Summary
Overview
Work History
Education
Skills
Websites
Timeline
Generic

Shujaat Ali

Sr Security Engineer | OSCP | CRTO | CRTP | BTL2
Berlin

Summary

Highly motivated and dedicated professional with a strong passion for continuous learning and development. Eager to acquire new skills and adapt to evolving challenges in any dynamic environment.

Overview

10
10
years of professional experience
4
4
years of post-secondary education

Work History

Senior Penetration Tester

BestSecret
03.2022 - Current
  • Quarterly analysis of Web Applications
  • Conducting manual and automated analysis for updates to the applications
  • Performing source code analysis of newly reported vulnerabilities
  • Performs testing for mobile applications
  • Performing Thick Client Application Penetration Testing
  • Conducting red team exercising
  • Conducting purple teaming exercises
  • Helping out blue teams to create more efficient rules

Security Engineer(Penetration Tester)

Ebryx (Pvt.) Ltd.
03.2020 - 03.2022
  • Performing Web Application Penetration Testing
  • Conducting Mobile Application Penetration Testing
  • Performing Thick Client Application Penetration Testing
  • Conducting Network/Infrastructure Security Assessment
  • Writing scripts to automate Pentest tasks
  • Developing custom penetration testing tools
  • Performing black box, grey box pen-tests
  • Providing opinions for improving security postures and processes
  • Prepare POC of exploits and vulnerabilities to elaborate their impact
  • Create reports, detailing assessment findings and recommendations

Penetration Tester

Gaditek
12.2019 - 03.2020
  • Testing web application for OWASP top 10 and other critical vulnerabilities
  • Finding security loop holes and vulnerabilities in network and Infrastructure and other critical assets
  • Reverse Engineering thick client applications and testing for vulnerabilities
  • Using static and dynamic analysis to look for security issues
  • Using Ghidra, Dependency Walker, PEid, Wireshark, Nmap, Metasploit, Burp Suite and other tools

Core Executive

Zong CMPak Ltd
01.2015 - 11.2019
  • Network Configurations and Administration
  • Configuring, maintaining and updating system, and server
  • Optimizing high utilization links to avoid chocking
  • Troubleshooting infrastructure and network faults
  • Using python for automating configuration
  • Using python to automate weekly reports

Education

Bachelor's degree - Electrical and Electronics Engineering

Bahria University
01.2010 - 01.2014

Skills

  • Penetration testing

  • Red teaming

  • Reverse Engineering

  • Purple teaming

Timeline

Senior Penetration Tester

BestSecret
03.2022 - Current

Security Engineer(Penetration Tester)

Ebryx (Pvt.) Ltd.
03.2020 - 03.2022

Penetration Tester

Gaditek
12.2019 - 03.2020

Core Executive

Zong CMPak Ltd
01.2015 - 11.2019

Bachelor's degree - Electrical and Electronics Engineering

Bahria University
01.2010 - 01.2014
Shujaat AliSr Security Engineer | OSCP | CRTO | CRTP | BTL2