Skip to main content
Nguyễn Khắc HuyNH
Open to opportunities

Nguyễn Khắc Huy

@nguynkhchuy

I uncover application vulnerabilities through penetration testing, red teaming, and security research.

Vietnam
Message

What I'm looking for

I'm looking to continue offensive security work focused on penetration testing, red-team exercises, vulnerability research, and securing web, mobile, and networked applications.

I'm currently a Penetration Tester at NAB Innovation Centre Vietnam, following more than three years securing applications at Giaohangtietkiem.

At Giaohangtietkiem, I conducted internal penetration tests and red-team exercises across web, mobile, and network environments. I researched zero-day and one-day vulnerabilities, explored issues affecting Zimbra and Progress Kemp LoadMaster, and contributed bypass and fix work for CVE-2025-12735.

I started in offensive security through a penetration-testing internship at CyRadar, performing black-box web and API assessments for healthcare, government, and finance organizations. I hold a degree in Computer and Information Systems Security/Information Assurance from the Posts and Telecommunications Institute of Technology.

Experience

Work history, roles, and key accomplishments

NAB Innovation Centre Vietnam logoNV
Current

Penetration Tester

Dec 2025 - Present (9 months)

Conducted comprehensive security assessments, including penetration testing and red team exercises, to identify vulnerabilities and enhance the organization's security posture. Performed vulnerability research and contributed to the discovery and mitigation of critical security issues.

Giaohangtietkiem logoGI

Application Security Engineer

Aug 2022 - Nov 2025 (3 years 3 months)

Responsibilities
* Conduct Comprehensive Security Assessments: Perform internal penetration testing and red team exercises to identify vulnerabilities and enhance the organization’s security posture.
* Vulnerability Research: Investigate and identify zero-day and one-day vulnerabilities, providing timely insights to mitigate risks
* Exploring vulnerability that could lead to taking over Zimbra ac

CyRadar logoCY

Penetration Tester Internship

Oct 2021 - Aug 2022 (10 months)

- web-app pentest
- API pentest
- security researcher
- Perform black-box pentesting , security assessment for large company in different fieds such as : Health Care, government , finance , ...
- Self trainning on some security platform such as: hackthebox , tryhackme

Education

Degrees, certifications, and relevant coursework

PT

Posts and Telecommunications Institute of Technology

Computer and Information Systems Security/Information Assurance

2019 - 2024

Posts and Telecommunications Institute of Technology logoPT

Posts and Telecommunications Institute of Technology

Bachelor of Science, Computer and Information Systems Security/Information Assurance

2019 - 2024

Studied Computer and Information Systems Security/Information Assurance at the Posts and Telecommunications Institute of Technology from 2019 to 2024.

Tech stack

Software and tools used professionally

Get matched with your dream remote job

Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan