Cybersecurity Analyst with 4+ years of experience across penetration testing, VAPT, and GRC compliance auditing for web, mobile, API, and network environments.. Hands-on experience with Red and Blue Team operations, Active Directory attack paths, and compliance frameworks including SOC 2, ISO 27001, GDPR, and HIPAA, NCA ECC, SAMA CSF, SAMA CFF.
With a Bachelor of Science in Computer Software Engineering from COMSATS University Islamabad, I currently work as an Information Security Consultant at SecurEyes. My role focuses on enhancing cybersecurity frameworks and conducting security assessments to protect organizations from potential threats.
My career has emphasized vulnerability testing, penetration testing, and implementing security strategies. I have developed expertise in tools such as Nmap and Burp Suite, which support offensive security and compliance initiatives. Motivated by a passion for safeguarding digital assets, I strive to contribute to robust and secure infrastructures.
Mar2025-Sep2026
SecurEyes
Conducted penetration testing across 20+ web, mobile (iOS/Android), and API applications for clients spanning multiple industry sectors,
identifying critical, high, and medium-severity vulnerabilities.
Apr 2024 – Mar 2025
Angular Quantum
Performed comprehensive control reviews and assessments against SOC 2, GDPR, HIPAA, NCA ECC, SAMA CSF, SAMA CFF and ISO 27001
frameworks, developing test scripts to evaluate control effectiveness
Jan 2023 – Mar 2024
Trillium Pvt Ltd
Conducted network and web application penetration tests for clients in financial services, healthcare, and e-commerce, identifying SQL injection, XSS, and authentication bypass issues.
Jan 2022 – Dec 2022
Fiverr & Upwork
Helped clients strengthen API security posture and align with industry best practices and standards.
2020 – 2024
Comsats University