Skill Assessments

This user has not passed any tests yet

Languages  English - People also viewed
*  [![Abidur Rahman](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_71486_1784568399.jpg) Abidur Rahman Process Automation & AI Integration Architect](https://jobicy.com/u/id71486.md)
*  [![Scott Lewis](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/05/avatar_63982_1779685672.jpg) Scott Lewis Senior Software Engineer](https://jobicy.com/u/id63982.md)
*  [![VITALII ZADOROZHNYI](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_72485_1785029117.jpg) VITALII ZADOROZHNYI Python Developer | Backend & Automation | FastAPI · Web Scraping · APIs](https://jobicy.com/u/id72485.md)
*  [![Aastha Singla](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_72277_1784904812.jpg) Aastha Singla Web Developer Intern](https://jobicy.com/u/id72277.md)
*  [![Edgar Daza](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_72034_1784811700.jpg) Edgar Daza AI-Assisted Software Engineer | Cross-Technology Development | LLM Integration | Process Automation](https://jobicy.com/u/id72034.md)
*  [![Pablo Alejandro Sanchez Moncada](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_71916_1784746135.jpg) Pablo Alejandro Sanchez Moncada Senior Full Stack Developer](https://jobicy.com/u/id71916.md)
*  [![Yeabsira Zelalem](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_71823_1784712504.jpg) Yeabsira Zelalem Software Engineer](https://jobicy.com/u/id71823.md)
*  [![Anny Herrera](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/avatar_71678_1784654820.jpg) Anny Herrera Civil Engineer](https://jobicy.com/u/id71678.md)

[All talent ↗](https://jobicy.com/talent.md)
* [Overview](#overview)
* [Portfolio](#portfolio)
* [Services](#services)

## About Me

I am a recent Master’s graduate with four years of hands-on experience in SOC operations, application security, and DevSecOps. Throughout my career, I have developed expertise in threat detection, secure code review, CI/CD pipeline security, and automation. I have a proven track record of reducing vulnerabilities and enhancing the security posture across complex environments.

I am highly skilled in collaborating across teams to drive cross-functional initiatives and deliver secure, scalable solutions. My technical proficiency includes programming in Python, PowerShell, C, SQL, and Bash, along with extensive experience using security tools such as Elastic SIEM, Metasploit, Burp Suite, and Palo Alto Firewall.

I have worked with cloud and DevSecOps platforms including AWS, Azure, Docker, Kubernetes, Terraform, Jenkins, and SonarQube. I am also knowledgeable in compliance frameworks such as NIST 800-53, ISO 27001, HIPAA, MITRE ATT&CK, and OWASP Top 10. I hold certifications including CompTIA Security+ and CySA+.

In my recent role as an Application Security Engineer, I conducted secure code reviews, implemented SAST scanning, and remediated numerous vulnerabilities. I have built secure data transfer services and enhanced authentication protocols using advanced technologies like SPIFFE-based mTLS and JWT authorization.

My internship experiences have strengthened my skills in log analysis, threat hunting, automation scripting, and incident response. I have contributed to improving alert fidelity and automating security workflows, which accelerated investigation processes and enhanced threat response capabilities.

I am passionate about continuous learning and have engaged in academic projects involving malware analysis, reverse engineering, SIEM and SOC home labs, forensic analysis, and secure CI/CD pipelines. I actively volunteer in cybersecurity communities, supporting event coordination and fostering professional networking.

I am eager to leverage my skills and experience to contribute to a forward-thinking organization focused on advancing security operations and protecting critical assets.

## Skills

### [Python](https://jobicy.com/talent/python.md)[SQL](https://jobicy.com/talent/sql.md)[JavaScript](https://jobicy.com/talent/javascript.md)[Kubernetes](https://jobicy.com/talent/kubernetes.md)[Docker](https://jobicy.com/talent/docker.md)[Azure](https://jobicy.com/talent/azure.md)[Jira](https://jobicy.com/talent/jira.md)[Terraform](https://jobicy.com/talent/terraform.md)[Agile](https://jobicy.com/talent/agile.md)[Automation](https://jobicy.com/talent/automation.md)[TCP IP](https://jobicy.com/talent/tcp-ip.md)[C](https://jobicy.com/talent/c.md)

## Experience

Application Security Engineer @ Shoptaki  July 2025 - Present Conducted secure code reviews and implemented SAST with Semgrep, scanning 15K+ lines of Python and C++ code; remediated 40+ vulnerabilities and reduced critical findings by 35%. Implemented SmartChain QUIC enhancements (Python, aioquic) to enable passwordless SmartID authentication, encrypted policy distribution, and low-latency TLS 1.3 communication. Built a Secure Data Transfer Service with SPIFFE-based mTLS and JWT authorization, enabling user-consented document exchange while ensuring compliance and privacy.

SOC Analyst Intern @ Motorola Solutions  April 2024 - Dec 2024 Ingested and analyzed security logs from Palo Alto firewalls and Docker containers for File Integrity Monitoring (FIM) using Elastic SIEM’s FileBeat and MetricBeat, enhancing incident response and threat identification. Created and tuned 20+ correlation rules in Elastic SIEM (KQL) to detect threats (e.g., lateral movement, credential abuse), improving alert fidelity by 40%. Developed a Python script to automate parsing and enrichment of log data from Elastic SIEM, reducing manual effort in daily investigations and accelerating initial triage workflows by 30%.

DevSecOps Engineer @ Cognizant  Sep 2021 - July 2023 Developed applications in Python and JavaScript with unit and integration tests, applying OWASP practices (input validation, encryption) and integrated OWASP ZAP/SonarQube into CI/CD to reduce vulnerabilities. Engineered and deployed a Threat Hunting Content Pack on Cortex XSOAR using Python, automating incident retrieval, playbooks, and dashboards for analysis. Resolved 300+ Jira issues and collaborated with cross-functional teams to enforce NIST, HIPAA, GDPR; contributed to Agile ceremonies and peer code reviews, achieving 100% compliance in quarterly audits.

Application Security Intern, Co-Op @ Cognizant  Nov 2020 - Sep 2021 Developed secure apps with JavaScript, Node.js, and Python; used Semgrep for static code analysis to fix XSS and SQL Injection vulnerabilities. Supported security reviews and research. Integrated Rubrik, Bitsight, and Flashpoint with Cortex XSOAR to automate workflows and enhance threat response using Python and REST API, automating security workflows and enhancing threat response capabilities. Conducted threat research and documented recurring vulnerabilities and secure coding practices aligned with the OWASP Top 10, building reusable knowledge bases that accelerated future security assessments.

## Education

Pace University – School of Seidenberg  Sep 2023 - May 2025  Master of Science in Cybersecurity

3.91 GPA; Relevant Coursework: Malware Analysis, AI/ML for Cybersecurity, Mobile Forensics, Automation with Python; ISC2 Graduate Scholarship Winner (2024) for academic excellence; CTF – NCL 2025: Ranked 171/600

Lovely Professional University  Aug 2017 - May 2021  Bachelor of Engineering in Computer Science

Relevant Coursework: Operating Systems, Computer Networks, Database Systems, OOP, Data Structures and Algorithms

This professional hasn’t added portfolio projects yet.

This professional hasn’t listed any services yet.