About
Results-driven Cybersecurity Analyst with 2+ years of experience in penetration testing, vulnerability assessment, incident response, and security engineering. Proven expertise delivering end-to-end security solutions for enterprise clients with hands-on experience in OWASP Top 10, MITRE ATT&CK, NIST CSF, ISO/IEC 27001, and GDPR compliance frameworks. Adept across offensive and defensive domains with strong exposure to cloud security (AWS, GCP) and SIEM-based threat analysis using Splunk.
Skills & Expertise (42)
Work Experience
Security Engineering Project (via Capgemini)
Comcast – Device Security Agent Development
Present - Present
Designed C-based APIs with AppArmor policy enforcement and privilege separation, reducing attack surface across 500+ broadband and media client device endpoints. Conducted cryptographic validation (AES, RSA, ECC, 3DES, OpenSSL, certificate lifecycle management) ensuring full compliance with FIPS 140-3 and NIST SP 800-131A standards. Architected a scalable modular test orchestration framework with CSV-based dynamic execution and structured JSON output via cJSON for standardised, auditable test results.
Senior Analyst (Cybersecurity & Embedded Security)
Capgemini Engineering
May 2024 - Present
Conducted penetration testing and security assessments across 10+ client environments, identifying and remediating 20+ critical vulnerabilities per cycle aligned with OWASP Top 10 and MITRE ATT&CK frameworks. Led incident response and threat investigations across 30+ security events, analysing SIEM logs via Splunk to detect unauthorised activities, triaging findings by CVSS severity and tracking CVEs across client environments. Drove vulnerability assessments, risk reviews, and remediation tracking aligned with ISO/IEC 27001 controls, NIST CSF guidelines, and GDPR compliance requirements.
Education
Bachelor of Engineering – Information Technology - Datta Meghe College of Engineering
2019 - 2023 · Afghanistan
Certifications
ISO/IEC 27001 Lead Auditor
Udemy · 2025
OWASP Top 10
Udemy · 2025
Jr. Penetration Tester & Cybersecurity 101
TryHackMe · 2025
Web & Mobile Penetration Testing
Encryptic Cybersecurity Pvt. Ltd. · 2024
Cybersecurity Job Simulation
Mastercard · 2024
Cybersecurity Analyst
Tata Group · 2024
AWS Cloud Quest: Cloud Practitioner
· 2023