Skip to Content(

Hi, my name is

Shivam Saraswat.

I build things for the security.

I’m a security engineer (R&D) specialized in building exceptional security solutions. Currently, I’m focused on building dev-centric security products (using shift-left approach) at PayPal.

About Me

Hello! My name is Shivam. As a Security Engineer at PayPal, I engineer and implement innovative security solutions to protect the company’s web and API assets.

Accomplished DevSecOps and Cybersecurity professional with 3+ years of expertise in architecting enterprise-grade security solutions and driving cloud-native implementations. Demonstrated ability to build and optimize secure pipelines for large-scale environments, develop innovative in-house security tools, and implement cloud security best practices.

Proven track record of reducing security risks, streamlining compliance processes, and enhancing developer productivity through innovative tools and workflows.

Committed to bridging the gap between development and security teams to create resilient, scalable, and efficient systems.

Here are a few technologies I’ve been working with recently:

  • SSDLC
  • Application Security
  • DevSecOps
  • Cloud Security
  • Security Automation (Python, Bash)
  • Vulnerability Management
  • Github Actions, GitLab CI/CD, Harness CI/CD
  • Burp Suite, Nmap, Wireshark, Nuclei, Nessus
  • MongoDB
  • Docker, Kubernetes
  • Google Cloud, AWS
  • Swagger, Postman
Headshot

Where I’ve Worked

Senior Cybersecurity Engineer @ PayPal

April 2025 - Present

  • Architected Container Security Framework & Security Policies: Spearheaded unified container-scanning framework, standardizing vulnerability checks for Docker images across all development teams while designing and enforcing security policies to achieve 100% compliance and accelerate remediation cycles.

  • Orchestrated CI/CD-Native Security Enforcement: Integrated container security scans into CI/CD pipelines automating checks that block non-compliant images and improving vulnerability detection by 50%.

  • Led Container Scanning Tool Evaluation: Conducted comparative analysis of industry tools across detection accuracy, performance impact, cost, and API support, and piloting top choice to boost scan throughput without affecting pipeline SLAs.

  • Architected End-to-End Third-Party Vendor Image Scanning Framework: Designed comprehensive security solution including automated CI/CD Pipeline templates, and developer documentation, establishing standardized onboarding workflow for external vendor container images across the organization.

  • Built Intelligent Vulnerability Deduplication & Differentiation System: Engineered an automated CVE-, package name-, and version-based deduplication solution across Container and SCA scanners and developed an image layer-based vulnerability analysis system—eliminating duplicate findings, reducing alert fatigue, and improving patch efficiency by 30%.

  • Led Cross-Language Vulnerability Research: Investigated and documented complex security scenarios including Go vulnerabilities appearing in Node.js applications and build-time versus runtime exploitability, providing clarity on risk assessment and remediation prioritization.

  • Researched Supply Chain Attack Prevention: Evaluated and documented malicious package detection capabilities in JFrog Xray policies, establishing additional security layers for preventing supply chain attacks in containerized environments.

  • Developed Comprehensive Container Security Documentation Hub: Established a centralized knowledge hub, authored key Architecture Decision Records (ADRs) for container scanning, and created technical integration docs for JFrog Xray and Harness OPA policies—reducing onboarding time by 40% and streamlining security operations.

Some Things I’ve Built

Other Noteworthy Projects

view the archive
  • PYrevDNS

    PYrevDNS is a simple tool for performing reverse DNS lookups on IP addresses. This tool is useful for network administrators and security professionals to identify the domain names associated with IP addresses.

    • DNS
    • Python
    • PHP
  • Certify - SSL/TLS Certificate Security Analysis Tool

    Certify is a powerful and easy-to-use tool designed to check the security of SSL/TLS certificates.

    • Python
    • TLS
  • PGrab

    PGrab is a banner grabber tool used to gather information about a remote server or device, specifically the banner or header information that is sent when a connection is made.

    • Python
    • Banner Grabbing
    • Network
  • crt.sh Domain Finder

    It can retrieve all the domains and the subdomains associated with a domain using crt.sh. It can also be used in conjunction with other tools (such as httpX) to know the active domains.

    • Python
    • Subdomain Enumeration
  • WebXCrawler

    WebXCrawler is a fast static crawler to crawl a website and get all the links. It is useful for web developers and security professionals to identify the links present on a website. It is built using Python and BeautifulSoup.

    • Python
    • Web Crawler
    • BeautifulSoup
  • SSH Bruteforcer and Bruteforce Detector

    It is a tool for brute-forcing the SSH service, allowing for testing and analysis of SSH security measures, and it also comes with option to detect brute-force attacks on the SSH service.

    • Python
    • SSH
    • Security

What’s Next?

Get In Touch

My inbox is always open. Whether you have a question or just want to say hi, I’ll try my best to get back to you!

)