About Me

My introduction

Penetration Tester with 4 years of experience in web app and network security. Skilled in using various security tools to identify vulnerabilities and deliver effective solutions. Detail-oriented and up-to-date with the latest cybersecurity trends.

PenTesting

Metasploit Cobalt Strike Sliver Impacket BurpSuite Tenable Kali Linux MacOS Windows Rubeus CrackMapExec Active Directory OWASP Top 10

Coding

Python JAVA C++ SQL HTML CSS

Domains

Social Engineering Penetration Testing Web Application Testing

Work Experience

Tennessee Valley Authority

  • Helped establish and manage a government Vulnerability Disclosure Program
  • Conducted various offensive cybersecurity engagements, including penetration tests
  • Addressed client concerns and managed escalations effectively
  • Monitored and resolved issues affecting cybersecurity engagements
  • Executed Breach and Attack Simulation (BAS) assessments to improve alerting
  • Assisted in deploying new security solutions and initiatives
  • Managed and created information security metrics and reporting using Python, SQL, and PowerBI
  • Led and coordinated penetration testing engagements
  • Enhanced the social engineering program with advanced engagements and remediation
  • Performed threat simulations such as password sprays and kerberoasting
  • Automated tasks using Python scripting
  • Created and updated documentation to communicate results clearly
  • Coordinated with business and cybersecurity leadership during Red Team activities
  • Presented Red Team findings to other power companies, offering technical insights
  • Conducted vulnerability assessments to identify weaknesses and recommend improvements

NetSPI

  • Leveraged industry-standard tools, including BurpSuite, CrackMapExec, and Metasploit, to conduct comprehensive security testing and identify vulnerabilities
  • Assessed applications rigorously to uncover and analyze existing security vulnerabilities
  • Delivered clear, actionable vulnerability reports, enhancing stakeholders' understanding and response strategies
  • Collaborated with team members and independently conducted thorough security assessments to ensure robust evaluation
  • Applied expertise in Active Directory and Web Application penetration testing to identify and address security weaknesses effectively

Certifications

PNPT

CISA RVA

CRTO

Projects

Sentinel Blue -
Unpublished

Missile Defence Agency Scheduler -
Unpublished

Custom Phishing Dashboard -
Unpublished