At Sinteza Co, I plan and execute authorised penetration tests for banking and financial services clients, assessing production e-banking platforms, REST APIs, and iOS and Android applications. I turn exploitable weaknesses into reproducible proof-of-concept evidence, prioritised remediation roadmaps, and client-ready reports in English and Albanian.
I've manually validated vulnerability findings across segmented networks, reducing 411 raw Critical and High results to 31 actionable findings. My work spans OWASP-focused testing, identity and access analysis, Active Directory attack paths, WAF tuning, remediation verification, and risk-based CVSS prioritisation.
