Back to Developers
Paul Joseph

Paul Joseph

Junior Penetration Tester

Kottayam, Kerala, India
85
Profile Score

About

Junior Penetration Tester with 1 year of experience in Web and Network Penetration Testing and VAPT, skilled in identifying OWASP Top 10 vulnerabilities (SQLi, XSS, IDOR, Authentication Bypass) using Burp Suite, Nmap, Metasploit, Nessus, and Wireshark. Proficient in Python/Bash automation with strong knowledge of Linux, TCP/IP, and SSL/TLS. Bringing 2.5 years of infrastructure experience at Accenture; ISC2 CC and Google Cybersecurity Professional Certificate holder, eJPT Certificate holder. Seeking Penetration Tester or Application Security roles.

Skills & Expertise (28)

Burp Suite Advanced
8.3/10
3.5
Years Exp
Web Application Testing Advanced
8.1/10
3.5
Years Exp
Metasploit Advanced
8.0/10
3.5
Years Exp
API Testing Advanced
7.6/10
3.5
Years Exp
Infrastructure testing Intermediate
7.4/10
3.5
Years Exp
Log Analysis Team Collaboration Documentation and Reporting Continuous learning attitude Analytical Thinking Python Php JavaScript HTML Bash OWASP Top 10 Microsoft Azure LINUX Kafka IBM MQ AWS WIRESHARK Nmap Nikto Nessus Thick client testing Network Testing IoT testing

Work Experience

Infra Managed Service Associate

Accenture

Jun 2023 - Nov 2025

Administered and maintained Kafka and IBM MQ clusters, overseeing setup, configuration, patching, and system performance. Implemented security controls including SSL/TLS encryption, authentication, and access policies to safeguard message queues. Coordinated with Linux and security teams to integrate middleware hardening into CI/CD pipelines. Ensured high system availability with proactive monitoring and automated health checks. Spearheaded process improvements by redesigning daily Kafka and IBM MQ operational workflows, leading to a 30% reduction in incident resolution time over 12 months using ServiceNow and Ansible automation tracking metrics.

Junior Penetration Tester

Cyfosis Cyber Solutions

Apr 2022 - May 2023

Performed manual web and network penetration testing on simulated client systems following OWASP and NIST methodologies. Executed vulnerability scanning and exploitation using Burp Suite, Nmap, and Metasploit, identifying flaws such as SQLi, XSS, and insecure authentication. Assisted in threat modeling, post-exploitation, and privilege escalation exercises in controlled environments. Collaborated in internal capture-the-flag (CTF) challenges and red team simulations. Conducted vulnerability assessments for 12+ web applications over a 6-month period using Nessus and OpenVAS, pinpointing an average of 18 critical and high-severity vulnerabilities per project to support remediation strategies and compliance tracking. Analyzed network traffic over a 6-month period with IDS/IPS tools (Snort, Suricata) to detect and validate intrusion attempts during 15 penetration testing projects, enabling clients to reduce false positives by 30% and enhance incident response protocols.

Education

Bachelor of Computer Applications (BCA) - Marian College Kuttikkanam (Autonomous)

- 2023 · Afghanistan

Certifications

Google Cybersecurity Professional Certificate

Coursera · 2026

eJPT

INE Security · 2026

ISO/IEC 27001:2022 Lead Auditor

Mastermind · 2026

Certified in Cybersecurity

ISC2 · 2025

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 5/15
💰 Rate 0/5
🏆 Certs 5/5
Verified 5/5
Total Score 85/100

Profile Overview

Member sinceMar 2026

Availability Details

Visa Status

Citizen

Relocation

Open to Relocation

Skills (28)

Burp Suite Web Application Testing Metasploit API Testing Infrastructure testing Log Analysis Team Collaboration Documentation and Reporting Continuous learning attitude Analytical Thinking +18 more