Curriculum Vitae

account_circleContact Details

Milan Bharanya

Hi there

I'm Milan and I'm passionate about figuring out how stuff works internally, and then automating every aspect of it with clean and concise code that works. I'm constantly learning and enjoying the process of it. It can be functional programming, automating my home with home-assistant.io or even something completely novel like growing tomatoes indoors in December

businessExperience

Jun. 2021 -
Current
Security Tester at
  • Penetration Testing of software of well known Swiss companies
  • Security Audits Based on CIS Benchmarks, ASVS, ...
  • Held talks to a variety of audiences on a university niveau
  • Project management and sales while coordinating directly with clients
Dec. 2020 -
May 2021
Offensive Security Certified Professional OSCP
May 2018 -
Nov. 2020
Software Engineer at
  • Implemented a complex ranking system for products based on various metrics, which contributes directly to the business' monetization strategy
  • Single-handedly implemented and maintained (2y) a bulk product import feature which allowed hundreds of brands to be discovered on a global market place
  • Implemented many greenfield projects, like infrastructure as code with Serverless.js and a Shopify integration
  • Built an analytics framework to find out which features are really getting used (AWS Athena, Looker, Mode, Woopra)
  • Improved the Backend (Scala), Frontend (AngularJS, Typescript), the Cloud (AWS) and everything in between
  • Established SEO best practices and built a reusable framework for it, as well as coordinated with external resources to verify best practices
Okt. 2016 -
Apr. 2018
Software Engineer at
  • Development of feature rich, high performance E-Commerce software for well known swiss clients such as:
  • Fust
  • Nettoshop
  • Linsenmax
  • Development of core modules for the internal CMS/Shop in Java / AngularJS
  • Automation of scripts for servers and developers using Bash and NodeJS
Aug. 2011 - Aug. 2015 Apprenticeship "Informatiker EFZ" specializing in software engineering at
  • Development and support of various internal and international Web-Applications
  • Management and support of an intranet with over 1000 users
  • International IT-Service Desk
2014 6 month exchange project at
  • Evaluating various web frameworks for future projects
  • Thoroughly testing software based on "Certified Software Tester SAQ"

codeQualifications

Security
  • Linux, *BSD, Windows
  • Discovery tools (Shodan, google hacking, recon-ng, nmap, nc, dirbuster, ...)
  • Exploitation tools (Metasploit, exploit-db, password cracking, ...)
  • Windows & Active Directory exploitation (Bloodhound, Sharphound, ...)
  • Web Application exploitation (SQL injection, SSRF, XSS, ...)
  • Post-Exploitation (Powershell empire, privilege escalation, ...)
  • Scripting (Bash, Python, pwntools, ...)
Backend
  • Scala (Cats, Scalaz, ZIO)
  • NodeJS (Typescript, ExpressJS, ...)
  • Java
  • Kafka, Thrift
  • Docker
Development
  • Functional Programming (Functors, Monads, Monoids, ...)
  • UML
  • OOP
  • Test Driven Development
  • Clean Code
Frontend
  • HTML5, CSS3, AngularJS
Data
  • SQL & NoSQL
  • DynamoDB, Postgres, MariaDB
  • Python, Bash
  • Looker, Mode, Woopra
Tools
  • Git, Github
  • Jira, Confluence
  • SBT, Maven, Gradle
  • Vim, VSCode, Jetbrains products
Cloud
  • AWS Redshift, Lambda, EC2

schoolSchool

2015-2016 Berufsmatura Solothurn
2011-2015 Berufsschule Solothurn
2011-2013 Berufsmatura Solothurn
2010-2011 Bezirksschule Biberist
2007-2010 Progymnasium Solothurn

languageLanguages

German

Native language

English

Cambridge English: Proficiency (CPE)CEFR C2

French

School knowledge CEFR B1

weekendExtras / Personal Projects

InComb

Dynamic personalized news aggregator https://incomb.com

Home-Server

  • ESXi, VMware VSphere
  • Multiple redundant ZFS storage arrays & backups
  • Docker with various services
  • Home-Assistant to automate lighting and other household appliances

GitHub

Various small tools and games on my GitHub: https://github.com/mbharanya

Including:

  • My notes while learning Scala and functional programming
  • Spotify-To-Beatsaber: Play your spotify library in Beatsaber!
  • SBB-Delay-PushBullet-Pusher: Script to send you a Pushbullet push if a train connection is expected to be late
  • Spotify-Import-Artists: Simple script to follow a given list of artists on Spotify

assignmentCertificates

2021 Offensive Security Certified Professional OSCP
2015 Cambridge English: Proficiency (CPE) CEFR C2
2014 Entrepreneurship-course GIBS, diploma by University of St.Gallen
2012 IT-Service Management with ITIL V2

person_addReferences

Available on request