Muhammad Wasi

Operations Associate

Karฤchi, Sindh, Pakistan6 yrs 5 mos experience

Key Highlights

  • Expert in Application Security and Penetration Testing.
  • Proven track record in securing financial institutions.
  • Strong background in ethical hacking and vulnerability assessments.
Stackforce AI infers this person is a Cybersecurity Specialist with a focus on Application Security and Penetration Testing.

Contact

Skills

Core Skills

Application SecurityPenetration TestingInformation SecurityIt Management

Other Skills

HackingEthical HackingVulnerability Assessment and Penetration Testing (VAPT)CybersecurityPrivileges EscalationRed TeamingWireless SecurityBypass AntivirusesActive DirectoryIT OperationsInformation TechnologyProblem SolvingCommunicationNetwork EngineeringWeb Development

About

A passionate Application Security Analyst and Penetration Tester, skilled in identifying vulnerabilities and fortifying critical systems against evolving cyber threats. With expertise spanning ๐˜„๐—ฒ๐—ฏ ๐—ฎ๐—ฝ๐—ฝ๐—น๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐˜€, ๐—บ๐—ผ๐—ฏ๐—ถ๐—น๐—ฒ ๐—ฎ๐—ฝ๐—ฝ๐˜€, ๐—”๐—ฃ๐—œ๐˜€, ๐—ฐ๐—น๐—ผ๐˜‚๐—ฑ ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜†, ๐—ฎ๐—ป๐—ฑ ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ฒ ๐—ฎ๐—ฝ๐—ฝ๐—น๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—ฑ๐—ฒ๐—ฝ๐—น๐—ผ๐˜†๐—บ๐—ฒ๐—ป๐˜, I take a proactive approach to mitigating risks before they impact operations. Having worked with ๐˜ƒ๐—ฎ๐—ฟ๐—ถ๐—ผ๐˜‚๐˜€ ๐—ณ๐—ถ๐—ป๐—ฎ๐—ป๐—ฐ๐—ถ๐—ฎ๐—น ๐—ถ๐—ป๐˜€๐˜๐—ถ๐˜๐˜‚๐˜๐—ถ๐—ผ๐—ป๐˜€, Iโ€™ve secured ๐—ฆ๐—ช๐—œ๐—™๐—ง application servers and other critical/sensitive banking systems through comprehensive security assessments. My experience includes conducting PCI-compliance tests, Red Team exercises, and orchestrating ๐˜€๐—ผ๐—ฐ๐—ถ๐—ฎ๐—น ๐—ฒ๐—ป๐—ด๐—ถ๐—ป๐—ฒ๐—ฒ๐—ฟ๐—ถ๐—ป๐—ด ๐—ฐ๐—ฎ๐—บ๐—ฝ๐—ฎ๐—ถ๐—ด๐—ป๐˜€ such as ๐—ฝ๐—ต๐—ถ๐˜€๐—ต๐—ถ๐—ป๐—ด ๐—ฎ๐˜๐˜๐—ฎ๐—ฐ๐—ธ๐˜€, ๐—ฟ๐—ฎ๐—ป๐˜€๐—ผ๐—บ๐˜„๐—ฎ๐—ฟ๐—ฒ ๐˜€๐—ถ๐—บ๐˜‚๐—น๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐˜€, ๐—ฎ๐—ป๐—ฑ ๐—ฟ๐—ฒ๐˜ƒ๐—ฒ๐—ฟ๐˜€๐—ฒ ๐˜€๐—ต๐—ฒ๐—น๐—น๐˜€. Iโ€™ve conducted thorough ๐—ฐ๐—ผ๐—ฑ๐—ฒ ๐—ฟ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„๐˜€ to identify security flaws and collaborated with stakeholders to integrate security tools into DevSecOps pipelines, ensuring seamless implementation of innovative solutions tailored to organizational needs. My approach combines robust problem-solving with clear communication, ensuring penetration testing and red teaming efforts are thorough, effective, and efficient. Always eager to learn, I balance a passion for both offensive and defensive security practices, driving cybersecurity innovation while ensuring compliance with industry standards like ๐—ฃ๐—–๐—œ ๐——๐—ฆ๐—ฆ, ๐—œ๐—ฆ๐—ข ๐Ÿฎ๐Ÿณ๐Ÿฌ๐Ÿฌ๐Ÿญ, ๐—ฎ๐—ป๐—ฑ ๐—–๐—œ๐—ฆ ๐—•๐—ฒ๐—ป๐—ฐ๐—ต๐—บ๐—ฎ๐—ฟ๐—ธ๐˜€. ๐—–๐—ผ๐—ฟ๐—ฒ ๐—–๐—ผ๐—บ๐—ฝ๐—ฒ๐˜๐—ฒ๐—ป๐—ฐ๐—ถ๐—ฒ๐˜€: Web & Mobile Application Security: OWASP Top 10, CWE/SANS 25 Penetration Testing: Web, Mobile, API Testing, and Cloud Security (AWS) Threat Hunting & Red Teaming: Ethical hacking, malware analysis, and reverse engineering Network Security: Active Directory hardening and network segmentation Secure Application Design & Deployment: Vulnerability management and remediation Digital Forensics: Malware analysis and forensic investigations ๐—ž๐—ฒ๐˜† ๐—ฃ๐—ฟ๐—ผ๐—ท๐—ฒ๐—ฐ๐˜๐˜€: DIGISPARK/Rubber Ducky with ATTiny85: Developed custom payloads for USB-based attack simulations. WiFi Deauth Attack using ESP8266: Explored network disruption techniques to test WiFi security defenses. Letโ€™s ๐—ฐ๐—ผ๐—ป๐—ป๐—ฒ๐—ฐ๐˜ ๐˜๐—ผ ๐—ฐ๐—ผ๐—น๐—น๐—ฎ๐—ฏ๐—ผ๐—ฟ๐—ฎ๐˜๐—ฒ and drive cybersecurity innovation while building trust and digital resilience!

