About
Results-driven Cyber Security Analyst with comprehensive hands-on experience in offensive security, threat intelligence analysis, and security operations. Proficient in full-scope penetration testing across web applications, networks, and operating systems. Expertise in leveraging SIEM platforms for proactive threat hunting, incident response, and security monitoring. Certified in CEH and CSP with demonstrated ability to identify, analyze, and mitigate critical vulnerabilities across enterprise environments. Passionate about automating security processes and developing practical cybersecurity training solutions to strengthen organizational security posture.
Skills & Expertise (93)
Work Experience
Cyber Security Analyst
Thincnext
Jun 2025 - Present
Perform vulnerability assessments and penetration testing across web applications, networks, and systems using Nmap, Burp Suite, Metasploit, and OpenVAS, identifying critical CVEs (CVSS 7.0+) and responding to 15+ security incidents monthly. Leverage threat intelligence and OSINT techniques to identify emerging attack vectors and APT indicators, reducing mean time to detect (MTTD) by 35%. Utilize SIEM platforms (Splunk, QRadar) for log correlation, anomaly detection, and threat hunting across 10,000+ enterprise endpoints. Develop incident response playbooks and security hardening measures for common attack scenarios including ransomware, phishing, and lateral movement. Produce technical and executive assessment reports and conduct security training for development teams, improving code security metrics by 40%.
Cybersecurity Practitioner & Ethical Hacker
Personal Penetration Testing Lab
Jan 2024 - May 2025
Built and maintained comprehensive penetration testing lab environment with 15+ vulnerable machines (HackTheBox, TryHackMe, VulnHub, DVWA) for hands-on security research and skill development. Successfully compromised 35+ machines using diverse exploitation techniques including SQL injection, cross-site scripting (XSS), privilege escalation, buffer overflow attacks, and Active Directory exploitation. Developed custom Python and Bash automation scripts for reconnaissance, vulnerability scanning, and post-exploitation tasks, reducing manual testing time by 50%. Documented penetration testing methodologies, attack chains, and detailed write-ups for 25+ machine compromises, creating a personal knowledge base for continuous learning.
Education
Bachelor of Computer Applications (BCA) - Sheshadhripuram Degree College
2021 - 2025 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Open to Relocation
Skills (93)
Click a skill to find developers with the same skill