Tabish Sabih

DevOps Engineer

Karāchi, Sindh, Pakistan8 yrs experience

Key Highlights

  • Seven years of experience in cybersecurity.
  • Expertise in Vulnerability Assessment and Penetration Testing.
  • Manager of Offensive Security at a leading financial institution.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on Offensive Security in the Fintech sector.

Contact

Skills

Core Skills

Penetration TestingApplication SecurityVapt

Other Skills

Secure Code ReviewWeb Application Penetration TestingMobile Application Security AuditNetwork Penetration Testing (Active Directory)Network Configuration ReviewDesktop and Thick Client Application Penetration TestingSecure Code ReviewsContainerization Security ReviewVulnerability AssessmentRed TeamingSecure Architecture ReviewReversing BinariesBrowser Extensions Security AssessmentData Leakage Assessment from GDPR PerspectiveNetwork Penetration Testing

About

As an English literature graduate turned InfoSec enthusiast, I have carved out a niche in the cybersecurity field with seven years of experience, including three years dedicated to Vulnerability Assessment and Penetration Testing (VAPT) and offensive security. Currently, I am leveraging my knowledge and skills as the Manager Offensive Security at United Bank Limited (UBL), one of Pakistan's leading financial institutions. Focusing on Azure Red Teaming at the moment. Core Competencies: Network Penetration Testing (Active Directory) Web and Mobile Application Penetration Testing Secure Code and Network Configuration Reviews Desktop and Thick Client Application Penetration Testing Container Security Reviews Red Teaming and Secure Architecture Reviews Binary Reversing and Data Leakage Assessments (GDPR) Notable Clients: I have delivered impactful security assessments for prestigious clients including Central Bank of Iraq, GZ System (Gaditek), Tabadul, Areeba, Amwal, JS Bank, Silk Bank, Bank Al Habib (Resident Engineer for 2 years), Aga Khan Hospital, NIFT, JS Zindigi, Mobilink Microfinance Bank, and CitiBank. Tools and Methodologies: I leverage industry-standard frameworks like OWASP, MITRE ATT&CK and NIST, and tools such as Tenable Nessus, Nexpose, Acunetix, Invicti NetSparker, and Burpsuite. Career Aspirations: I aim to join an organization that offers a challenging and competitive environment in VAPT, application security, or red teaming. My goal is to contribute effectively by leveraging my comprehensive skill set and experience. Certifications: OSCP, CRTP, CEH Practical, eWPT, IBM Certified Cybersecurity Analyst For more details on my certifications, visit my Credly Profile. Github Profile: https://github.com/tabishsabih

Experience

8 yrs
Total Experience
2 yrs 4 mos
Average Tenure
11 mos
Current Experience

Ubl - united bank limited

Manager Offensive Security

Jun 2025Present · 11 mos · Karāchi, Sindh, Pakistan · On-site

Penetration TestingSecure Code ReviewApplication Security

Ey

Senior Consultant (Offensive Security)

Sep 2023Jun 2025 · 1 yr 9 mos · Pakistan · Hybrid

  • This is what I do during my day job:
  • Web Application Penetration Testing
  • Mobile Application Security Audit
  • Network Penetration Testing (Active Directory)
  • Network Configuration Review
  • Desktop and Thick Client Application Penetration Testing
  • Secure Code Reviews
  • Containerization Security Review
  • Vulnerability Assessment
  • Red Teaming
  • Secure Architecture Review
  • Reversing Binaries
  • Browser Extensions Security Assessment
  • Data Leakage Assessment from GDPR Perspective
Web Application Penetration TestingMobile Application Security AuditNetwork Penetration Testing (Active Directory)Network Configuration ReviewDesktop and Thick Client Application Penetration TestingSecure Code Reviews+9

Dig8labs

2 roles

Security Analyst

Jan 2022Sep 2023 · 1 yr 8 mos

  • Network Penetration Testing
  • Web Application Penetration
  • Vulnerability Assessment (VA)
  • Red Teaming
  • Resident Engineer at Bank Al Habib (Application Security Analyst)
  • API Penetration Testing
  • Desktop Application Penetration Testing
  • Reverse Engineering
Network Penetration TestingWeb Application PenetrationVulnerability Assessment (VA)Red TeamingAPI Penetration TestingDesktop Application Penetration Testing+3

Cyber Security Trainee

Sep 2021Jan 2022 · 4 mos

VAPTApplication Security

Serene air (pvt.) limited

Travel Counselor

Dec 2017Apr 2021 · 3 yrs 4 mos · Pakistan · On-site

  • Customer Service
  • Ticketing
  • Cash Management
TeamworkCorporate Communications

Innovative solutions

Executive Writer

Feb 2017May 2017 · 3 mos · Karachi

  • eBook Writing
  • Proof Reading Texts
  • Condensation and Summation of Works
Content WritingProofreading

Education

Karachi University

M.A — English Literature

Jan 2015Jan 2016

National Academy of Performing Arts

Music

Jan 2013Jan 2015

Karachi University

B.A (hons) — English Literature (British and Commonwealth)

Jan 2012Jan 2015

Adamjee Government Science College

Intermediate — Computer Science

Jan 2010Jan 2012

Falconhouse Grammar School Campus 3

Matriculation — Computer Science

Jan 2008Jan 2010

Stackforce found 100+ more professionals with Penetration Testing & Application Security

Explore similar profiles based on matching skills and experience