Explore Broken Authentication Mechanisms
Evidence Monday
Security Engineer & Learning Daily
Skilled in penetration testing across web, infrastructure, thick client, and OT environments. Strong background in detection engineering, SOC analysis, and incident response using Microsoft Sentinel and Defender for Endpoint. Experienced in AWS and Azure security implementations, with a solid understanding of risk and project management. Continuously advancing strategies for architecting secure environments.
Writing
View all postsExplore Broken Access Control Mechanisms.
OWASP Jucie Shop Sensitive Data Exposure
Projects
View all projectsThis project was done during my masters programme at the University of Trento, Italy. It entails detailed analysis of users experience using the PicsArt Application. It contains well structured GO Models, Sentiment analysis on feedback from users gotten from a survey, Traceability matrix comparing the features of System-as is and System-to be and Risk prioritization.
This repository contains the reports of some of the exercises and project done in my Security course. In this course we explored the OWASP top ten web application security vulnerabities in systems and wep applications. We exploited and added relevant patches where necessary. We used tools like OWASP Zap, explored web automation framweworks like selenium and static taint analysis on codes.
Experience
View full résumé
Security Engineer at TecAlliance Deployed and managed Microsoft Sentinel with AWS, Microsoft XDR, Nessus, and custom integrations. Built MITRE ATT&CK–aligned detections and automated playbooks to enhance incident response. Led vulnerability management, patching automation, and phishing defense (including AI-driven vishing simulations). Strengthened AWS security visibility, and mentored engineers on secure coding and SOC practices.
R&D Cyber Security Tester @ Siemens Researched Linux and IoT firmware security, including FirmAE, PANDA, and FreeRTOS reverse engineering. Conducted penetration testing on embedded devices (MQTT vulnerability discovery) and supported secure design for engineers. Hands-on with Docker container testing and Siemens S7-1500 PLC firmware deployment.