M

Muhammed Shahnawaz

DevOps Manager

Abu Dhabi, United Arab Emirates15 yrs 1 mo experience
Most Likely To SwitchHighly Stable

Key Highlights

  • Expert in threat hunting and incident response.
  • Significant contributions to vulnerability discovery.
  • Proven track record in penetration testing.
Stackforce AI infers this person is a Cybersecurity Specialist with expertise in threat detection and incident response.

Contact

Skills

Core Skills

Incident ResponsePenetration TestingCloud SecurityVulnerability AssessmentRed Teaming

Other Skills

Ethical HackingEDR ServicesDevSecOpsSecure SDLCOSINTBug Bounty ProgramSource Code ReviewThreat IntelligenceInformation Security ManagementInformation SecuritySecurityVulnerability ManagementNetwork SecurityWebsenseFirewalls

About

Threat hunter, Incident Responder, Red Teamer, Penetration Tester and bug bounty hunter. Threat hunting using EDR and SIEM tools. Attack simulation. Handled 3 separate case of Ransomware infection, 3 webshells which were planted by APT Group. Creating rule/watchlists for better detection. Security Architect for security tools. Penetration Testing on webapplication, driving vulnerability management, Red team activity on internal network. Purple Team expert. Achievements: ● Found vulnerability in SCADA systems CVE ID CVE-2017-5157. ● Reported vulnerabilities in fully patched IBM QRadar v7.2.8. CVE IDs- CVE-2017-1133,CVE-2017-1234, CVE-2020-4268, CVE-2020-4275, CVE-2020-4364 ● Found LFI vulnerability in IP360 Vulnerability Scanner from Tripwire: https://blogs.securiteam.com/index.php/archives/3010 ● Discovered a 0-day in HomeLYnk SCADA From Schneider Electric. CVE-2017-7689. CVSS Score 10 : http://www.schneider-electric.com/en/download/document/SEVD-2017-052-02/ ● Reflected XSS on Security Analytics(Solera) product of Symantec. CVE-2018-12241 ● Hall of Fame and swag for bug submission on Coindaddy, Cloudflare, Aptible,,Talktospot,CBR,BitDefender,ACORNS,Aptible,Erasmus University,IBM,Symantec Solera

Experience

15 yrs 1 mo
Total Experience
2 yrs 1 mo
Average Tenure
7 yrs 6 mos
Current Experience

Ibm

Senior Security Consultant

Dec 2018Present · 7 yrs 6 mos · Abu Dhabi, United Arab Emirates

  • Handling SOC, Managing and responding to Incidents, Managing EDR Services, Penetration Testing and Red/Purple team activity.
Red TeamingEthical HackingIncident ResponseEDR ServicesPenetration Testing

Ola (ani technologies pvt. ltd)

Penetration Test

Jun 2018Dec 2018 · 6 mos · Bengaluru, Karnataka, India

  • Penetraton Tester, DevSecOps, Cloud security, Secure SDLC, Handled Ola Pay Business function from Security perspective, OSINT, Handled Ola Bug Bounty Program
Red TeamingEthical HackingDevSecOpsCloud SecuritySecure SDLCOSINT+2

Apple

Principal Security Consultant - Penetration Tester

Jan 2018Jun 2018 · 5 mos · Bengaluru Area, India

  • Ethical Hacker at Apple Inc.(Contractual),
  • SourceCode Review, Vulnerability Assessment and Penetration Testing.
Ethical HackingVulnerability AssessmentPenetration TestingSource Code Review

Symantec

Security Consultant

Feb 2017Nov 2017 · 9 mos · Al-Riyadh Governorate, Saudi Arabia

  • Security Operations Center, Threat Intelligence, Vulnerability Assessment, Penetration Testing, Incident Response. Arcsight Admin.
Red TeamingEthical HackingThreat IntelligenceIncident ResponseVulnerability Assessment

Mannai corporation qsc

Senior Security Consultant

Jun 2015Jan 2017 · 1 yr 7 mos · Qatar

Red Teaming

Pwc india

Software Engineer

Jun 2014May 2015 · 11 mos · Bangalore

Red Teaming

First american financial corporation

Information Security Engineer

Jan 2011Jun 2014 · 3 yrs 5 mos · Bangaon Area, India

Education

Guru Nanak Dev Engineering College

Bachelor of Engineering (B.E.) — Mechanical Engineering

Jan 2005Jan 2009

Kendriya Vidyalaya

Higher Education/Higher Education Administration

Jan 2000Jan 2005

Stackforce found 100+ more professionals with Incident Response & Penetration Testing

Explore similar profiles based on matching skills and experience