Certified Ethical Hacker (C|EH) and Penetration Tester with 8+ years of experience.
Providing Professional Vulnerability Assessment services:
- Web Application Security Audit
- Server Security Audit
- WordPress Security Audit
- Endpoint Security Audit
- Software Security Audit
- IoT Security Audit
- SCADA Security Audit
- Compliance Audits: OWASP TOP 10, ISO 27001
- Blockchain / Smart Contract Security Audit
In my work follow according to the best cybersecurity practices, standards, methodologies:
- OWASP TOP 10
- SANS TOP 25 Risks
- ISO/IEC 27001, 9001
- ITAF (The Information Technology Assurance Framework)
- COBIT (Control Objectives for Information and Related Technology)
- PRINCE2
- PMBOOK
- ITIL (IT Infrastructure Library)
- GDPR
- HIPAA
- Information Systems Security Assessment Framework (ISSAF)
- Web Application Security Consortium (WASC)
My vulnerability assessment tools:
- DAST Scanners: Acunetix Vulnerability Scanner, NMAP, Wireshark, Nuclei, Nikto, WhatWeb, Qualys Web Application Scanner, Rapid1 Nexpose, Tenable Nessus, OWASP Zap, OpenVAS, Detectify, ImmuniWeb;
- SAST Scanners: Snyk, Veracode, SonarQube, Checkmarx, StackHawk;
- Linux Auditing: Lynis, Otseca, Nix-auditor, Lunar, testssl, SSHsec, LSAT, Sysechk, Orthrus, Spectre Meltdown Checker, Rkhunter, mysqltuner, smartctl;
- Malware Analysis: IDA Pro, GHIDRA, x64dbg, VirusTotal, HybridAnalysis, Hexeditor, Ollydbg, Radare2.