• Файл

Muhammed

DevOps engineer

Розглядає посади:
DevOps engineer, Cyber security specialist, Фахівець чата
Вік:
23 роки
Місто проживання:
Київ
Готовий працювати:
Дистанційно

Контактна інформація

Шукач вказав телефон та ел. пошту.

Прізвище, контакти та світлина доступні тільки для зареєстрованих роботодавців. Щоб отримати доступ до особистих даних кандидатів, увійдіть як роботодавець або зареєструйтеся.

Завантажений файл

Версія для швидкого перегляду

Це резюме розміщено у вигляді файлу. Ця версія для швидкого перегляду може бути гіршою за оригінал резюме.

MUNACHISO UZOMBA
APPLICATION SECURITY / DEVSECOPS ANALYST | PHP & LARAVEL | SQL | API SECURITY | SECURITY+ | PENTEST+
Nigeria – Remote / Global Roles | [відкрити контакти](див. вище в блоці «контактна інформація») | github.com/f1reheart
PROFESSIONAL SUMMARY
Application Security-focused analyst with a backend software development foundation in PHP/Laravel, REST APIs, and relational/NoSQL databases (MySQL, MariaDB, MongoDB), combined with CompTIA Security+ and PenTest+ certifications. Comfortable reading and reasoning about backend code, database queries, and API workflows with a security lens: input validation, authentication/authorization, access control, and data integrity. Brings a practical, developer's-eye view of the software development lifecycle to application security — spotting where insecure input handling, weak validation, or poor access control commonly introduce risk — alongside experience translating technical findings into clear, business-ready reporting.
CERTIFICATIONS
• CompTIA Security+ — core security concepts: threats, vulnerabilities, risk management, network & application security, identity and access management, incident response fundamentals.
• CompTIA PenTest+ — penetration testing methodology: planning & scoping, information gathering, vulnerability identification, exploitation concepts, and reporting/remediation.
• MongoDB Certified Associate Developer — secure and efficient application development on MongoDB, including data modeling, authentication, and query design. (Confirm this is the exact title of your MongoDB Academy credential before sending — flag if it should say Associate DBA or another track instead.)
CORE SECURITY & TECHNICAL SKILLS
Secure Coding Foundations
Input validation, sanitization, error handling, and secure data-handling patterns in PHP/Laravel.
Application Security Concepts
OWASP Top 10 awareness, authentication & authorization, session management, access control.
Vulnerability & Risk Thinking
PenTest+ methodology: recon, vulnerability identification, risk prioritization, remediation reporting.
Database & API Security
SQL injection prevention, query validation, REST API design, MySQL/MariaDB/MongoDB access controls.

TECHNICAL TOOLKIT
Security & AppSec
Security+, PenTest+, OWASP Top 10, secure SDLC awareness, input validation, auth/access control
Databases
SQL, MySQL, MariaDB, MongoDB, relational & document data modeling, query security
Programming & Backend
PHP, Laravel, REST APIs, Python, Pandas, backend validation logic
Remote & Dev Tools
Git, GitHub, Trello, Slack, Google Workspace, async remote collaboration

