At ITQCR, I manually test web applications, networks, and infrastructure, finding authentication and authorization flaws that automated scanners can miss. During client API testing, I discovered a critical BOLA vulnerability that could have led to a data breach.
I test RESTful APIs against the OWASP API Top 10 and deliver technical and executive reports with exploitation evidence and remediation recommendations. I also use Python and AI LLMs to automate reconnaissance, reducing manual testing time.
At Infotact Solutions, I conducted vulnerability assessments and penetration tests on networks and web applications. I’m also expanding my SIEM/XDR practice with Wazuh, including log analysis and File Integrity Monitoring.
