Open to opportunities · Mumbai / Hybrid

.NET developer building secure, reliable FinTech backends.

I’m Satyam Gupta — close to three years developing and securing backend systems for a FinTech equity-research ERP: REST APIs, JWT-secured endpoints, and tuned SQL Server. Comfortable across the full backend lifecycle, from database design through API delivery.

  • C#
  • ASP.NET Core
  • Web API
  • EF Core
  • Dapper
  • SQL Server
Portrait of Satyam Gupta, .NET developer
Senior Developer Equitec Software Technology
Experience
~3 yrs
FinTech / backend
Backend
ASP.NET Core
C# · Web API · MVC
Database
SQL Server
T-SQL · tuning · 2022
Data access
EF Core · Dapper
CRUD + reporting
Focus
API & Security
JWT · RBAC · OWASP

01 — About

Backend systems that have to be correct.

I build the parts of software that carry real weight — authentication, authorization, data access, and the SQL underneath them. My day-to-day is ASP.NET Core and SQL Server inside a FinTech product, where a leaky endpoint or a slow query isn’t just a bug, it’s a security and compliance concern.

At Equitec I develop and maintain the CRM module’s REST APIs on an equity-research ERP: securing endpoints with JWT and role-based authorization, shaping the SQL Server schema and stored procedures, and contributing to an asynchronous report-distribution workflow that delivers research to clients over email and — via the Twilio API — WhatsApp.

I choose tools deliberately: EF Core for standard CRUD, Dapper for the performance-sensitive reporting queries. I take application security seriously — remediating OWASP Top 10 and VAPT findings like SQL injection and XSS — and I value code the next person can read. Right now I’m deepening modern ASP.NET Core internals, advanced EF Core, and SOLID / design patterns.

  • Based in Mumbai, India — open to Mumbai / hybrid
  • Domain FinTech · equity research · ERP backend
  • Languages English (Professional) · Hindi (Native)

02 — Experience

Where I’ve been building.

  1. Senior Developer

    Equitec Software Technology Pvt. Ltd. · Mumbai

    Sep 2023 — Present

    FinTech product company building an equity-research ERP platform for institutional broking clients.

    • Developed & maintained the CRM module’s RESTful APIs using ASP.NET Core Web API, Entity Framework Core and SQL Server 2022 — securing endpoints with JWT authentication and role-based authorization.
    • Optimised SQL Server stored procedures and queries through index tuning, execution-plan analysis and query restructuring to improve report-generation performance.
    • Built & maintained web modules on ASP.NET MVC and ASP.NET Core, covering research-content workflows and multi-level approval processes.
    • Contributed to an asynchronous report-distribution process scheduled via Windows Services and SQL Server Agent Jobs — delivering research to subscribed clients by email, and adding WhatsApp delivery through the Twilio API.
    • Remediated OWASP Top 10 and VAPT audit findings — SQL injection, XSS and session-management issues — to meet security and compliance requirements.
    • Implemented role-based access control (RBAC) for Analyst, Compliance and Admin roles with per-module permission handling.
    • Used EF Core and Dapper deliberately — EF Core for standard CRUD, Dapper for performance-sensitive read / reporting queries.
    • Participated in code reviews and supported junior developers on ASP.NET Core fundamentals and coding standards.
    • ASP.NET Core
    • ASP.NET MVC
    • Web API
    • C#
    • EF Core
    • Dapper
    • SQL Server 2022
    • JWT / RBAC
    • Windows Services
    • Twilio

03 — Selected work

The project, as a case study.

This is a proprietary FinTech product — code and live demos are under NDA, so this focuses on the engineering problem and what I owned.

Equity-Research ERP Platform

FinTech backend · CRM module owner

Problem

Institutional broking clients needed to author equity research, move it through multi-level compliance approval, and distribute it reliably to subscribers.

What I built

The CRM module’s REST APIs, platform-wide RBAC, and contributions to an asynchronous report-distribution workflow across email and WhatsApp.

My role

Owned the CRM module REST APIs, implemented RBAC, and added Twilio-based WhatsApp delivery alongside the existing email channel.

Engineering

REST API design · JWT auth · RBAC · EF Core (CRUD) + Dapper (reporting) · background processing (Windows Services + SQL Agent) · SQL performance tuning.

Content authoring workflow Multi-level approval Client distribution Email + WhatsApp (Twilio) Per-module permissions
  • ASP.NET Core
  • Web API
  • EF Core
  • Dapper
  • SQL Server
  • JWT

04 — Skills

The toolkit, organised.

/01 Languages & Web

  • C#
  • T-SQL
  • JavaScript
  • HTML5
  • CSS3
  • jQuery
  • AJAX
  • JSON
  • Razor Views

/02 .NET & Frameworks

  • ASP.NET Core MVC
  • ASP.NET Web API
  • .NET Core Web API
  • ASP.NET Web Forms
  • .NET Framework 4.x
  • LINQ
  • Dependency Injection

/03 Databases & ORM

  • SQL Server 2022
  • Stored Procedures
  • Views
  • Indexes
  • Transactions
  • Query Optimization
  • Execution Plans
  • EF Core
  • Dapper

/04 Security

  • OAuth
  • JWT Authentication
  • RBAC
  • OWASP Top 10
  • VAPT Remediation
  • Content Security Policy
  • SQLi & XSS Prevention

/05 Tools

  • Visual Studio
  • SSMS
  • Postman
  • Git
  • IIS

/06 Practices

  • Agile / Scrum
  • Code Reviews
  • SDLC
  • Production Support
  • Twilio (WhatsApp API)

05 — Engineering approach

How I think about the work.

Principles I actually apply — grounded in what I’ve shipped, not aspirational labels.

Secure by default

Auth and authorization are design inputs, not afterthoughts. JWT, RBAC and OWASP-aware coding are how I work in a FinTech product that faces VAPT audits.

Data that performs

I read execution plans before I add indexes, and tune stored procedures by understanding the query — not by guessing.

Right tool for the read

EF Core keeps standard CRUD clean; Dapper handles the performance-sensitive reporting paths. Each earns its place instead of one ORM everywhere.

Work off the request path

Report distribution runs asynchronously on Windows Services and SQL Agent jobs, so slow or bulk work never blocks the API.

Readable & reviewed

I take part in code reviews and help juniors on ASP.NET Core fundamentals. Maintainable beats clever — code is read far more than it’s written.

Always levelling up

Currently deepening ASP.NET Core internals (middleware, DI lifetimes), advanced EF Core, and SOLID / design patterns.

Strong & shipping

  • ASP.NET Core & Web API
  • SQL Server & query tuning
  • App security (JWT · RBAC · OWASP / VAPT)

Currently deepening

  • ASP.NET Core internals (middleware, DI lifetimes)
  • Advanced EF Core
  • SOLID & design patterns

Growing toward

  • Cleaner architecture ownership
  • Automated testing as habit
  • Cloud-hosted .NET delivery

06 — Contact

Have a role, project, or backend challenge in mind?

I’m open to .NET / backend roles in Mumbai or hybrid. The fastest way to reach me is email — I read every message.

Opens your mail client with the message ready to send.