PROFESSIONAL EXPERIENCE
Software Developer / Database & Reporting Support
Freelance & Contract Web Projects | Remote | 2020 – Present
• Designed and maintained database-driven systems using PHP, Laravel, MySQL/MariaDB, and REST APIs, applying input validation and structured query design to reduce exposure to malformed or malicious data.
• Wrote and reviewed SQL queries to retrieve, filter, and validate user, transaction, and workflow data, with attention to query construction that limits injection risk.
• Built backend validation and structured data workflows that improved data integrity, reduced user-input errors, and supported reliable, trustworthy reporting.
• Developed and supported admin/reporting features — including user management, payment workflows, and records tracking — that depend on correct access control and role-based visibility.
• Collaborated remotely via Git/GitHub, troubleshooting data, deployment, API, and database issues as part of day-to-day development workflows.
Data Analyst / Business Operations Analyst
Remote Business Operations, Sales Reporting & Consulting Support | 2024 – Present
• Cleaned and standardized customer records across spreadsheets and CRM-style workflows, improving data quality, segmentation, and reporting accuracy — skills directly transferable to data integrity and validation work in application security.
• Built structured KPI trackers and monitoring reports for conversion, outreach activity, and customer status, translating raw operational data into clear, actionable summaries for stakeholders.
• Prepared weekly management-ready reports that surfaced risk areas and next steps — the same reporting discipline used to communicate security findings to non-technical stakeholders.
• Used Excel, Google Sheets, formulas, and dashboards to monitor performance and flag anomalies across remote teams.
ADDITIONAL EXPERIENCE
Business Development / Sales Operations Associate
Remote B2B & Customer-Facing Roles | 2023 – Present
• Tracked client data and pipeline records, segmenting by risk, urgency, and decision status — applying the same structured, criteria-based evaluation approach used in vulnerability triage and prioritization.
• Produced concise reports for leadership combining qualitative and quantitative findings, supporting cross-functional, remote, and asynchronous work across time zones.
SELECTED SECURITY & DEVELOPMENT PROJECTS
• Secure Backend & Reporting Systems (Laravel/PHP): Built database-driven admin functionality with user management, payment workflows, and records tracking, applying input validation and access-control logic to protect data integrity.
• SQL Data Integrity & Query Review: Developed SQL-based reporting logic for customer, user, transaction, and workflow records — filtering, joins, grouping, and validation checks — with a focus on catching malformed or inconsistent data before it reached production reports.
• Customer Data Cleaning & Segmentation: Cleaned raw customer/prospect records, removed duplicates, standardized fields, and grouped records by risk and priority — the same triage logic used in vulnerability and finding prioritization.
• Security Certification Study Projects: Applied Security+ and PenTest+ methodology (reconnaissance, vulnerability identification, risk-based prioritization, and remediation reporting) through structured exam preparation and hands-on labs.
EDUCATION & TRAINING
• Aptech Nigeria — Software Development / Programming Training: Python, PHP, Laravel, Bootstrap, HTML5, CSS, database fundamentals, and practical software development workflows.
• CompTIA Security+ Certification — network, application, and cloud security fundamentals; identity & access management; risk management; incident response basics.
• CompTIA PenTest+ Certification — penetration testing methodology, vulnerability assessment, and reporting/remediation.
• MongoDB Certified Associate Developer — application development, data modeling, and secure query design on MongoDB.
STRENGTHS FOR APPSEC / DEVSECOPS ROLES
Developer's-eye view
Reads and reasons about real backend code and queries, not just theory — knows where insecure input handling tends to hide.
Certified foundation
Security+ and PenTest+ give a structured base in security concepts and testing methodology.
Data integrity mindset
Years of hands-on data cleaning, validation, and QA translate directly to spotting bad or malicious input.
Remote-ready & clear communicator
Experienced translating technical findings into reports non-technical stakeholders can act on.

ATS KEYWORD ALIGNMENT
Application Security, AppSec, DevSecOps, Secure SDLC, OWASP Top 10, Vulnerability Assessment, Penetration Testing, Security+, PenTest+, Secure Coding, Input Validation, SQL Injection Prevention, API Security, REST API, Authentication, Authorization, Access Control, PHP Security, Laravel, MySQL, MariaDB, MongoDB, Data Integrity, Risk Assessment, Vulnerability Prioritization, Security Reporting, Git, GitHub, Remote Collaboration, Cross-Functional Communication.
Resume positioned for Junior Application Security Analyst, AppSec Analyst, DevSecOps Analyst, Security Analyst (Developer Background), and Cybersecurity Analyst (AppSec track) roles.

Інші резюме цього кандидата

Схожі кандидати

Усі схожі кандидати


Порівняйте свої вимоги та зарплату з вакансіями інших підприємств: