Y

Yasser Khan

DevOps Engineer

Riyadh, Saudi Arabia8 yrs 3 mos experience
Highly Stable

Key Highlights

  • Over 5 years of experience in penetration testing.
  • Expert in vulnerability management and security assessments.
  • Strong communication and interpersonal skills.
Stackforce AI infers this person is a Cybersecurity expert with extensive experience in penetration testing across various industries.

Contact

Skills

Core Skills

Penetration TestingVulnerability ManagementVulnerability AssessmentCyber SecurityNetwork Security

Other Skills

Adversary SimulationAndroid DevelopmentApplication SecurityBurp SuiteBurp Suite ProfessionalClient EngagementCloud SecurityComputer ForensicsConsultingCryptographyDocumentationEthical HackingForensic AnalysisIDSIncident Response

About

I'm a seasoned Penetration Tester with over 5 years of hands-on experience in the computer and Information Security industry. Proficient in Penetration Testing, Vulnerability Management, Ethical Hacking, and more. I've successfully executed numerous security assessments, aiding organizations in identifying and remedying vulnerabilities, securing applications, and protecting critical assets. My expertise includes in-depth vulnerability assessments, comprehensive penetration tests, and providing actionable recommendations. Passionate about information security, I stay updated on industry trends and cutting-edge technologies. I excel in thinking creatively, finding innovative solutions, and delivering tangible results that meet client expectations. Beyond technical skills, I possess excellent communication and interpersonal abilities. If you're looking for a dedicated Penetration Tester to enhance your cybersecurity, let's connect and explore possibilities.

Experience

Mobily

Penetration Testing Specialist - Lead

Dec 2024Present · 1 yr 3 mos · Riyadh, Saudi Arabia · On-site

  • My key responsibilities include:
  • Leading and managing internal penetration testing initiatives across telecom infrastructure and applications, including Web, API, Mobile, Network (Internal/External), Wireless, and Thick Clients.
  • Overseeing and guiding the internal security testing team, ensuring project timelines, technical depth, and quality standards are consistently met.
  • Conducting in-depth assessments such as SCR and red-teaming simulations to validate security posture across various layers of telecom systems.
  • Coordinating with external security vendors for specialized assessments like SS7, GTP, Diameter and 5G security, reviewing their deliverables, validating findings, and ensuring alignment with internal security requirements.
  • Prepare detailed reports, translate technical findings into actionable remediation plans, and ensure clarity for technical teams and senior leadership.
Penetration TestingVulnerability ManagementSecurity AssessmentsRed TeamingReporting

Alinma bank

Penetration Tester

May 2023Dec 2024 · 1 yr 7 mos · Riyadh, Saudi Arabia · On-site

Versos

Information Security Consultant

Dec 2021Dec 2024 · 3 yrs · Riyadh, Saudi Arabia · On-site

  • As an Information Security Consultant and Penetration Tester, I excel in conducting comprehensive assessments on various technology stacks, ensuring the security of critical assets.
  • My key responsibilities include:
  • Performing regular penetration testing and vulnerability assessments across diverse technology stacks, encompassing Web Applications, APIs, Mobile Applications, Internal and External Networks, Wireless Security, and Thick Clients.
  • Conduct thorough code and architectural reviews to identify potential security weaknesses and recommend remediation measures.
  • Maintaining consistent engagement with clients, both onsite and remote, to understand their security requirements, address concerns, and provide effective solutions.
  • Producing comprehensive documentation and reports that highlight assessment findings, vulnerabilities, and recommended actions to enhance security.
  • Demonstrating a versatile background in working across sectors such as Banking, Financial Services, Automobile, eCommerce, Telecom, and Government, ensuring industry-specific security needs are met.
  • Leveraging my expertise in cyber security and information security to engage in policy and strategy engagements with banks, facilitating the development and implementation of robust security frameworks.
  • Collaborating closely with client-side teams to establish cyber resilience and cyber assurance by implementing comprehensive security controls based on industry standards such as PCI DSS, SAMA, and NCA.
Penetration TestingVulnerability AssessmentClient EngagementDocumentation

Detectify

Security Researcher

May 2021Present · 4 yrs 10 mos · Remote

Ankercloud gmbh

Cyber Security Engineer

Jan 2021Dec 2021 · 11 mos · India · On-site

  • Planning, implementing, managing, monitoring, and enhancing security measures to protect the organization’s data, systems, and networks.
  • Ensuring the organization’s data and infrastructure remain secure by implementing appropriate security controls.
  • Participating in the change management process.
  • Conducting tests to identify vulnerabilities in networks and systems.
  • Performing daily administrative tasks, reporting, and coordinating with relevant departments.
  • Assessing the organization’s security needs and establishing best practices and standards accordingly.
  • Designing, deploying, maintaining, overseeing, and upgrading all necessary security measures to safeguard organizational assets.
  • Responding to security breaches affecting the network and associated systems.
  • Conducting regular penetration testing.
  • Implementing security measures to protect infrastructure and existing data.
  • Running security scans and tests to detect vulnerabilities in the network and systems.
Cyber SecurityNetwork SecurityPenetration TestingVulnerability Assessment

Synack red team

Synack Red Teamer

Sep 2020Present · 5 yrs 6 mos · Remote

Vast dream group

Information Security Analyst

Aug 2020Jan 2021 · 5 mos · Australia · Remote

  • Conducted end-to-end Penetration Testing and Vulnerability Assessment to ensure robust security measures at Vast Dream Group.
  • Implemented Open-Source Intelligence techniques for proactive threat detection and mitigation.
  • Reviewed configurations and generated detailed reports for internal stakeholders, enhancing overall security posture.
  • Communicated effectively with clients to address security concerns and provide tailored solutions.

Hackerone

Security Researcher

Dec 2017May 2021 · 3 yrs 5 mos · Greater Bengaluru Area · Remote

Education

Jain (Deemed-to-be University)

Bachelor's degree — BCA In Information Security and Mobile Application

Jan 2017Jan 2020

Stackforce found 100+ more professionals with Penetration Testing & Vulnerability Management

Explore similar profiles based on matching skills and experience