JS
Hello, I'm

JANMEJAYA

SWAIN

Senior Information Security Engineer

Building Secure Systems. Protecting Global Scale. Specializing in Application Security, Secure Architecture and AI Security.

CISMeWPTX v2CEHAWS SecurityAI Security
Contact Me
PENTRAXAI
ONGOING PROJECT
LIVE
190+
Vulnerabilities
9241+
Live CVEs
$30
API Cost
~0
False Positives
4
AI Agents
Phase 2 · PoC Active — Real Targets
LLM-NativeOpen SourcePenTest
Visit pentraxai.com
Scroll

6+

Years Experience

1000+

Security Assessments

400+

Enterprise Applications

1

Published CVE

50+

Hall of Fame Recognitions

10+

Certifications

ABOUT ME
Janmejaya Swain
STATUS: SECURING

Securing Today. Building a Safer Tomorrow.

Senior Information Security Engineer with over 6+ years of experience helping organizations design secure software, assess complex architectures, and embed security into every stage of the software development lifecycle. My expertise spans Security Architecture, Application Security, Third-Party & SaaS Security Reviews, Security Strategy, AI Security, Secure SDLC, and Offensive Security. As a Dedicated Security Engineer for enterprise programs, I partner with engineering, architecture, and business teams to identify security risks, influence secure design decisions, and strengthen organizational security posture.

Beyond my professional work, I'm an active security researcher, bug bounty hunter, published CVE author, and OWASP Chapter Co-Lead. I'm passionate about advancing cybersecurity through vulnerability research, AI-driven security innovation, security automation, and community knowledge sharing. My mission is to make security an enabler of innovation rather than a barrier to it.

terminal — bash
root@js-sec:~$ whoami
Janmejaya Swain
root@js-sec:~$ cat role.txt
Senior Information Security Engineer
root@js-sec:~$ ls -la expertise/
-rw-r--r-- Application_Security
-rw-r--r-- Secure_Architecture
-rw-r--r-- AI_Security
-rw-r--r-- Penetration_Testing
-rw-r--r-- Threat_Modeling
-rw-r--r-- Security_Automation
root@js-sec:~$
EXPERIENCE TIMELINE
Mastercard

Mastercard

Current
Senior Information Security Engineer
May 2026 – Present
Mastercard

Mastercard

Senior Vulnerability Analyst
Feb 2023 – May 2026
PwC India

PwC India

Cyber Security Consultant
Apr 2022 – Feb 2023
PwC India

PwC India

Senior Cyber Security Analyst
Jul 2021 – Mar 2022
PwC India

PwC India

Cyber Security Intern
May 2021 – Jul 2021
K

Kyrion Technologies

Cyber Security Intern
May 2018 – Aug 2019
SKILLS & EXPERTISE
AI/LLM Security
Agentic AI Security
Application Security
API Security
Cloud Security
Secure Architecture
Threat Modeling
Penetration Testing
SAST / DAST
Bug Bounty
Mobile Security
Kali Linux
+ and many more...
CERTIFICATIONS
ISACA

CISM

ISACA

aws

AWS Security

Amazon

EC-COUNCILCERTIFIED

CEH

EC-Council

ine

eWPTX v2

eLearnSecurity

ine

eMAPT

eLearnSecurity

AI/ML Pentester

Specialty

Agentic AI

Specialty

+ and many more...
AI PROJECTS

PentraxAI

LIVE · Phase 2OPEN SOURCE

The World's First Open-Source LLM-Native Penetration Testing Platform

Visit Project
pentraxai — live session
ACTIVE

> Initializing PentraxAI agent...

Scanning attack surface...

[!] SQLi detected — verifying...

[CRITICAL] RCE confirmed · CVSS 10.0

✓ Exploitation verified. No false positive.

Findings: 3 Critical, 5 High, 12 Medium

Cost: $0.73 · False Positives: 0

190+
Vulnerabilities Found
9241+
Live CVEs Tracked
$30
Avg API Cost
~0
False Positives
4
AI Agents

Why PentraxAI

~Zero False Positives

Every finding actively exploited & verified before hitting your report. No ghost hunting.

$30 Full Pentest Cost

Eliminates $15K+ manual costs. Run deep pentests for the cost of LLM API tokens.

190+ Vulnerability Types

Pure LLM reasoning, zero CVE database dependency. Cognitive analysis of your unique attack surface.

Complete Live Transparency

Watch the AI think. See every payload, every response, and every logical pivot in real time.

Attack Chain Discovery

Agents connect low-severity findings into critical exploitation paths — just like human red teams.

Open Source · MIT License

Self-hostable. Community-driven. No black boxes, no vendor lock-in. Full transparency.

Roadmap

Phase 1Research & Architecture✓ DONE

Core LLM-native reasoning engine designed. Multi-agent attack orchestration validated. Zero false-positive methodology established.

ArchitectureLLM CoreAgent Design
Phase 2Proof of Concept● ACTIVE

PentraxAI is live in PoC stage — actively tested against real targets in controlled environments. Results validated by security researchers.

PoC LiveReal TargetsValidated

Ongoing Project

Built in the Open. For Everyone.

MIT Licensed · Self-Hostable · Community Driven · Full Transparency

HALL OF FAME RECOGNITIONS
Google
Microsoft
Apple
X (Twitter)
Coinbase
Spotify
TikTok
United Nations
NCSCUK GOV
NCSC UK Govt
R
Remitly
Blackberry
Oxford

+ and many more...

BUG BOUNTY JOURNEY
Hall of Fame
Honorable Mention / Letter
Acknowledgement
Private Programs
Journey Start
March 2021 – PresentPrivate Programs
  • Many more Private Programs

Names confidential

February 2021Hall of Fame
  • Microsoft
September 2020Hall of Fame
  • X (formerly Twitter)
August 2020Hall of Fame
  • CoinBase
July 2020Hall of Fame
  • Apple
May 2020Multiple Recognitions
  • Google (5+ times)
  • SAP
  • Paytm (7+ times)
April 2020Hall of Fame
  • Synology
March 2020Hall of Fame
  • Blackberry
  • Springer Nature
February 2020Hall of Fame
  • Skyscanner
  • SEEK
January 2020Acknowledgement Letter
  • Avira
December 2019Hall of Fame
  • United Nations Women
  • United Nations
  • Inflectra
October 2019Hall of Fame
  • Keybank
  • NCIIPC – Government of India
  • Drexel University
  • Bigbank
September 2019Hall of Fame
  • University of Oxford (3 times)
  • OnePlus
  • TIDEPOOL (20+ times)
August 2019Hall of Fame
  • NCSC – UK Government
August 2019Journey Begins
  • HackerOne

Started with Private Programs

> View Profile

> 7+ years of continuous security research on HackerOne

FEATURED CVE

CVE-2021-43512

Published CVE

Responsible DisclosureSecurity Research
View Details
OWASP LEADERSHIP

Chapter Co-Lead

OWASP Bhubaneswar Chapter

  • Community Building
  • Security Awareness
  • Training & Workshops
  • Mentoring
Learn More
EDUCATION

Master of Cyber Security

Pursuing
CSU Logo

Charles Sturt University, Australia

B.Tech in Computer Science & Engineering

OEC Logo

Orissa Engineering College, Bhubaneswar

TECH STACK & TOOLS
Python
Go
AWS
AWS
Docker
Linux
Burp Suite
Nmap
Metasploit
GitHub
OpenAI
Claude
Azure

Let's build a more secure digital world together

Whether you need a security architecture review, penetration testing, or guidance on building secure AI systems, I'm here to help.