Penetration Tester with 6 years total experience in testing web applications, API's, and Android APK's. Completed several in-season CTF challenges for HTB, THM, and In-Person events such as SparkCon and DefCon. Assisted in creating an online community centered around penetration testing, as well as participate in weekly "Hack-a-long" events. Helped mentor junior level penetration testers. Actively aspiring to learn as many new skill sets as possible, as well as refine current skill set. Have skills in SQL, XML, JavaScript, Linux/Windows Systems, GraphQL, Python, Objection/Frieda, Jadx, along with many others. Familiarity with hardware such as diagnosing and repairing servers and computers. Freshly learned source code review and AWS cloud review, looking to improve the skill set.
- Ability to perform Web Application, API, Android APK, LLM, and AWS Cloud penetration testing
-Experience with modern web application penetration testing tools such as Burp Suite, NMAP, SQLMap, Dirbuster, Gobuster, SSLScan, wafw00f, Nikto, Wireshark, and many others
-Experience in guiding junior level employees as well as guiding indivduals newer to the information security ecosystem
-Some Experience performing external network penetration testing
-Some Experience performing source code review
-Work efficiently within a team in order to complete projects before expected deadlines
eWPT eLearnSecurity July 2022
Web Application Penetration Testing Certification -
proof of web application penetration testing ability on modern frameworks against OWASP top 10 as well as more complex vulnerabilities. High level report with detailed writeups on vulnerabilities required to complete course
GPEN SANS February 2024
General Penetration Testing Course -
Multiple Choice SANS certification that proves understanding of modern attack vectors and understanding of modern frameworks
Practical Secure Code Review Absolute AppSec October 2024
Secure Coding course -
Secure coding class hosted by Ken Johnson & Seth Law that goes over source code review methodology along with leveraging modern tooling to optimize process
Mobile Application hacking The Cyber Mentor July 2023
Android APK hacking -
Course covering dynamic and static analysis of Android APK applications, along with covering proper operation of Android Emulations and Certification handling to optimize testing process
Pentester Labs Badges PentesterLabs December 2022
Completed Unix, CTF, Yellow, and White badges
CWEE Hack the box
Certified Web Exploitation Expert - W.i.P. - HackTheBox's "most difficult" certification diving deep into advanced web application exploitation
CPTS Hack the Box
Certified Penetration Tester Specialist - WiP - HackTheBox's version of the OSCP, dives deep into network service enumeration and attack methodology.
AWS Cloud Red Team Specialist Cyber Warfare Labs
AWS Penetration Testing Course - W.i.P - Course on penetration testing AWS including bucket exploitation as well as IAM policy auditing.
Serena Curtin
Senior Manager, Information Security / Walmart
Serna.Curtin@walmart.com
(719)-205-9935
Gregg Feinstein
Senior Technical Expert, Information Security / Walmart
Gregg.Feinstein0@walmart.com
(702)-339-9667
Lance Pendergrass
Technical Expert team lead, Information Security / Walmart
Lance.pendergrass@walmart.com
(417)-849-7351
Steven Bennett
Director, Information Security / Walmart
Steven.Bennett@walmart.com
(479)-277-5921