[ SECURITY / PROOF INDEX ]

AVAILABLE FOR SECURITY ROLES


Evidence first.

I work across application security, offensive testing, and secure product engineering. Because I also build full-stack systems, I approach security from both sides: how software is assembled and how its boundaries fail.

[ 01 ]

Operating focus

Three working areas. Details live with their evidence, not repeated here.

01

Application security

Secure API design, auth boundaries, tenant isolation, input validation, and threat-led review.

02

Offensive testing

Web and API assessment, attack-surface analysis, vulnerability validation, and pentest workflows.

03

Secure engineering

Security controls built into full-stack products, cloud deployments, and AI-assisted systems.

[ 02 ]

Field record

Role context and published writing. Full histories stay on their own pages.

[ 03 ]

Skills / toolchain

Working capabilities grouped by security function and engineering context.

[ Offensive security ]
  • Burp Suite
  • Metasploit
  • Kali Linux
  • Linux
  • Wireshark
  • OWASP Top 10
  • Web/API testing
  • Attack-surface analysis
[ Application security ]
  • Secure APIs
  • Authentication & authorization
  • Input validation
  • PostgreSQL RLS
  • Threat modeling
  • Secure SDLC
[ AI security ]
  • LLM security
  • Prompt injection
  • Agentic workflows
  • MCP security
  • AI pentesting SaaS
[ Engineering ]
  • TypeScript
  • Python
  • Next.js
  • Svelte
  • Node.js
  • FastAPI
  • PostgreSQL
  • Docker
  • Cloudflare
  • Git
[ 04 ]

Currently pursuing

Active training paths and lab work. Status reflects ongoing study, not completed credentials.

01

HTB Certified Penetration Testing Specialist path

Hack The Box

Currently pursuing
02

TryHackMe AI Security path

TryHackMe

Currently pursuing
03

TryHackMe DevSecOps path

TryHackMe

Currently pursuing
04

Android Security

Self-study and labs

In Progress

[ NEXT OPERATION ]

Need someone who can test the boundary and build it better?

Start conversation