About
Security analyst with a year of hands-on experience in security testing, log analysis, and incident triage across 30+ production environments. Strong on the OWASP Top 10 and attacker techniques, with working knowledge of SIEM, MITRE ATT&CK, and phishing and malware analysis. CompTIA Security+ certified. Comfortable in 24x7 rotational SOC shifts and available to join immediately. Looking to apply an attacker's mindset to alert monitoring, detection, and incident response as a SOC Analyst.
Skills & Expertise (46)
Work Experience
Security Researcher
Independent
Jan 2026 - Present
Operate a production Azure honeypot 24x7, capturing live attacker activity. Triage the telemetry daily, classify each event, and map techniques to MITRE ATT&CK across all 14 enterprise tactics — the same detect-triage-classify loop a SOC runs on real alerts. Dissect phishing, malware, and web-application attacks against the honeypot, then document attacker TTPs and the detection logic a blue team uses to catch them. Reverse-engineered the Axios npm supply-chain attack (cross-platform RAT delivery), mapping the full compromise window and 3 distinct detection signals for defensive teams. Developed a phishing-detection pipeline in Python (scikit-learn, NLTK) reaching ~90% accuracy across a labelled dataset of phishing and legitimate emails. Authored 5 technical articles on cloud threat detection, supply-chain attacks, and AI/LLM threats, read by a combined security audience on Medium. Completing the TryHackMe SOC Level 1 path and HackTheBox defensive labs.
Penetration Tester L1
Qualysec Technologies Pvt. Ltd.
Jan 2025 - Oct 2025
Triaged security findings across 30+ production environments — classified severity, validated false positives, and escalated confirmed issues to client security teams following set procedures. Owned 120+ high-risk findings end to end: intake, investigation, remediation tracking with engineering teams, fix validation, and SLA-based closure. Correlated application, security, and access logs (including AWS CloudTrail) across engagements to surface suspicious patterns, anomalies, and indicators of compromise — the same analytical workflow as SOC alert triage. Executed 50+ web, API, and AWS cloud security assessments covering the OWASP Top 10 (SQLi, XSS, CSRF, SSRF, IDOR), authentication flaws, and misconfigurations. Uncovered a previously undocumented DOM-based vulnerability in a client application and drove the full fix: reproduction, root-cause analysis, validation, and secure-coding guidance. Produced 50+ technical reports with reproduction steps and remediation roadmaps, communicating risk clearly to both engineering teams and non-technical stakeholders.
Education
B.Sc. in Information Technology & Management - Lakshya Institute of Technology
- 2024 · Afghanistan
Certifications
CompTIA Security+
· 2024
Google Cybersecurity Professional Certificate
· 2024
HackTheBox — Hacker Rank; Certified CTF Player, Cyber Apocalypse
· 2023
Interested in this developer?
Profile Score Breakdown
Profile Overview
Skills (46)
Click a skill to find developers with the same skill