I am a DevSecOps Engineer, Web & Active Directory Pentester, and QA Specialist with a strong focus on helping organizations build secure, reliable, and resilient systems.
My work focuses on identifying security weaknesses before attackers do and helping teams integrate security into every stage of their development and deployment processes. I combine offensive security techniques with DevOps and quality assurance practices to ensure applications and infrastructures remain both secure and stable.
As a Web Pentester, I perform vulnerability assessments and penetration tests on web applications following industry best practices such as the OWASP Top 10. I identify issues such as injection flaws, authentication weaknesses, misconfigurations, and other security risks, then provide clear and actionable remediation guidance.
I also specialize in Active Directory security assessments, including privilege escalation paths, misconfigurations, and domain security weaknesses. My goal is to help organizations strengthen their internal infrastructure and reduce the risk of lateral movement and domain compromise.
From a DevSecOps perspective, I help teams integrate security into their CI/CD pipelines and development workflows. This includes implementing automated security testing, vulnerability scanning, secure configuration practices, and infrastructure hardening to reduce risk while maintaining development speed.
In addition to security, I bring experience in Quality Assurance (QA), ensuring that applications are tested for stability, functionality, and performance before release. This allows me to contribute not only to security but also to the overall reliability and quality of software systems.
My services include:
I deliver detailed reports, practical remediation steps, and clear communication to help teams quickly understand and fix security issues.
If you are looking for a professional who can help you secure your applications, infrastructure, and development pipeline, I would be glad to collaborate with you.