Available for engagements

Srijan Adhikari

Penetration Tester / Offensive Security Specialist

Nepal4+ yrs OSCP+2 CVEs

About

Offensive security engineer with 4+ years of experience conducting penetration tests across web applications, APIs, mobile, networks, and Active Directory environments. I chain exploits to surface high-impact vulnerabilities that automated scanners miss.

Highlights

1st place — OWASP Kathmandu CTF 0x02 & 0x03
CVE-2022-3750 · CVE-2025-57770 disclosed
120+ pentests · 400+ CTF labs

Experience

Offensive Security Consultant / Pentest Specialist

DTS Solution

Feb 2026Present

Remote

Perform penetration testing across web applications, APIs, and diverse enterprise environments to identify security vulnerabilities. Simulate real-world attack scenarios to evaluate system resilience and uncover exploitable security weaknesses. Analyze and validate vulnerabilities with proof-of-concept exploitation to confirm business impact. Prepare detailed technical reports with risk ratings, attack paths, and clear remediation recommendations. Collaborate with developers and engineering teams to support secure coding practices and strengthen SDLC. Research emerging vulnerabilities, attack techniques, and security trends to improve testing effectiveness.

Cybersecurity Engineer

Vairav Technology

Aug 2022Dec 2025

Hybrid

Progressed from Offensive Security Intern → Associate Cybersecurity Engineer → Cybersecurity Engineer. Conducted 120+ penetration tests across Web applications, APIs, Mobile platforms, Networks, and Active Directory environments. Delivered detailed reports with PoCs and CVSS scoring. Conducted 5+ secure coding sessions for client developers, cutting security issues by 50%.

Freelance Pentester / Hacker

Freelance

May 2021Present

Remote

Provide freelance penetration testing services for web applications, APIs, and network infrastructures to identify exploitable security vulnerabilities. Perform end-to-end security assessments, including reconnaissance, vulnerability analysis, exploitation, and post-exploitation validation. Conduct manual and automated penetration testing using industry-standard tools and custom techniques to uncover critical security flaws. Simulate real-world attacker behavior (red team-style approach) to evaluate system resilience and business impact of vulnerabilities. Identify issues such as SQL injection, XSS, authentication bypass, IDOR, API security flaws, and misconfigurations. Deliver professional vulnerability assessment reports with technical evidence, severity ratings (CVSS-style), and clear remediation guidance.

Skills

Offensive Security6
API PentestingNetwork Penetration TestingActive Directory AttacksMobile Security (Android)Cloud SecurityWeb Application Penetration Testing
Frameworks4
PTESOWASP Top 10NIST SP 800-115MITRE ATT&CK
Tools4
BloodHound / MimikatzBurp SuiteNmap / MetasploitSQLMap
Scripting3
PythonBashPowerShell

Certifications

OSCP+

Offensive Security

2026

CRT

CREST

2026

OSCP

Offensive Security

2026

CRTP

Altered Security

2025

CRTA

Cyberwarfare Labs

2025

CPSA

CREST

2026

C|EH Practical

EC-Council

2022

PT1

TryHackMe

2025

eJPT

eLearnSecurity

2021

Get in touch

Let's work together

Available for freelance penetration testing, security assessments, and consulting engagements.