About
Application security analyst with hands-on experience across internships, bug bounty programs, and production systems. Proven track record of identifying and responsibly disclosing critical vulnerabilities including authentication flaws, injection risks, and business logic issues. Recognized in Royal Schiphol Group Hall of Fame. Strong understanding of OWASP Top 10, secure coding practices, and real-world exploitability assessment.
Skills & Expertise (18)
Work Experience
Bug Bounty Researcher
Independent Security Research
Oct 2024 - Present
Identified and responsibly disclosed critical vulnerabilities in production systems at TCS, Cisco, Infosys, and Royal Schiphol Group. Analyzed authentication mechanisms, API security, and business logic to uncover exploitable flaws in live applications. Assessed real-world impact and exploitability providing clear remediation guidance.
Technical Research Intern – Cybersecurity
Student Tribe
May 2025 - Present
Developed security training modules covering OWASP Top 10 vulnerabilities, injection techniques, and authentication security. Created practical labs teaching students to distinguish theoretical risks from exploitable vulnerabilities. Mentored students in penetration testing methodologies and secure development practices.
Game Tester Intern
Nextwhat Games Tech LLP
Mar 2025 - Sep 2025
Identified and documented software bugs and security issues across gaming applications. Tested application behavior across multiple platforms ensuring consistent user experience.
Security Analyst Intern
Student Tribe
Jul 2025 - Nov 2025
Monitored security events detecting authentication bypass attempts, injection attacks, and anomalous application behavior in production systems. Conducted vulnerability assessments identifying critical OWASP Top 10 vulnerabilities including broken authentication and SQL injection. Evaluated exploitability of vulnerabilities to prioritize remediation based on real-world risk. Recommended patching strategies for application security flaws ensuring secure coding practices.
Education
B.Tech, Computer Science in Cybersecurity - CMR College of Engineering & Technology
2023 - 2027 · Afghanistan
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation