Сервіс пошуку роботи №1 в Україні
Іван
Спеціаліст з кібербезпеки
- Місто проживання:
- Дніпро
- Готовий працювати:
- Дистанційно
Контактна інформація
Шукач вказав: ТелефонМесенджер
Прізвище, контакти та світлина доступні тільки для зареєстрованих роботодавців. Щоб отримати доступ до особистих даних кандидатів, увійдіть як роботодавець або зареєструйтеся.
Отримати контакти цього кандидата можна на сторінці https://www.work.ua/resumes/20399338/
Завантажений файл
Версія для швидкого
перегляду
Це резюме розміщено у вигляді файлу. Ця версія для швидкого перегляду може бути гіршою за оригінал резюме.
Meln Ivan
Penetration Tester
LinkedIn: [відкрити контакти ](див. вище в блоці «контактна інформація»)
Summary:
Detail-oriented Penetration Tester with a proven track record in large-scale
enterprise and fintech environments. Strong background in administering Windows
and Linux systems, combined with a deep understanding of network protocols.
Proficient in using a wide range of security tools and scripting languages to identify
vulnerabilities and enhance system security.
Professional Experience:
System Administrator | PA Yuzhmash, Dnipro (2020 – 2021)
• Administered Active Directory (AD): managed Group Policies (GPO) and user
rights to enforce system security.
• Installed and configured network infrastructure and networking equipment.
• Managed server administration, including maintenance, security updates, and
backup procedures.
• Administered corporate website, including security monitoring, content
updates, and performance optimization.
• Performed hardware and software maintenance and troubleshooting.
Penetration Testing Specialist | PrivatBank, Dnipro (2021 – 2024)
• Performed regular penetration testing of banking web applications and
internal infrastructure, ensuring protection of sensitive financial data.
• Identified and reported critical business logic vulnerabilities, providing
actionable remediation guidance to development teams.
• Cloud Security: Gained experience in assessing cloud-hosted environments,
focusing on identifying infrastructure misconfigurations and exposed assets.
• Conducted security research on emerging threats to stay ahead of potential
risks to banking systems.
• Developed custom Bash and PowerShell scripts to automate routine security
scans and internal audit processes.
• Collaborated with cross-functional security teams to establish and implement
best practices for securing applications.
Penetration Testing Specialist | Samsung, Kyiv (2024 – Present)
• Conduct end-to-end penetration tests of Web and Android applications,
leveraging a wide range of security tools for dynamic analysis, reverse
engineering, and bypassing client-side protections.
• Perform comprehensive Network assessments: reconnaissance, attack
surface mapping, and exploitation of misconfigured services and protocols.
• Execute Wireless security audits, including WPA Enterprise attacks, Evil Twin
scenarios, and WPS exploitation.
• Perform post-exploitation analysis: privilege escalation, lateral movement, and
simulated data exfiltration.
• Develop custom Python scripts to automate vulnerability discovery and
streamline reconnaissance tasks.
Education:
• Dnipro National University of Railway Transport named after Academician V.
Lazaryan, 2018 - 2021, Faculty of Computer Technologies and Systems (full-
time), Cyber Security (Bachelor).
• Ukrainian State University of Science and Technology 2021-2023 Faculty of
Computer Technologies and Systems (full-time), Computer engineering
(Master).
Skills:
• Web & Android: Burp Suite Pro, Frida, HTTP Toolkit, OWASP ZAP, Jadx, MobSF.
• Network & Infra: Nmap, Metasploit, Nessus, Wireshark, Responder, SQLmap.
• Wireless: Aircrack-ng suite, Eaphammer, Hostapd-mana.
• Systems & Coding: Python, PowerShell, Bash, Windows/Linux Admin, Active
Directory.
• Standards: OWASP Top 10, CIS Critical Security Controls
Language Skills:
• Russian: Native
• Ukrainian: Native
• English: B2 (Upper-Intermediate)
Certifications:
• Certified Web Application Pentester Training (WAPT)
• Burp Suite Certified Practitioner (BSCP)
Penetration Tester
LinkedIn: [
Summary:
Detail-oriented Penetration Tester with a proven track record in large-scale
enterprise and fintech environments. Strong background in administering Windows
and Linux systems, combined with a deep understanding of network protocols.
Proficient in using a wide range of security tools and scripting languages to identify
vulnerabilities and enhance system security.
Professional Experience:
System Administrator | PA Yuzhmash, Dnipro (2020 – 2021)
• Administered Active Directory (AD): managed Group Policies (GPO) and user
rights to enforce system security.
• Installed and configured network infrastructure and networking equipment.
• Managed server administration, including maintenance, security updates, and
backup procedures.
• Administered corporate website, including security monitoring, content
updates, and performance optimization.
• Performed hardware and software maintenance and troubleshooting.
Penetration Testing Specialist | PrivatBank, Dnipro (2021 – 2024)
• Performed regular penetration testing of banking web applications and
internal infrastructure, ensuring protection of sensitive financial data.
• Identified and reported critical business logic vulnerabilities, providing
actionable remediation guidance to development teams.
• Cloud Security: Gained experience in assessing cloud-hosted environments,
focusing on identifying infrastructure misconfigurations and exposed assets.
• Conducted security research on emerging threats to stay ahead of potential
risks to banking systems.
• Developed custom Bash and PowerShell scripts to automate routine security
scans and internal audit processes.
• Collaborated with cross-functional security teams to establish and implement
best practices for securing applications.
Penetration Testing Specialist | Samsung, Kyiv (2024 – Present)
• Conduct end-to-end penetration tests of Web and Android applications,
leveraging a wide range of security tools for dynamic analysis, reverse
engineering, and bypassing client-side protections.
• Perform comprehensive Network assessments: reconnaissance, attack
surface mapping, and exploitation of misconfigured services and protocols.
• Execute Wireless security audits, including WPA Enterprise attacks, Evil Twin
scenarios, and WPS exploitation.
• Perform post-exploitation analysis: privilege escalation, lateral movement, and
simulated data exfiltration.
• Develop custom Python scripts to automate vulnerability discovery and
streamline reconnaissance tasks.
Education:
• Dnipro National University of Railway Transport named after Academician V.
Lazaryan, 2018 - 2021, Faculty of Computer Technologies and Systems (full-
time), Cyber Security (Bachelor).
• Ukrainian State University of Science and Technology 2021-2023 Faculty of
Computer Technologies and Systems (full-time), Computer engineering
(Master).
Skills:
• Web & Android: Burp Suite Pro, Frida, HTTP Toolkit, OWASP ZAP, Jadx, MobSF.
• Network & Infra: Nmap, Metasploit, Nessus, Wireshark, Responder, SQLmap.
• Wireless: Aircrack-ng suite, Eaphammer, Hostapd-mana.
• Systems & Coding: Python, PowerShell, Bash, Windows/Linux Admin, Active
Directory.
• Standards: OWASP Top 10, CIS Critical Security Controls
Language Skills:
• Russian: Native
• Ukrainian: Native
• English: B2 (Upper-Intermediate)
Certifications:
• Certified Web Application Pentester Training (WAPT)
• Burp Suite Certified Practitioner (BSCP)
Схожі кандидати
-
Фахівець з кібербезпеки
33000 грн, Дистанційно, Київ, Чернігів -
Фахівець з кібербезпеки
Дистанційно -
Фахівець з кібербезпеки
Дистанційно -
Менеджер захисту інформації
20000 грн, Дистанційно, Львів -
Менеджер IT-безпеки
Дистанційно