π Cybersecurity Consultant | DevSecOps Engineer | Pentester
I'm a Network and Cybersecurity Engineer specialized in:
β
Penetration Testing & Code Review β Offensive security & vulnerability assessment.
β
DevSecOps & Secure Development β Automating security in CI/CD pipelines.
β
PCI DSS & PCI SSF Compliance β Assisting organizations in securing payment environments and achieving compliance.
β
Bug Bounty Hunting β Active on HackerOne & Bugcrowd, discovering and responsibly reporting vulnerabilities.
β
Consulting β Assisting organizations in security solution integration and build secure infra architectures .
- Red Teaming & Vulnerability Assessment: Proficient in tools like Burp Suite, Nmap, Metasploit, OWASP ZAP, Nikto, SQLmap.
- Web & API Security: Expertise in testing OWASP Top 10 & API security misconfigurations.
- Network Pentesting: Skilled in MITM attacks, Wireshark analysis, IDS/IPS evasion techniques.
- Security Assessments & Gap Analysis for PCI DSS (infrastructure security, cardholder data protection).
- Secure Software Development & Assessment for PCI SSF, ensuring compliance for payment software solutions.
- Pentesting & Security Audits aligned with PCI Security Standards.
- Hands-on experience with Elasticsearch, Kibana, Logstash, Filebeat, Suricata for log analysis and threat detection.
- Static & Dynamic Analysis: Semgrep, SonarQube, OWASP ZAP, Nessus, Trivy.
- Software Composition Analysis (SCA): OWASP Dependency-Check for detecting vulnerable dependencies.
- Vulnerability Management: DefectDojo for tracking security issues.
- CI/CD Security: Jenkins, GitLab CI/CD, Kubernetes, Helm, AWS Security Best Practices.
- Security Technologies: VPN, Firewalls, IDS/IPS, Fortigate configuration.
- Infrastructure Security: Active Directory, DNS, DHCP, FTP, server hardening (Windows/Linux).
- Languages: Python, Java, C, C++, PHP, MySQL, JavaScript, HTML/CSS.
- Automation & Infrastructure: Ansible, Bash scripting for security automation.
π Certified in Cybersecurity - (ISC)Β²
π Practical Ethical Hacking - TCM Security
π Jr Penetration Tester Path - TryHackMe
π Developing Secure Software - The Linux Foundation
π NSE 1, NSE 2, NSE 3 - Fortinet
π Certified Professional: Kaspersky Next EDR Optimum (047.12.6)
π Certified Professional: Kaspersky Automated Security Awareness Platform (080.03)
π Voice-over & Narration for audio and video projects.
π¬ Video Editing using Adobe Premiere, Filmora.
π¨ Graphic & Photo Editing with Canva.
π Reading & Continuous Learning in cybersecurity, software security, and ethical hacking.
πΉ Interested in collaboration or security projects? Feel free to reach out! π