About
Junior Penetration Tester with 1 year of experience in Web and Network Penetration Testing and VAPT, skilled in identifying OWASP Top 10 vulnerabilities (SQLi, XSS, IDOR, Authentication Bypass) using Burp Suite, Nmap, Metasploit, Nessus, and Wireshark. Proficient in Python/Bash automation with strong knowledge of Linux, TCP/IP, and SSL/TLS. Bringing 2.5 years of infrastructure experience at Accenture; ISC2 CC and Google Cybersecurity Professional Certificate holder, eJPT Certificate holder. Seeking Penetration Tester or Application Security roles.
Skills & Expertise (28)
Work Experience
Infra Managed Service Associate
Accenture
Jun 2023 - Nov 2025
Administered and maintained Kafka and IBM MQ clusters, overseeing setup, configuration, patching, and system performance. Implemented security controls including SSL/TLS encryption, authentication, and access policies to safeguard message queues. Coordinated with Linux and security teams to integrate middleware hardening into CI/CD pipelines. Ensured high system availability with proactive monitoring and automated health checks. Spearheaded process improvements by redesigning daily Kafka and IBM MQ operational workflows, leading to a 30% reduction in incident resolution time over 12 months using ServiceNow and Ansible automation tracking metrics.
Junior Penetration Tester
Cyfosis Cyber Solutions
Apr 2022 - May 2023
Performed manual web and network penetration testing on simulated client systems following OWASP and NIST methodologies. Executed vulnerability scanning and exploitation using Burp Suite, Nmap, and Metasploit, identifying flaws such as SQLi, XSS, and insecure authentication. Assisted in threat modeling, post-exploitation, and privilege escalation exercises in controlled environments. Collaborated in internal capture-the-flag (CTF) challenges and red team simulations. Conducted vulnerability assessments for 12+ web applications over a 6-month period using Nessus and OpenVAS, pinpointing an average of 18 critical and high-severity vulnerabilities per project to support remediation strategies and compliance tracking. Analyzed network traffic over a 6-month period with IDS/IPS tools (Snort, Suricata) to detect and validate intrusion attempts during 15 penetration testing projects, enabling clients to reduce false positives by 30% and enhance incident response protocols.
Education
Bachelor of Computer Applications (BCA) - Marian College Kuttikkanam (Autonomous)
- 2023 · Afghanistan
Certifications
Google Cybersecurity Professional Certificate
Coursera · 2026
eJPT
INE Security · 2026
ISO/IEC 27001:2022 Lead Auditor
Mastermind · 2026
Certified in Cybersecurity
ISC2 · 2025
Interested in this developer?
Profile Score Breakdown
Profile Overview
Availability Details
Visa Status
Citizen
Relocation
Open to Relocation