yash@yashhacks:~$ whoami

Hi, I’m Yashwanth Reddy

Security Engineer @ Amazon

I work across application security, threat modeling, cloud security and vulnerability management—finding security risks early, reviewing designs, and helping engineering teams build secure services.

Application SecurityThreat ModelingCloud SecurityVulnerability ManagementPython AutomationWeb Security
Yashwanth Reddy in a security engineering workspace
SECURE THE SYSTEMS

yash@yashhacks:~$ cat about.txt

About

Security Engineer with experience in application security, cloud security and vulnerability management. My work includes identifying security risks, conducting security reviews, threat modeling, and helping engineering teams build secure services.

I’m continuing to go deeper into penetration testing, exploit research and offensive security to strengthen my application-security and product-security perspective.

01

Application Security

Security reviews, web security, secure design, authentication and authorization thinking.

02

Threat Modeling

Trust boundaries, attack surfaces, abuse paths, mitigations, and risk-driven design review.

03

Cloud Security

AWS security, identity and access, service architecture, networking, and defense in depth.

04

Security Automation

Python and AWS automation for vulnerability correlation, prioritization, remediation, and reporting.

yash@yashhacks:~$ cat experience.txt

Experience

Amazoncurrent

Security Engineer — Devices & Services Security

Apr 2026 — Present · Sunnyvale, CA

Intuit

Information Security Engineer

Mar 2025 — Mar 2026

Built Python + AWS automation to correlate and prioritize vulnerabilities, streamline remediation, and improve risk visibility for security and engineering teams.

Assurant

Cyber Security Engineer

Aug 2023 — Feb 2025

Movate

Security Operations Engineer

Jan 2022 — Nov 2022

yash@yashhacks:~$ ls certs/

Certifications

01

Certified Threat Modeling Professional

Practical DevSecOps · Jul 2026

CTMP7SDID2MLverify on Credly ↗

yash@yashhacks:~$ ls projects/

Projects

all repositories ↗

projects/yashhacks

YashHacks

This portfolio: a dependency-light, interactive shell experience built with semantic HTML, CSS and vanilla JavaScript, with a strict CSP and hardened browser security headers.

HTMLCSSJavaScriptSecurity Headers
source ↗

projects/simple-siem-tool

Simple SIEM Tool

A lightweight security project for log monitoring and SIEM fundamentals.

Security MonitoringSIEM
repository ↗

projects/basic-firewall-configuration

Basic Firewall Configuration

A hands-on repository for learning and documenting firewall-rule configuration.

Network SecurityFirewall
repository ↗

yash@yashhacks — interactive shell

YashHacks shell v3.0

Type help, try ls, or run cat about.txt.

Use ↑/↓ for history and Tab for completion. Commands are local-only and are never sent to a server.

yash@yashhacks:~$ cat recommendations.txt

Recommendations

“Strong ownership and impact to security and automation initiatives.”— Prasanna Shrestha, Senior Software Engineer
“A standout security professional… able to take complex security challenges and build practical, automated solutions.”— Sean Nikbosh

yash@yashhacks:~$ cat learning.txt

Currently learning

  • Penetration testing
  • Exploit research
  • Offensive security
  • Web & API security
  • Cloud security architecture

Also active as an HTB CTF player.

yash@yashhacks:~$ cat education.txt

Education

University of Alabama at Birmingham

Master’s — Computer & Information Systems Security / Information Assurance

JNTUH College of Engineering Hyderabad

BTech — ECE

yash@yashhacks:~$ cat contact.txt

Let’s connect.

Security, AppSec, cloud security, threat modeling, or building something interesting.