Performs application security assessments across Web, API, Mobile, and Thick Client environments, with ownership of the testing lifecycle from scoping and threat modeling through exploitation, POC development, and reporting.
Identifies complex vulnerabilities beyond OWASP Top 10, including business logic flaws and authorization weaknesses, and collaborates directly with developers, DevOps, and product teams on remediation guidance.