About
Experienced cybersecurity professional specializing in Vulnerability Assessment and Penetration Testing (VAPT) across web, API, and network environments, with a focused transition into Cloud Security. Hands-on experience with AWS security services including IAM, VPC, S3, CloudTrail, and GuardDuty. Combines an offensive security mindset with cloud security principles to identify misconfigurations, insecure architectures, and cloud-native attack vectors. Skilled in delivering structured security reports aligned with OWASP Top 10, CVSS, and industry compliance standards. Open to remote and on-site opportunities globally.
Skills & Expertise (29)
Work Experience
Cybersecurity Intern
Cryptus Cyber Security Pvt. Ltd.
May 2023 - Jul 2023
Executed penetration testing methodologies including reconnaissance, enumeration, and vulnerability analysis across simulated enterprise environments. Assisted in vulnerability scanning and documentation using Nmap, Nessus, and Burp Suite; supported remediation validation under senior analyst supervision.
Junior Analyst – VAPT
Anzen Technologies Pvt. Ltd.
Mar 2025 - Oct 2025
Conducted end-to-end VAPT engagements for web and API applications using Burp Suite Pro, OWASP ZAP, and Postman, identifying critical vulnerabilities across production environments. Discovered and validated high-severity vulnerabilities including SQL Injection, Cross-Site Scripting (XSS), IDOR, Broken Authentication, and Sensitive Data Exposure aligned with OWASP Top 10. Performed network-level vulnerability assessments using Nmap and Nessus; conducted packet analysis with Wireshark to identify anomalous traffic and lateral movement indicators. Identified insecure AWS S3 bucket configurations, misconfigured API Gateway endpoints, and Broken Object Level Authorization (BOLA) flaws in cloud-hosted applications. Authored detailed VAPT reports with proof-of-concept (PoC) evidence, CVSS-based severity ratings, and prioritized remediation recommendations; collaborated with development teams to verify fixes.
Education
PG Diploma in Cyber Security (PGDCS) - BSE Institute Ltd., University of Mumbai
2024 - 2025 · Afghanistan
Master of Computer Applications (MCA) – Cyber Security Specialization - Poornima University
2022 - 2024 · Afghanistan
Bachelor of Computer Applications (BCA) - Poornima University
2016 - 2019 · Afghanistan
Certifications
No certifications added yet
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Need Sponsorship
Relocation
Not Open to Relocation
Skills (29)
Click a skill to find developers with the same skill