

Application Security professional with eCPT certification and practical focus on secure code review, web application testing, and vulnerability assessment. Applies OWASP Top 10 knowledge to uncover SQLi, XSS, CSRF, SSRF, broken access control, and business logic issues, then translates findings into clear remediation guidance for developers. Uses Python, Bash, Burp Suite, OWASP ZAP, Nmap, and SQLmap to support security testing and automate repeatable checks.
Secure code review
Threat modeling
Vulnerability assessment
Penetration testing
API security testing
Static analysis
Dynamic analysis
CI/CD security
Cloud security
Container security
Security remediation
Risk assessment
Technical documentation
Cross-functional collaboration
Attention to detail