About
Security-focused QA professional with 4 years of experience in web, mobile, and API testing, now transitioning into cybersecurity as a SOC Analyst. Brings a strong foundation in anomaly detection, structured defect documentation, API security validation, and systematic test analysis — all directly transferable to security monitoring and incident triage. Proficient in log analysis, threat intelligence lookups, and SIEM fundamentals through active hands-on practice on TryHackMe and home lab environments. Committed to protecting systems through disciplined, detail-oriented investigation.
Skills & Expertise (34)
Work Experience
QA Trainee
Bajaj Finserv
Sep 2021 - Sep 2022
End-to-end validation on production systems: Executed Smoke, Sanity, Functional, and UAT cycles across customer-facing financial workflows; applied structured testing methodologies directly applicable to SOC alert triage and validation. Structured test documentation: Maintained 200+ test cases, execution reports, and defect logs in Azure DevOps — demonstrates the documentation discipline required for SOC incident reporting and audit trails. Cross-platform mobile testing: Used pCloudy and physical devices to validate Android and iOS app behaviour — built understanding of mobile application security surface areas. Agile sprint collaboration: Contributed to sprint planning, requirement clarification, and continuous feedback loops — directly applicable to SOC team communication and shift handover workflows.
Web QA Analyst
BeyondWalls
Oct 2022 - Mar 2026
Security-focused API validation: Used Postman to test API endpoints for authentication failures, improper status codes, and unexpected data exposure — equivalent to OWASP API security testing principles. Anomaly detection & defect documentation: Identified and documented 30%+ reduction in production defects through structured root-cause analysis and risk-based prioritisation; defect reports mirror incident documentation used in SOC environments. Cross-surface attack area testing: Validated functionality and UI integrity across 2,500+ real estate project pages on 40+ client landing pages across multiple browsers and devices, building an understanding of web application attack surfaces. Collaborative triage in Agile sprints: Worked directly with developers and product owners to escalate, prioritise, and resolve defects — mirrors SOC Tier 1 escalation and communication workflows. Regression & smoke testing: Designed and executed comprehensive regression test suites ensuring no regressions after patches — analogous to post-incident verification in security operations.
Education
Bachelor of Engineering — Computer Science - Genba Sopanrao Moze College of Engineering
- 2021 · Afghanistan
Diploma — Computer Science
- 2017 · Afghanistan
Certifications
CompTIA Security+ (SY0-701)
CompTIA · 2026