{"data":{"experience":{"edges":[{"node":{"frontmatter":{"title":"Application Security Intern","company":"eClinicalWorks","location":"Remote","range":"June 2026 - August 2026","url":"https://www.eclinicalworks.com/"},"html":"<ul>\n<li>Tested enterprise EMR products across web, API, Android and desktop, in an environment handling Personal Health Records (PHR) and Personally Identifiable Information (PII).</li>\n<li>Studied secure AI implementation architecture, worked through the OWASP LLM Top 10, and tested AI features across products.</li>\n<li>Worked alongside the application security, development and infrastructure teams, and the SOC.</li>\n<li>Performed white box testing and secure code review, and identified the root cause behind the issues I found.</li>\n</ul>"}},{"node":{"frontmatter":{"title":"Research Assistant","company":"WPU Cybersecurity Research Lab","location":"Wayne, NJ","range":"October 2024 - Present","url":"https://www.wpunj.edu/cosh/departments/computer-science/Research/cybersecurity-research-lab"},"html":"<ul>\n<li>Research on AI and LLM security for web applications and servers, focused on automated threat detection and finding insecure code before it ships.</li>\n<li>Built a modular, model agnostic framework that runs open source LLMs locally, reaching <strong>99.39%</strong> detection accuracy across <strong>13,000</strong> real world samples.</li>\n<li>Built a quality gated pipeline that pairs LLM code mutation with rule based mutation to generate training data, filtering duplicates before training.</li>\n<li>First author on three papers, two of which won best paper.</li>\n</ul>"}},{"node":{"frontmatter":{"title":"Security Analyst","company":"Cynical Technology","location":"Kathmandu, Nepal","range":"February 2023 - November 2023","url":"https://cynicaltechnology.com/"},"html":"<ul>\n<li>Performed <strong>50+</strong> application security assessments across web and mobile environments, identifying OWASP Top 10 issues.</li>\n<li>Conducted vulnerability scanning and manual testing, triaging findings and working with development teams on fixes.</li>\n<li>Documented findings, risk impact and mitigation strategies, validating fixes through structured retesting.</li>\n</ul>"}},{"node":{"frontmatter":{"title":"Application Security Researcher","company":"YesWeHack","location":"Remote","range":"August 2021 - June 2024","url":"https://yeswehack.com/hunters/nb1b3k"},"html":"<ul>\n<li>Reported <strong>450+</strong> validated findings across <strong>300+</strong> production programs, ranked <strong>top 50</strong> globally.</li>\n<li>Identified SQL injection, broken authentication and access control flaws through SAST, DAST and manual testing.</li>\n<li>Documented each finding with reproduction steps, risk impact and remediation guidance for triage teams.</li>\n</ul>"}}]}}}