B©M
Loading00
Product Security Engineer IIAppSec · Cloud · AINew Delhi, India

aka wh1t3r0se

Product Security Engineer II @ DigitalOcean - I embed shift-left security into high-velocity engineering orgs, automate attack-surface defense, and build AI-augmented tooling that scales assurance.

01 - About

Attacker mindset,
engineer discipline.

I am a product security engineer operating at the intersection of offensive security, cloud-native engineering and applied AI - partnering embedded with product teams to deliver secure-by-design outcomes without slowing down shipping.

My playbook is proactive, risk-based and automation-first: continuous attack surface management, threat-informed architecture reviews, DevSecOps guardrails baked straight into CI/CD, and defense-in-depth hardening across cloud estates spanning thousands of projects.

I build leverage through tooling - open-source CAST platforms, cloud resource scanners and agentic AI pentesters with near-zero false positives - and I scale culture too: CTF-style Security Weeks, live hacking events and bug bounty programs that turn developers into security stakeholders.

50+High-risk issues killed pre-prod
#5Global CTF rank - InfoBahn
19Critical + high vulns via AI pentester

02 - Selected Work

Work that moves.

03 - Capabilities

What I do best.

01

Application Security

Architecture reviews, penetration tests and API hardening for critical financial products.
02

Cloud Security - GCP

Automated policy monitoring, bucket auditing and misconfiguration response across 1200+ projects.
03

AI for Security

Agentic pentesters, AI triage bots and SCA modules wired straight into CI/CD pipelines.
04

Offensive Security

Bug bounty direction, live hacking events, CTF authorship - attacker mindset, engineer discipline.

04 - Experience

Where I have been.

Product Security Engineer IIDigitalOceanJul 2026 - Now
Product Security EngineerGrowwJan 2024 - Jul 2026
B.Tech, Computer ScienceGGSIPU, New Delhi2020 - 2024