At Innowise Group and Compliance Control, I test web, mobile, API, network, and Active Directory environments, helping engineering teams validate and remediate security findings. I also integrate application security into DevSecOps workflows and secure OAuth and JWT authentication mechanisms.
I've managed vulnerability programs, bug bounty initiatives, and external pentest remediation for banking and FinTech clients. My work spans Laravel, PHP, and Python code reviews, Cloudflare WAF, Wazuh, Elastic, Nessus, and published vulnerability research including CVE-2026-56784 and CVE-2026-36826.

