
BugTwoSecure
Website Malware Specialist and Malware Investigation Expert
Habilidades

Conheça meus serviços

Experiência profissional
Penetration Tester
BRAC • Período integral
Jun 2025 - Present • 1 yr 2 mos
Conducted web application security assessments using OWASP Top 10 methodologies. Performed vulnerability assessments and security audits for websites and servers. Identified and documented security weaknesses, misconfigurations, and attack vectors. Assisted in malware investigations, root cause analysis, and incident response activities. Evaluated WordPress, PHP, and Linux-based environments for security risks. Produced professional security reports with remediation recommendations. Performed reconnaissance, vulnerability scanning, and risk analysis on web applications. Supported website recovery, malware removal, and security hardening initiatives. Worked with tools such as Burp Suite, Nmap, Wireshark, Nessus, Metasploit, and OWASP ZAP. Delivered clear technical findings and actionable security guidance to clients.
Malware Analysis Expert
Braci • Meio período
Apr 2024 - Present • 2 yrs 4 mos
Conduct in-depth malware analysis to identify malicious behavior, indicators of compromise (IOCs), and security risks. Perform threat investigations, incident response, and root cause analysis to support system recovery and strengthen defenses. Analyze malware infections affecting websites, web applications, and Linux-based environments. Assist with vulnerability assessments and penetration testing to identify and mitigate security weaknesses. Support malware removal, website recovery, and security hardening initiatives. Develop and implement threat detection, monitoring, and prevention strategies. Create detailed technical reports with findings, impact assessments, and remediation recommendations. Collaborate with development and IT teams to improve application and infrastructure security. Research emerging cyber threats, attack techniques, and malware trends to enhance organizational security. Promote security best practices and support compliance with industry standards and security frameworks.