
Ayyan Irfan
Habilidades

Conheça meus serviços


Experiência profissional
Cyber Security
cyberboost • Período integral
Aug 2025 - Jul 2026 • 11 mos
I worked as a Cybersecurity Researcher for 11 months, where I was responsible for identifying and reporting security vulnerabilities in web applications, APIs, cloud environments, and network infrastructures. During this time, I performed comprehensive security assessments by following industry-standard testing methodologies and best practices. My responsibilities included: Conducting Web Application Security Testing (OWASP Top 10) Performing API Security Testing using tools such as Postman and Burp Suite Identifying vulnerabilities such as IDOR, XSS, CSRF, SSRF, SQL Injection, authentication, and authorization flaws Testing business logic and access control issues Performing Network Security Assessments using tools like Nmap Assisting in Cloud Security Testing and identifying common cloud misconfigurations Creating detailed vulnerability reports with clear reproduction steps, risk assessments, and remediation recommendations Collaborating with development teams to validate fixes and perform retesting Using industry-standard tools including Burp Suite, Nmap, Postman, ffuf, Amass, and Subfinder Throughout my experience, I developed strong analytical, problem-solving, and reporting skills while helping improve the security posture of various applications and systems.
Ethical Hacker
Freelancer.com • Freelance
Feb 2022 - Aug 2025 • 3 yrs 6 mos
I worked on Bugcrowd for almost three years, where I identified multiple security vulnerabilities in web applications and earned recognition in their Hall of Fame. During this time, I also earned rewards for my findings and gained hands-on experience in API security testing, cloud security testing, web application security testing, and network security testing.