[ SYSTEM_TELEMETRY // OPERATIONAL_STATUS ]
● CURRENT_ROLE : Cybersecurity Engineer & Penetration Tester @ ZeroxInnovation
● PRIOR_ENGAGEMENT : Digital Forensics & Security Engineer @ National Center of Cyber Security (NCCS)
● ACADEMIC_BASE : BS Cybersecurity — Air University Islamabad
● GLOBAL_STANDINGS : TryHackMe Top 3% Globally · HackTheBox Top 900 (Level 48) · 17 Verified Certifications
● SECURITY_ARSENAL : 34+ Public Repositories (Python, C, Rust, x86 Assembly, Bash)
● WORK_ELIGIBILITY : 100% Remote Worldwide (W-8BEN / B2B) · Open to Relocation with Visa SponsorshipI am a Cybersecurity Engineer, Penetration Tester, and DevSecOps Practitioner with 3+ years of hands-on experience spanning offensive security, infrastructure defense, digital forensics, and security tool development. My work bridges the gap between deep offensive tradecraft and production-grade defensive engineering.
- 🛡️ Offensive VAPT & Red Teaming: Lead full-scope Web (OWASP Top 10), REST/GraphQL API, and Network penetration testing at ZeroxInnovation, authoring custom exploit automation and CVSS risk-scored remediation roadmaps for enterprise clients.
- 🔬 Government Lab Forensics & SIEM: Engineered
CyberGuard_agent(a high-performance C daemon with Linuxinotifyfile integrity monitoring) and operated enterprise SIEM environments (Wazuh, Splunk Enterprise, ELK) at the National Center of Cyber Security (NCCS). - ☁️ DevSecOps & Cloud Hardening: Design automated CI/CD security gates (SAST/SCA/DAST via Semgrep, Trivy, TruffleHog), Kubernetes admission controllers, Terraform state locking, and container runtime threat detection (Falco eBPF).
- 🧠 AI & Systems Tooling: Build next-generation security agents integrating local LLM reasoning (Ollama, SmolLM2, LLaMA 3.3) into terminal security scanners and automated forensic evidence acquisition pipelines.
| Project | Domain | Architecture / Tech | Key Capabilities |
|---|---|---|---|
| NetSnoop | Offensive / Network |
Python Scapy BPF |
High-speed packet dissector with real-time protocol sniffing, BPF filters, and PCAP forensics. |
| CyberGuard_Agent | Defensive / SIEM |
C Linux inotify POSIX |
Real-time File Integrity Monitoring (FIM) daemon engineered for NCCS cyber forensics lab. |
| SSHield | Host Defense |
Bash Python iptables |
Automated Linux SSH hardening, automated brute-force IP banning, and session telemetry. |
| CortexCLI | AI / Scanner |
C Python REST API |
Lightweight terminal-based security auditor and AI-assisted vulnerability triage engine. |
| VortexTunnel | Pivoting / Proxies |
Python AsyncIO SOCKS5 |
Multi-mode SSH forwarding & dynamic SOCKS5 proxy engine for red-team lateral movement. |
| FastTex | Systems / Tokenizer |
Rust SIMD AVX2 Rayon |
Vectorized text tokenizer delivering 48.2 GB/s memory-safe processing throughput. |
| FEAS | Forensics / Analytics |
Python Crypto FastAPI |
Cryptographic forensic evidence acquisition system with zero-knowledge verification. |
| RCMS | C2 / Remote Mgmt |
Python mTLS 1.3 Sockets |
Secure remote infrastructure management platform with mutual TLS encryption. |
| ParallelFlow | HPC Forensics |
C++ MPI OpenMP |
Distributed cluster computing pipeline for high-performance PCAP and threat log analytics. |
Web & API VAPT · Network Exploitation · Active Directory Attacks · Binary Reverse Engineering
Burp Suite Pro · Metasploit · Nmap · SQLmap · BloodHound · Impacket · Ghidra · x64dbg · Wireshark
Wazuh SIEM · Splunk Enterprise · Elasticsearch · Suricata IDS/IPS · pfSense Firewall
Windows Sysmon · Sigma Detection Rules · Linux inotify FIM · Memory Forensics · Volatility
GitHub Actions CI/CD · Docker Hardening · Kubernetes RBAC & Calico · Terraform IaC Security
AWS Cloud Defense · Trivy · Semgrep SAST · TruffleHog Secret Scanning · Falco eBPF
Certifications_Registry:
- credential: "CompTIA PenTest+ (PT0-002)"
issuer: "CompTIA / Coursera Preparation Track"
focus: "Scoping, Vulnerability Scanning, Exploit Execution, & Reporting"
- credential: "Certified Cybersecurity Educator Professional (CCEP)"
issuer: "Red Team Leaders"
focus: "Adversary Emulation, Offensive Red Teaming, & Tactical Defense"
- credential: "CSI Linux Certified Investigator (CSIL-CI)"
issuer: "CSI Linux Academy"
focus: "OSINT, Digital Forensics, Disk Imaging, & Memory Analysis"
- credential: "Cyber Threat Intelligence 101"
issuer: "arcX"
focus: "Threat Actor Attribution, Diamond Model, & MITRE ATT&CK Mapping"
- credential: "Reverse Engineering & Malware Analysis (REMASM+)"
issuer: "REMASM"
focus: "x86 Assembly, Ghidra Decompilation, & Dynamic Debugging"
- credential: "Cisco CCNA Fundamentals"
issuer: "Cisco Systems"
focus: "TCP/IP Architecture, Routing/Switching, VLANs, & Access Control"
- credential: "The Ultimate Wireshark Packet Analysis"
issuer: "Network Security Lab"
focus: "Deep Packet Inspection, Malware Beacon Hunting, & Protocol Forensics"👉 View & verify all 17 certificate credentials on my live portfolio →

