Oluwatobi Dada
Information Security Analyst Oluwatobi Dada, Websites, IT & Software
A snapshot of my Skills are: • Programming Languages: Python*, Java*, Ruby* and C. • Web Development*: PHP, HTML, JavaScript, CSS, AJAX, JSON and XML • SIEM Solutions: QRadar*, Splunk and Archsight • Penetration Testing*: Web, Mobile, Hardware, Internal and external. • Databases*: MySQL, MSSQL and MongoDB • Operating Systems*: Linux, Microsoft, Android and IOS. • Cloud: AWS*, Google Cloud and Azure. • Others: Malware Analysis*, Vulnerability Management* A Snapshot of my work experiences are: Nigeria Inter-Bank Settlement Systems PLC [Senior Information Security Analyst] July 2020 – Now I joined NIBSS to primarily lead the Application security team. One of my accomplishments is improving the security of solutions (existing and new) (by leveraging technology and collaboration) and improving application security via automation. Others are: • Program manager for implementation and certification to PCIDSS • I perform DAST and SAST of the various APIs and APPs exposed to Financial and non-Financial Institutions. • I conduct regular security assessment on the organization’s cloud infrastructure • I head the threat intelligence arm of the SOC and ensure event correlation, hunting & vulnerability remediation. • I reduced security testing delays by implementing and integrating tools with the CI/CD pipeline. • I work with the solutions architect to ensure the architecture of applications have security built into them • I’m actively involved in the agile team for four different work streams and oversee network security. • I lead incident response activity, forensics and contribute to the remediation of identified vulnerabilities. • I conduct regular domain security review and implementation of recommended security controls. • I facilitate training and awareness for colleagues and partners KPMG [Senior Cyber security consultant] Jan 2020 - July 2020 • I performed the quality assurance test for 2 top Banks’ implementation of SIEMs and SOARs solutions. • • I led red team exercises that led to a revamp of 3 top organizations in Nigeria. • I led the collaboration with clients to implement the recommendations of the VAPT engagements • I conducted Cyber Security Maturity Assessment for a top financial institution • I conducted application penetration testing for a top financial institution • I facilitated third party risk assessment for a top financial institution • • I led a comprehensive firewall review for a top financial institution after bypassing the controls in place. • I used OSINT for information gathering on of most top tier organization in Africa for practical sessions. • I facilitated sessions to explain vulnerabilities, architectures and designs to C-level staff / Board members. Access Bank PLC [Lead Information and Application Security Analyst]. Mar 2017 – Jan 2020 • I Led the App. Security team where I ensured all applications’ security-related risks are mitigated against. • I conducted VAPT on the Bank’s on-prem and cloud infrastructures • I reviewed, proposed and implemented a better firewall management strategy (Perimeter and host-based) for the Bank which drastically reduced the number of illegitimate traffic by more than 90% and • I lead the remediation that helped the Bank achieve PCIDSS recertification. • I interpreted the Bank's SIEM for reactive, predictive and corrective analysis. • I led the security implementation in the design of new products, services, processes and solutions in the Bank • I provided third level support for cyber incidence, training and counter measure for the SOC. • I led various offensive assessments for the effectiveness of security controls • • I provided support and contributions during changes to existing systems and implementation of new systems • I improved the security posture in Access Bank Nigeria and Congo DR after an assessment I led in Congo DR. • I assessed and implemented more than three emerging technologies and solutions to improve security posture. • I Developed a tracker program and social engineering assessment solution that saved the Bank 20 million Naira. • I led 2/4 investigation, forensic analysis and recovery activities. Kuda Bank [Lead Software Engineer] Sep 2016 - Mar 2017 Kuda Bank (formerly Kudi Money) was a loan agency with a unique lending model which I led the development and conducted the application security assessment of. Apart from this, my other duties were: • I managed the firm’s AWS infrastructure • I developed the security plan and policies for the company. • I conducted Vulnerability Assessments and Penetration Tests for the organization. • I investigated security breaches at the firm and designed the end-to-end architecture for the application. • I conducted Training and awareness for colleagues HouseHoldMax Limited [Lead IT Officer] July 2015 - Aug 2016 HouseholdMax Limited was an Online shopping mall that used Cs-Cart to manage the business. My functions were: • I programmed and installed add-ons and affiliate programs for Cs-Cart • I managed the LAMP stack, provided IT Assistance, performed SAST and DAST on the website and add-ons • I proposed, developed and managed third party software development for the organization. • I managed the LAMP stack. DigitalWeb Limited [Software Developer] Jan 2014 - June 2015 DigitalWeb was my first workplace after my compulsory one year service with the National Youth Service Corps. I worked as a Junior Web developer and used PHP for web development. My notable achievements were: • I developed various CakePHP applications and components that extended the functions of existing Apps. • I developed a role based access control component that was plugged into all solutions of the firm. • I provided general IT Assistance and managed the LAMP stack • Some Projects I accomplished are: recoding vacancydesk.com, nirsal.com, http://www.solnigeria.com/
Websites, IT & Software
Agile Development
30 $
Harsh Umaretiya
ROR Dev & Penetration tester(CEH-v11 certified) Harsh Umaretiya, Websites, IT & Software
Hello, I am Harsh Umaretiya. I am a dedicated and hard working person who believes in honesty and good working relation. I am graduate in Information Technology from well-known university. My education background helps me to perform according to my client’s expectations. I have excellent hands on experience in Ruby on Rails. I build web-applications in Ruby on Rails platform which using various Gems and Configuration like Full-stack web development in Ruby On Rails, Rest-APIs, FASTJSONAPIs. Also i am very good at Ruby Gems and its configuration or customization for any gems like Devise, Cancancan, Rolify, Simple_calendar, Faker, FastJSON-API, Stripe, Pg_search, wicked, Active Admin, Mini Magic, Carrierwave, Fog and long list for these gems. Apart from this i am Ec-council's certified ethical hacker and penetration tester. I can test security level of any web applications and finding bugs from that and help client's to secure their web application. I have worked with very usefull hacking tools like Burpsuite, Netsparker, Acunetix, Ettercap, Aircrack, Nmap, Wireshark, Metasploit etc.. and also familiar with Kali linux, parrot os for hacking. Vulnerability Assessment & Penetration Testing (VAPT) I will identify security loopholes in web applications that could allow malicious users to access your system and damage your reputation and customer's trust. The VAPT covers all major security standards around the globe including OWASP, SANS, CERT, PCI, ISO27001 etc.. My portfolio link:- https://harshhere.netlify.app/
Websites, IT & Software
Ruby on Rails
15 $