Experience

6 yrs 5 mos
Total Experience
11 mos
Average Tenure
9 mos
Current Experience

Ubl - united bank limited

Manager Application Security

Jul 2025 โ€“ Present ยท 9 mos ยท Karachi, Sindh, Pakistan ยท On-site

Application SecurityHacking

National university of sciences and technology (nust)

Visiting Lecturer

Feb 2024 โ€“ Jul 2024 ยท 5 mos ยท Karฤchi, Sindh, Pakistan ยท On-site

Information SecurityEthical Hacking

Synack red team

Synack Red Team Member

Jan 2024 โ€“ Present ยท 2 yrs 3 mos

HackingEthical HackingPenetration TestingVulnerability Assessment and Penetration Testing (VAPT)

Jinnah university for women

Visiting Lecturer - Information Security

Aug 2023 โ€“ Jan 2024 ยท 5 mos ยท Karฤchi, Sindh, Pakistan

  • Teaching Information Security course to under-graduate students.
  • Developed and implemented course curriculum, assignments, and exams.
  • Mentored and advised students on their final year research projects.

Bankislami pakistan limited

Senior Application Security Analyst

Feb 2023 โ€“ Jun 2025 ยท 2 yrs 4 mos ยท Karฤchi, Sindh, Pakistan ยท On-site

Application SecurityCybersecurityEthical HackingInformation SecurityPenetration Testing

United bank limited

Assistant Manager Red Teaming & Penetration Testing

Jun 2022 โ€“ Feb 2023 ยท 8 mos ยท Karฤchi, Sindh, Pakistan

Penetration TestingApplication SecurityCybersecurityEthical HackingPrivileges EscalationRed Teaming+5

Sharp telecom (private) limited

Cyber Security Engineer

Oct 2021 โ€“ May 2022 ยท 7 mos ยท Karฤchi, Sindh, Pakistan ยท On-site

Penetration TestingApplication SecurityCybersecurityEthical Hacking

Digital arrays (pvt.) ltd.

Penetration Tester

Jan 2020 โ€“ Sep 2021 ยท 1 yr 8 mos ยท Karฤchi, Sindh, Pakistan ยท Hybrid

Penetration TestingVulnerability Assessment and Penetration Testing (VAPT)CybersecurityApplication SecurityInformation SecurityEthical Hacking

Dynamic logistics international pvt ltd

Information Technology Officer

Jul 2019 โ€“ Dec 2019 ยท 5 mos ยท Karฤchi, Sindh, Pakistan ยท On-site

IT ManagementIT OperationsInformation Technology

Education

National University of Sciences and Technology (NUST)

Master's degree โ€” Cybersecurity

Sep 2021 โ€“ Dec 2023

Iqra University (Official)

Bachelor of Science - BS โ€” Computer Science

Jan 2016 โ€“ Jan 2020

Stackforce found 100+ more professionals with Application Security & Penetration Testing

Explore similar profiles based on matching skills and experience