SecurityStories

View on GitHub

SecurityStories - 52 Weeks, 52 Stories

Story - 5: Featuring Parveen Yadav

Parveen Yadav

Through the SecurityStories series, Today, we are excited to bring forward the story of Parveen Yadav, a highly skilled hacker, security professional and one of the minds behind the OWASP SeaSides conference.

Let’s jump straight into learning more about him and his experience.

Question: Could you briefly introduce yourself?

Parveen: I am working as Product Security Analyst with a well-known Bug Bounty Platform, HackerOne. I have around 12+ years of experience and expertise in the Web application, Network penetration testing, Thick Client Testing, Large Industry printers security assessment, Red Teaming & Mobile Application Testing. I am the co-founder of the OWASP Seasides conference, Goa and founder of Bug Bounty Village and presented at C0c0n and Seasides Conference.

Question: How did you get started in Cyber Security?

Parveen: While I was in college almost a decade back, I learned about cyber security, and it sparked my interest. Since then, I have kept working and growing in this field, mainly through self-learning.

Question: What were the initial challenges and blockers you faced?

Parveen: I started in 2011. During that time, there were relatively fewer learning articles, and videos, so I collaborated with other security researchers during that time, and we made some silly mistakes and learned new things as well

Question: What is the learning methodology you followed or still follow?

Parveen: Self-learning is the best learning method, and I greatly advocate it. You learn and grow from your mistakes and gain experiences.

Question: What all certifications do you hold, and what certificates would you recommend to the readers?

Parveen: I hold AWS Certified Cloud Practitioner. Having certification is a personal choice. At the same time, it is unnecessary but could be an excellent credential to show when you are a fresher.

Question: What is your favourite thing to hack on?

Parveen: SQL Injection is my all-time favourite vulnerability, and I scored most of my bounties through this.

Question: What does your tool arsenal look like - Could you share some?

Parveen: I love doing Recon and looking for Dependency Confusion. Burpsuite is one of my go-to hacking tools.

Question: How do you cope with Burn Outs?

Parveen: I like to chill out with friends and go to amazing places for the holidays to refresh my mind.

Question: What would you advise the newcomers in Cyber Security?

Parveen: Engage with your seniors in cyber security. They best guide you on how to start your cyber security career and learn from your mistakes.

Parveen: Twitter is the best source to keep learning the new latest trends.

Question: What’s your life outside hacking?

Parveen: I am a fun and chill guy. I like to make friends with everyone and always love to help people.

Social Profiles

Did you find Parveen’s story interesting and inspiring? Please share it with your friends and colleagues to spread the word.

We will be coming up with more exciting and inspiring stories Weekly.

Follow Me on Twitter