Manish Sharma

Founder & Principal Advisor, Aceloking

"Security shouldn't be a multi-week procurement bottleneck. It should move at the speed of engineering."

Manish is an offensive and defensive security engineer with over 6 years of hands-on experience hardening cloud infrastructure, building automated DevSecOps pipelines, and driving enterprise compliance programs. Prior to founding Aceloking, he served as Lead Information Security Engineer at Gameskraft and managed the core technical execution of complex compliance frameworks, including cloud architecture audits and SOC 2 Type II readiness assessments at Parspec.

An active member of the OWASP Foundation, Manish is a frequent speaker and contributor to the technical cybersecurity community (ISC2 Chapter, Garage4Hackers, Null as well as OWASP Chapters). He has provided technical talks and led deep-dive technical sessions focusing on Threat Modeling, Exploit Development, Reverse Engineering, Exploiting Vulnerabilities in Healthcare: Understanding and Preventing Cyber Threats Through Exploitation, and Penetration Tester ways of Attacking Thick Clients.

His career spans high-stakes technical security roles across fintech, e-commerce, and gaming sectors - including managing Bug Bounty operations and executing advanced manual penetration testing for global brands like Victoria's Secret & Co. An expert in architecture-level threat modeling (STRIDE) and secure code design, Manish specializes in "shifting left": replacing slow, reactive security checkboxes with proactive, automated guardrails embedded directly into the engineering pipeline. He holds an M.Sc. in Computer Science with a specialization in Cybersecurity from Liverpool John Moores University, an Executive PG from IIIT Bangalore, and is an elite Certified Exploit Developer (eCXD). At Aceloking, he combines senior engineering judgment with highly optimized toolchains to help B2B SaaS startups close enterprise deals without the traditional consulting friction.

Certification

eCXD - INE Certified Exploit Developer

eLearnSecurity Certified eXploit Developer · Hands-on, proctored exploit development certification

Manish Sharma — Founder and Principal Security Engineer at Aceloking

Manish Sharma

Founder, Aceloking

Technical Depth

Cloud Security

AWS, GCP, and Azure posture review. IAM policy analysis, storage exposure, network misconfigurations, and container security: prioritized by business impact, not scanner noise.

DevSecOps & Pipeline Security

CI/CD pipeline hardening, secrets detection, IaC scanning, and SAST toolchain setup. Security baked into your build process, not bolted on after deployment.

Threat Modeling

Architecture-grounded STRIDE analysis. Every attack surface mapped, every critical path documented: with a Remediation Blueprint for each finding, not a theoretical risk register.

AppSec & Penetration Testing

Manual secure code review plus network, web application, and API penetration testing: the way an attacker would actually approach your stack, not a scanner export.

How This Operation Runs

Blueprints, Not Code

Aceloking analyzes, identifies, and prescribes. Your engineering team deploys. This is a deliberate boundary that keeps accountability clear.

Async First

No required calls, no scheduling overhead. Work is submitted and returned. You run your business. Results arrive in your preferred channel.

Not an Audit Firm

Aceloking analyzes, tests, and prescribes. Certification always comes from an independent accredited auditor, never from Aceloking.

Honest Scope

If something is outside the service boundary, it is said immediately. Nothing is absorbed silently or billed for later.

Stop Losing Enterprise Deals Over Security Questions.

Subscribe today. Your first Remediation Blueprint arrives within 72 hours of your first request: AI-accelerated, senior-engineer-reviewed, plain English your team can act on.

View Services Ask a Question