Hisham Razak

Cybersecurity Professional | Penetration Tester
Thrissur, IN.

About

Results-driven Cybersecurity Professional with comprehensive expertise in penetration testing and vulnerability assessment. Certified in industry-standard security frameworks, I possess hands-on experience in threat identification, risk analysis, and security documentation. My strong technical communication skills are evidenced through published security research and technical writing, positioning me to enhance organizational security postures.

Work

Independent Professional
|

Cybersecurity Content Creator & Security Researcher

Remote

Summary

Led independent cybersecurity research and content creation initiatives, delivering actionable insights and enhancing public understanding of security best practices.

Highlights

Authored and published over 8 technical articles on Medium, effectively disseminating complex penetration testing methodologies and security frameworks to a broad audience.

Executed independent security assessments utilizing industry-standard tools including Metasploit, Burp Suite, and Nmap, identifying critical vulnerabilities and enhancing system integrity.

Translated complex security vulnerabilities into clear, actionable reports for both technical and non-technical stakeholders, facilitating informed risk mitigation and strategic decision-making.

Conducted comprehensive security research and vulnerability analysis, contributing to technical publications and maintaining continuous professional development in dynamic cybersecurity landscapes.

Education

Hack The Box Academy
Online

Specialist Program

Penetration Testing

Courses

Advanced penetration testing methodologies and exploitation techniques

Real-world security scenarios and vulnerable system assessment

Active Directory security testing and privilege escalation techniques

Advanced reporting and remediation recommendations

EHackify Institute
Offline

Bootcamp

Penetration Testing

Courses

Intensive hands-on penetration testing training with 200+ hours practical labs

Web application security testing using OWASP Top 10 framework

Network security assessment and vulnerability exploitation

Security assessment reporting and client communication protocols

Certificates

eLearnSecurity Junior Penetration Tester (eJPT)

Issued By

eLearnSecurity

Certified Network Security Practitioner (CNSP)

Issued By

SecOps Group

Google Cybersecurity Professional Certificate

Issued By

Google

Skills

Security Testing

Penetration Testing, Vulnerability Assessment, Web Application Security, Network Security Analysis, Internal/External Network Assessment, Port Scanning, Service Enumeration, OWASP Top 10, SQL Injection, XSS, Authentication Bypass, Active Directory Penetration Testing, Domain Enumeration, Privilege Escalation, Lateral Movement.

Security Assessment Tools

Metasploit Framework, Burp Suite Professional, Nmap, SQLMap, Wireshark, Kali Linux, Windows Security Assessment, OWASP ZAP, Nikto, Netcat, Nessus.

Programming & Scripting

Python, Bash Scripting, SQL, Linux Command Line.

Operating Systems

Linux, Windows.

Databases

SQL, MySQL, PostgreSQL.