Jagdeep Singh
AppSec engineer by day, bug bounty hunter by night, teacher on weekends. Building Encrypticle to be the security education path he wishes existed when he was starting out.
From dev to defender.
Jagdeep started as a developer — JavaScript, Node, Python, ~3 years across frontend and backend work. The pivot to security started in the last two years of his B.Tech, when he stumbled into a CTF and lost a weekend to it. Then another. Then a full month.
His first security work was VAPT — vulnerability assessments and penetration testing — on internal apps and networks. From there: web application security, then API security, then Active Directory red teaming for enterprise environments. Along the way, five certifications and thousands of hours on platforms he now teaches from.
The teaching started because of DMs. Indian juniors asking how to break into the field. He kept typing the same answers, so eventually he pointed a camera at himself and started recording. YouTube first. Then a cohort. Then a platform. That's Encrypticle.
Five certifications. One more coming.
Each cert covers material Jagdeep actively uses in his day job. They're on the wall because they map to real work — not because they look good on a résumé.
CEH
Certified Ethical Hacker
CRTP
Certified Red Team Professional
PWPA
Practical Web Pentest Associate
APIsec CP
APIsec Certified Practitioner
CRTA
Certified Red Team Analyst
OSCP+
Offensive Security Certified Professional (updated version). Targeting Q1 2027.
Real submissions, every week.
Bug bounty isn't a background line item — it's an ongoing practice. Reports go in across all four major platforms, and the war stories that come out of those submissions become teaching material for the next cohort.