling.

