Ukraine's #1 job service
Іван
Спеціаліст з кібербезпеки
- City of residence:
- Dnipro
- Ready to work:
- Remote
Contact information
The job seeker has provided: Phone numberMessenger
Name, contacts and photo are only available to registered employers. To access the candidates' personal information, log in as an employer or sign up.
You can get this candidate's contact information from https://www.work.ua/resumes/20399338/
Uploaded file
Quick view
version
This resume is posted as a file. The quick view option may be worse than the original resume.
Meln Ivan
Penetration Tester
LinkedIn: [open contact info ](look above in the "contact info" section)
Summary:
Detail-oriented Penetration Tester with a proven track record in large-scale
enterprise and fintech environments. Strong background in administering Windows
and Linux systems, combined with a deep understanding of network protocols.
Proficient in using a wide range of security tools and scripting languages to identify
vulnerabilities and enhance system security.
Professional Experience:
System Administrator | PA Yuzhmash, Dnipro (2020 – 2021)
• Administered Active Directory (AD): managed Group Policies (GPO) and user
rights to enforce system security.
• Installed and configured network infrastructure and networking equipment.
• Managed server administration, including maintenance, security updates, and
backup procedures.
• Administered corporate website, including security monitoring, content
updates, and performance optimization.
• Performed hardware and software maintenance and troubleshooting.
Penetration Testing Specialist | PrivatBank, Dnipro (2021 – 2024)
• Performed regular penetration testing of banking web applications and
internal infrastructure, ensuring protection of sensitive financial data.
• Identified and reported critical business logic vulnerabilities, providing
actionable remediation guidance to development teams.
• Cloud Security: Gained experience in assessing cloud-hosted environments,
focusing on identifying infrastructure misconfigurations and exposed assets.
• Conducted security research on emerging threats to stay ahead of potential
risks to banking systems.
• Developed custom Bash and PowerShell scripts to automate routine security
scans and internal audit processes.
• Collaborated with cross-functional security teams to establish and implement
best practices for securing applications.
Penetration Testing Specialist | Samsung, Kyiv (2024 – Present)
• Conduct end-to-end penetration tests of Web and Android applications,
leveraging a wide range of security tools for dynamic analysis, reverse
engineering, and bypassing client-side protections.
• Perform comprehensive Network assessments: reconnaissance, attack
surface mapping, and exploitation of misconfigured services and protocols.
• Execute Wireless security audits, including WPA Enterprise attacks, Evil Twin
scenarios, and WPS exploitation.
• Perform post-exploitation analysis: privilege escalation, lateral movement, and
simulated data exfiltration.
• Develop custom Python scripts to automate vulnerability discovery and
streamline reconnaissance tasks.
Education:
• Dnipro National University of Railway Transport named after Academician V.
Lazaryan, 2018 - 2021, Faculty of Computer Technologies and Systems (full-
time), Cyber Security (Bachelor).
• Ukrainian State University of Science and Technology 2021-2023 Faculty of
Computer Technologies and Systems (full-time), Computer engineering
(Master).
Skills:
• Web & Android: Burp Suite Pro, Frida, HTTP Toolkit, OWASP ZAP, Jadx, MobSF.
• Network & Infra: Nmap, Metasploit, Nessus, Wireshark, Responder, SQLmap.
• Wireless: Aircrack-ng suite, Eaphammer, Hostapd-mana.
• Systems & Coding: Python, PowerShell, Bash, Windows/Linux Admin, Active
Directory.
• Standards: OWASP Top 10, CIS Critical Security Controls
Language Skills:
• Russian: Native
• Ukrainian: Native
• English: B2 (Upper-Intermediate)
Certifications:
• Certified Web Application Pentester Training (WAPT)
• Burp Suite Certified Practitioner (BSCP)
Penetration Tester
LinkedIn: [
Summary:
Detail-oriented Penetration Tester with a proven track record in large-scale
enterprise and fintech environments. Strong background in administering Windows
and Linux systems, combined with a deep understanding of network protocols.
Proficient in using a wide range of security tools and scripting languages to identify
vulnerabilities and enhance system security.
Professional Experience:
System Administrator | PA Yuzhmash, Dnipro (2020 – 2021)
• Administered Active Directory (AD): managed Group Policies (GPO) and user
rights to enforce system security.
• Installed and configured network infrastructure and networking equipment.
• Managed server administration, including maintenance, security updates, and
backup procedures.
• Administered corporate website, including security monitoring, content
updates, and performance optimization.
• Performed hardware and software maintenance and troubleshooting.
Penetration Testing Specialist | PrivatBank, Dnipro (2021 – 2024)
• Performed regular penetration testing of banking web applications and
internal infrastructure, ensuring protection of sensitive financial data.
• Identified and reported critical business logic vulnerabilities, providing
actionable remediation guidance to development teams.
• Cloud Security: Gained experience in assessing cloud-hosted environments,
focusing on identifying infrastructure misconfigurations and exposed assets.
• Conducted security research on emerging threats to stay ahead of potential
risks to banking systems.
• Developed custom Bash and PowerShell scripts to automate routine security
scans and internal audit processes.
• Collaborated with cross-functional security teams to establish and implement
best practices for securing applications.
Penetration Testing Specialist | Samsung, Kyiv (2024 – Present)
• Conduct end-to-end penetration tests of Web and Android applications,
leveraging a wide range of security tools for dynamic analysis, reverse
engineering, and bypassing client-side protections.
• Perform comprehensive Network assessments: reconnaissance, attack
surface mapping, and exploitation of misconfigured services and protocols.
• Execute Wireless security audits, including WPA Enterprise attacks, Evil Twin
scenarios, and WPS exploitation.
• Perform post-exploitation analysis: privilege escalation, lateral movement, and
simulated data exfiltration.
• Develop custom Python scripts to automate vulnerability discovery and
streamline reconnaissance tasks.
Education:
• Dnipro National University of Railway Transport named after Academician V.
Lazaryan, 2018 - 2021, Faculty of Computer Technologies and Systems (full-
time), Cyber Security (Bachelor).
• Ukrainian State University of Science and Technology 2021-2023 Faculty of
Computer Technologies and Systems (full-time), Computer engineering
(Master).
Skills:
• Web & Android: Burp Suite Pro, Frida, HTTP Toolkit, OWASP ZAP, Jadx, MobSF.
• Network & Infra: Nmap, Metasploit, Nessus, Wireshark, Responder, SQLmap.
• Wireless: Aircrack-ng suite, Eaphammer, Hostapd-mana.
• Systems & Coding: Python, PowerShell, Bash, Windows/Linux Admin, Active
Directory.
• Standards: OWASP Top 10, CIS Critical Security Controls
Language Skills:
• Russian: Native
• Ukrainian: Native
• English: B2 (Upper-Intermediate)
Certifications:
• Certified Web Application Pentester Training (WAPT)
• Burp Suite Certified Practitioner (BSCP)
Similar candidates
-
Спеціаліст з кібербезпеки
Remote, Kyiv -
Фахівець з кібербезпеки
10000 UAH, Remote, Poltava -
Менеджер IT-безпеки
Remote -
Фахівець з інформаційної безпеки, Junior Cyber Security Specialist
Remote -
Спеціаліст з IT-безпеки
Remote, Vinnytsia , more 4 cities -
Менеджер IT-безпеки
Remote