Mark Kiss

DevOps Engineer

New York City, New York, United States15 yrs 3 mos experience
Highly Stable

Key Highlights

  • Expert in high-impact offensive security assessments.
  • Proven track record in enhancing cybersecurity postures.
  • Strong advocate for secure coding practices.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on Penetration Testing and Compliance Solutions.

Contact

Skills

Core Skills

Penetration TestingCybersecurityInformation Security

Other Skills

Web Application Penetration TestingAPI & Mobile Application Security TestingCloud & Infrastructure Penetration TestingExternal & Internal Network AssessmentsRed Teaming & Adversary SimulationEnterprise Wireless Security AssessmentsHardware & IoT Security TestingSecure Code ReviewWireless Onsite AssessmentsPhishing, Social Engineering & OSINT ProgramsVulnerability Scanning & Attack Surface MappingRed TeamingVulnerability AssessmentWeb Application SecurityRisk Assessment

About

Mark Kiss is the Senior Penetration testester @ Invadel, a New York–based cybersecurity firm specializing in high-impact offensive security and compliance-driven penetration testing. He leads Invadel’s technical strategy and delivery, overseeing complex security assessments, advisory engagements, and readiness programs for startups, SaaS companies, and regulated organizations. Offensive Security & Technical Delivery • Web Application Penetration Testing • API & Mobile Application Security Testing • Cloud & Infrastructure Penetration Testing • External & Internal Network Assessments • Red Teaming & Adversary Simulation (TTP-Aligned) • Enterprise Wireless Security Assessments • Hardware & IoT Security Testing • Secure Code Review • Wireless Onsite Assessments • Phishing, Social Engineering & OSINT Programs • Vulnerability Scanning & Attack Surface Mapping Compliance Assessments & Readiness • SOC 2 Readiness & Penetration Testing • PCI DSS Penetration Testing & Advisory • HIPAA / Healthcare Security Assessments • ISO 27001 Gap Analysis & Technical Validation • GDPR-related technical testing • CMMC technical security requirements • Audit-Ready Reporting for leadership & external assessors Cybersecurity Advisory & Strategic Support • Security Roadmaps & Maturity Planning • Gap Analysis & Remediation Prioritization • Technical Validation for Risk, Privacy & IT Audit Teams • Third-Party Risk Assessment Support Mark’s philosophy is simple: security testing must prove real-world impact, not satisfy checkboxes. Every Invadel engagement delivers clear remediation guidance, free retesting, and audit-ready reporting designed to stand up to scrutiny from auditors, investors, and regulators. For time-sensitive engagements, Invadel offers 24-hour onboarding.

Experience

Rhymetec

Senior Penetration Tester

Jan 2023Mar 2025 · 2 yrs 2 mos · New York, New York, United States

  • In my role as a contract Senior Cybersecurity Consultant, I specialize in delivering tailored security solutions that align with the unique needs and goals of each client I work with across various industries. Through meticulous scoping, I ensure that our services precisely align with their security requirements. Using advanced techniques, I conduct thorough penetration tests on web applications, uncovering vulnerabilities and assessing defensive measures.
  • I then compile comprehensive reports detailing these findings, along with actionable strategies for remediation. Collaborating closely with software development teams, I advocate for the adoption of secure coding practices and oversee the implementation of necessary security enhancements.
  • Below listed are some of my achievements till date:
  • ► Executed numerous penetration tests on web applications, significantly enhancing clients' security postures.
  • ► Provided detailed vulnerability assessments and practical remediation guidance, contributing to the strengthening of clients' cybersecurity defenses.
  • ► Fostered culture of security awareness by liaising with development teams to integrate secure coding practices.
  • ► Managed multiple project assessments simultaneously, maintaining high standards of organization and detailed reporting.
  • ► Showcased expertise in professional report writing to ensure clear communication of complex security findings and recommendations.
Red TeamingPenetration TestingCybersecurity

Invadel cybersecurity

Senior Pentester @ Invadel | Cybersecurity, Compliance and Privacy Solutions

Jan 2022Present · 4 yrs 2 mos · New York City Metropolitan Area · On-site

Web Application Penetration TestingAPI & Mobile Application Security TestingCloud & Infrastructure Penetration TestingExternal & Internal Network AssessmentsRed Teaming & Adversary SimulationEnterprise Wireless Security Assessments+7

Synack red team

Web Application Penetration Tester

Jan 2017Mar 2023 · 6 yrs 2 mos · New York, New York, United States · Remote

  • In my role, I specialize in safeguarding client infrastructures through comprehensive penetration testing of web and mobile applications, network systems, and cloud services. By employing advanced methodologies, I meticulously uncover and exploit security vulnerabilities, enabling thorough risk assessments. I compile detailed reports outlining these weaknesses and provide actionable
  • mitigation strategies to fortify client defenses. Collaborating closely with cross-functional teams, I ensure swift and effective remediation of identified issues. Continuously staying abreast of evolving cybersecurity threats and countermeasures, I remain committed to upholding the highest standards of security for my clients.
  • Here are some of my potential workings in this job:
  • ► Identified critical security vulnerabilities in client systems, enabling the implementation of robust security measures.
  • ► Provided expert recommendations and strategies, significantly improving clients' cybersecurity postures.
  • ► Ensured the security and integrity of client data through meticulous vulnerability assessments and reporting.
  • ► Facilitated knowledge transfer within the cybersecurity community, contributing to the collective defense against emerging threats.
Penetration TestingWeb Application SecurityCybersecurity

Lucius pitkin inc

IT Specialist / Metallurgical and Engineering Specialist

Jan 2006Jan 2017 · 11 yrs · New York, New York, United States · On-site

  • In my tenure, I took charge of enhancing the integrity of our Active Directory infrastructure, meticulously fine-tuning user account and group permissions to fortify security measures. When faced with equipment or structural hiccups, I spearheaded comprehensive failure investigations, diving deep into the intricacies of components and materials to uncover root causes. Employing a range of non-destructive testing (NDT) techniques including ultrasonic, radiographic, magnetic particle, dye penetrant, and eddy current inspections, I evaluated materials and structures with precision, ensuring thorough assessments without causing any damage.
  • Below listed were my key accomplishments:
  • ► Conducted thorough failure engineering assessments, yielding practical recommendations.
  • ► Executed advanced NDT methods, contributing to the maintenance of structural integrity and safety standards.
  • ► Managed multiple projects and reports, showcasing exceptional organizational skills and attention to detail.
  • ► Maintained a consistent and detail-oriented approach to professional report writing, ensuring clarity and precision.
  • ► Demonstrated commitment to professional development by obtaining technical certifications and maintaining a long-term role for over 11 years at the same company.
Active DirectoryNondestructive Testing (NDT)Information Security

Education

Cisco Networking Academy

CCNA

Jan 2006Jan 2007

Stackforce found 100+ more professionals with Penetration Testing & Cybersecurity

Explore similar profiles based on matching skills and experience