Harshil Patel

I am a dedicated and skilled cybersecurity professional specializing in Vulnerability Assessment and Penetration Testing (VAPT), with hands-on experience in conducting comprehensive security assessments of web applications. I utilize both manual and automated testing techniques to identify and exploit vulnerabilities across all web layers. My expertise spans injection-based attacks (SQL, NoSQL, OS Command Injection, SSTI), client-side vulnerabilities (XSS, CSRF, Clickjacking), and server-side flaws (SSRF, XXE, API security). I also assess access control, file upload issues, WebSockets, and business logic vulnerabilities. In addition, I analyze SSO authentication implementations (OAuth, SAML, OpenID Connect) to identify misconfigurations, and stay up to date with emerging AI-integrated security risks in modern web applications. I work closely with developers to provide remediation guidance, ensuring security best practices, standards compliance, and thorough vulnerability reporting.

With a strong foundation in Information Technology and a Bachelor's degree from Government Engineering College Modasa, I possess a deep understanding of cybersecurity principles. My VAPT internship provided me with hands-on experience in identifying, analyzing, and mitigating vulnerabilities in web and network environments. I developed practical knowledge in areas such as encryption, secure authentication, network defense, and secure coding, following OWASP Top 10 best practices.

As a Web Developer, I bring strong expertise in responsive design, UI/UX, and front-end development using technologies like JavaScript, HTML5, and PHP. I’ve completed multiple projects involving a wide range of programming languages including C, C++, Java, and Android. I’m proficient with tools and platforms like Android Studio, Java, JSON, XML, PHP, SQL, and XAMPP, enabling me to work effectively across both front-end and back-end environments.

Beyond technical capabilities, I demonstrate strong communication, leadership, and teamwork skills. I am highly detail-oriented and able to manage multiple tasks simultaneously in fast-paced environments. My combined proficiency in cybersecurity and development allows me to deliver secure, high-quality web applications while aligning with business goals and compliance requirements.

What I Do

Cyber Security & VAPT

Proficient in identifying, exploiting, and mitigating security vulnerabilities in web applications and networks through manual and automated testing. Skilled in encryption, network security, authentication protocols (including SSO), and secure coding practices aligned with OWASP standards to ensure robust application and infrastructure protection.

Website Design & Development

Web Design | Front-end Development | Back-end Development| User Experience (UX) Design| Website Optimization| Project Management .

Proficient in creating modern, responsive, and intuitive user interfaces using HTML5, CSS3, and JavaScript. Experience with popular front-end frameworks like Bootstrap, Foundation, and Materialize to streamline development and ensure cross-browser compatibility. A keen eye for design aesthetics, color theory, and typography, resulting in visually appealing web layouts.

Copywriter

Creative Writing | Content Strategy | SEO and Keywords| Brand Messaging| Editing and Proofreading .

Talented and versatile Copywriter with a passion for crafting compelling and engaging content. Seeking to leverage my exceptional writing skills and creative flair to deliver impactful messaging for diverse clients and projects.

Management

Leadership | Communication | Decision-Making | Strategic Planning |Problem Solving |Team Building and Development .

Professional skills

1+ Year of Experience

Experience

October 2024 - Current
Blueinfy Solution Private Limited

Security Consultant

Conducted comprehensive security assessments for web applications, leveraging both manual and automated techniques to identify and exploit vulnerabilities across all layers of the web stack. Specialized in injection attacks (SQL, NoSQL, OS Command Injection, SSTI), client-side issues (XSS, CSRF, Clickjacking), and serverside flaws (SSRF, XXE, API misconfigurations). Evaluated authentication mechanisms including various SSO protocols (OAuth, SAML, OpenID Connect), identifying common implementation flaws. Assessed access control, file upload vulnerabilities, WebSockets, business logic flaws, and emerging AI-integrated web features. Collaborated closely with development teams to provide remediation guidance,enforce security best practices, ensure compliance with industry standards, and deliver detailed, actionable vulnerability reports.

August 2024 - Current
Freelancer

Freelancer (Bug Bounty Hunter)

Performed automated and manual penetration testing for Web Applications. Identify Pentest Scope, initiating scoping calls to gather the required information. Eliminate the false positives, prepare a report, and share it with the respected companies.

June 2024 - September 2024
Invesics Cyber Forensics

Cyber Security Analyst(VAPT)

Conducted web, Android, API, and network testing with a focus on penetration testing and VAPT. Utilized Burp Suite, Nmap, and Metasploit to identify security issues, providing detailed reports with OWASP Top 10 recommendations. Proficient in staying current with emerging threats.

Dec 2022 - June 2024
Compubrain

Web Developer

Skills :- JavaScript , Web-development, Responsive-Webdesign , Front-end Development , PHP , HTML / CSS .

Internship/Project

January 2024-Current
Cyber Security Intern

Cyber Security Internship

Skills :- VAPT , OWASP .

June 2021
Diploma Project

Tourism & Travel Management System

Skills :- PHP ,JavaScript , HTML / CSS .

April 2021 - June 2021
BrainyBeam Technologies Pvt. Ltd.

Android Developer (Training)

Skills :- Java, Android .

Education

2021 - 2024

Bachelor of Engineering In Information Technology(GTU)

Government Engineering College, Modasa

2018 - 2021

Diploma in Information Technology(GTU)

Ranchhodlal Chhotalal Technical Institute

2008 - 2018

Secondary Studies (1standard-10 standard)

Shree Sardar Patel & Swami Vivekanand School

CyberSecurity Skills

VAPT

100%

Coding Skills

HTML / CSS

100%

JavaScript

85%

PHP

60%

Python

50%

Java(Android)

80%

SQL

75%

Bootstrap

85%

Portfolio

My Works
Vimeo Video 1

Tour And Travel Management System

Media
Certificate 1

Bug Bounty

Certification
Certificate 1

Ethical Hacking Essentials (EHE)

Certification
Certificate 1

SQL Injection Attacks

Certification
Certificate 1

SSIP(Hackathon)

Certification

Contact

Get in Touch

Ahmedabad

Freelance Available

How Can I Help You?