// security_researcher.init()

Ubaid Ahmed

Penetration Tester · Web · Mobile · Infra VAPT

14+ years in IT with a specialised focus on Vulnerability Assessment and Penetration Testing for the past 7+ years. CAP & eJPT certified. I help teams in finance, OTT, e-commerce, and ride-hailing find the bugs attackers find first — now extending the same offensive mindset to LLM and GenAI systems.

$ whoami

Portrait of Ubaid Ahmed

01. About

My core strengths lie in conducting in-depth penetration testing, vulnerability assessments, and managing vulnerabilities across web, mobile, and infrastructure platforms.

I leverage tools like Metasploit, Burp Suite, Nessus, and Nmap to ensure comprehensive security evaluations — then translate findings into actionable guidance for developers, network engineers, and product teams.

Outside client work, I bug-hunt, mentor, and share security research with the community.

// certifications

  • CAP — Certified AppSec Practitioner
  • eJPT — eLearnSecurity Junior Pentester

// industries

finance OTT e-commerce ride-hailing

02. Expertise

From hands-on pentesting to AI security and AppSec leadership.

// offensive_security

Web App Pentesting Mobile Pentesting (iOS/Android) API Pentesting Network Vulnerability Assessment VAPT Auth & Authz Testing

// appsec_&_reviews

Threat Modeling Security Requirements Review OWASP Top 10 Assessment Developer Security Guidance

// ai_/_llm_security

NEW
LLM Security Assessment Prompt Injection Testing Gen AI & MCP Security

// risk_&_leadership

Vulnerability Management Vulnerability Triage Risk Prioritization Security Risk Assessment AppSec Team Leadership Stakeholder Management Mentoring & Training

03. Hall of Fame

Recognition from responsible disclosure & bug-bounty programs.

04. Get in touch

Looking for a pentest engagement, a second pair of eyes on your app, or just want to talk security? My inbox is open.