Summary
Luis Castro is an Application Security Engineer II with eight years of hands-on experience bridging secure development and pragmatic testing practices. At FloQast he created the AppSec PR approval process, led both black- and white-box testing, and built automation that integrates SAST, WAF rules, Dependabot triage, and CI/CD workflows using Python, Node, Jenkins and AWS. He pairs a developer-first mindset—former SDET and software engineer roles—with deep web exploitation and secure code review expertise, and even dabbles in reverse engineering and electronics as a hobby. Known for turning security findings into automated tooling and repeatable processes, he supports bug bounty programs and provides final security assurance for releases. Based in Cranston, RI, Luis combines practical secure-coding guidance with the engineering chops to ship production-ready security automation.
8 years of coding experience
4 years of employment as a software developer
Web Development Immersive, Web Development Immersive at General Assembly
Electrical and Electronics Engineering, Electrical and Electronics Engineering at Institute Polytechnic Cardenal Sancha(High School)
Associate's degree, Computer Science, 3.4, Associate's degree, Computer Science, 3.4 at Community College of Rhode Island
Information Technology, Information Technology at Year Up
Spanish