Steve Pinkham

Application Security Engineer

Wake Forest, North Carolina, United States
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts
email-iconphone-icongithub-logolinkedin-logotwitter-logostackoverflow-logofacebook-logo
Join Prog.AI to see contacts

Summary

👤
Senior
🎓
Top School
Steve Pinkham is an application security engineer with 16 years of experience helping organizations identify, understand, and manage risk across web, mobile, and networked systems. He has led and delivered assessments and secure development work at firms including GuidePoint Security, Synopsys, and multiple boutique consultancies, with deep hands-on experience in web APIs, mobile apps, embedded systems, and code review. Beyond testing, he has developed and taught internal and public training on topics from embedded security to source-code assessment, translating complex findings into pragmatic remediation. An active contributor to the security tool ecosystem, he improved core detection logic in the widely used skipfish web scanner, enhancing SQLi, XSS, and file-inclusion checks. Based in Wake Forest, NC, Steve combines practitioner-level technical depth with real-world consulting acumen, often bridging gaps between penetration testing, SDLC practices, and developer education.
code16 years of coding experience
job16 years of employment as a software developer
bookBS Computer Science, BS Computer Science at Virginia Commonwealth University
stackoverflow-logo

Stackoverflow

Stats
101reputation
0reached
0answers
0questions
github-logo-circle

Github Skills (11)

file-handling10
security10
it-security10
sql-injection10
remote-file-inclusion10
xss10
web-application-security10
html6
php6
javascript5
css5

Programming languages (9)

JavaC++RustCPHPHTMLRubyPython

Github contributions (5)

github-logo-circle
spinkham/skipfish

Mar 2010 - Dec 2012

Web application security scanner created by lcamtuf for google - Unofficial Mirror
Role in this project:
userSecurity Engineer
Contributions:102 commits, 2 comments, 2 issues in 2 years 9 months
Contributions summary:Steve contributed to Skipfish, a web application security scanner, by implementing and refining various security checks and features. Their work included improving SQL injection detection, enhancing XSS detection, and adding file inclusion testing. The user also addressed vulnerabilities related to directory traversal and content-based issues through code modifications and refactoring.
OWASP Foundation Web Respository
Contributions:12 pushes in 3 years 9 months
web-foundationsecurityowaspfoundationrespository
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.
Request Free Trial