Summary
Overview
Work History
Education
Skills
Personal Information
Languages
Certification
Affiliations
Timeline
Generic
Shridatree Mitra

Shridatree Mitra

Kolkata

Summary

A result-oriented professional targeting roles in Application Security and API Security with an organization of repute.

− Seasoned IT professional with over 2.5+ years of experience in Application Security domain.

− Proven leadership in spearheading Web and API Security Testing endeavors along with conducting DAST scanning.

− Supported regulatory compliance and audit requirements through timely execution of DAST scans and reporting.

− Excellence in collaborating with development teams to remediate vulnerabilities and elevate application security standards to new heights.

− Expertise in recognizing and addressing security issues based on OWASP Top 10 standards, ensuring robust protection for clients' systems.

− Working expertise in tools like Burp Suite Professional, Postman, OWASP TOP 10, IASP, INVICTI, INVICTI STANDARD.

− Delivered client-ready security reports and dashboards highlighting vulnerabilities, business impact, and remediation recommendations.

− Committed on staying updated with industry trends and advancements in Cybersecurity to provide cutting-edge solutions.

Overview

2
2
years of professional experience
3
3
Certifications

Work History

Security Managed Service Analyst

ACCENTURE
Kolkata
09.2025 - Current

API Security Testing

  • Performed API vulnerability assessments on APIs using Burp Suite and Postman.
  • Tested authentication and authorization mechanisms (OAuth, JWT, API keys) to prevent privilege escalation and access control flaws.
  • Conducted security assessments on the API, intercepting it with Postman and Burp Suite Professional tools to identify and exploit flaws, misconfigurations, and security vulnerabilities using both manual and automated scans.
  • Generated reports and recommendations based on discoveries, detailing the uncovered security issues, their risk levels, and mapping them according to OWASP Top 10 standards.
  • Validated HTTP methods (GET, POST, PUT, DELETE) are properly restricted.
  • Discovered unintended endpoints (via fuzzing or misconfigured API gateways).
  • Offered suggestions to the application team for addressing identified vulnerabilities and assisted in their resolution.

DAST

  • Performed regular DAST scans on applications using AppSec tool.
  • Analyzed and triaged scan findings to eliminate false positives, and prioritized remediation steps.
  • Collaborated with development teams to integrate DAST tools.
  • Documented processes and developed training materials to increase DAST adoption internally.
  • Maintained vulnerability dashboards and ensured timely delivery of security engagements, managing multiple DAST projects simultaneously while maintaining quality and client satisfaction.

Security Managed Services Associate

ACCENTURE
Kolkata
09.2023 - 09.2025

Web application testing

  • Conducted end-to-end dynamic application security testing (DAST) on enterprise web applications using Burp Suite, Invicti, and IASP.
  • Proficient in understanding application-level vulnerabilities like XSS, SQL Injection, CSRF, Clickjacking, Authentication Bypass, Session Fixation, Directory Traversal, SSRF, etc.
  • Conducted web application testing using the Burp Suite Professional tool, addressing OWASP Top 10 vulnerabilities, and manually exploited them to verify false positives.
  • Identified security breaches to assess application resilience.
  • Performed authenticated and unauthenticated scans, validating session management, cookies, and token-based authentication (JWT, OAuth).
  • Collaborated with developers and clients to remediate identified vulnerabilities, and provide mitigation advice.

Education

Master of Computer Application -

Haldia Institute Of Technology
Haldia
06-2023

Skills

  • Burp Suite Professional
  • INVICTI
  • Postman
  • Intelligent Application Security Platform(IASP)
  • INVICTI STANDARD
  • OWASP Standards
  • API security
  • Vulnerability Assessment
  • Dynamic Application Security Testing(DAST)
  • Remediate identified Vulnerabilities
  • Security Reporting
  • Project Coordination
  • Security Protocol & Compliance
  • Application Security

Personal Information

Date of Birth: 04/14/99

Address  : Contai, Purba Medinipur- 721401

Languages

  • Hindi
  • Bengali
  • English

Certification

AZ-800 Administering Windows Server Hybrid Core Infrastructure

Affiliations

Adaptable.
Teamwork and Collaboration.
Conflict Management.
Decision making.
Efficient Task Management.
Adaptability.

Timeline

Security Managed Service Analyst

ACCENTURE
09.2025 - Current

Security Managed Services Associate

ACCENTURE
09.2023 - 09.2025

Master of Computer Application -

Haldia Institute Of Technology
Shridatree Mitra