*Highly experienced in penetration testing, web application security assessment, various attack and defense techniques;
*Working knowledge of information security best practices and standards such as ISO27001/2, PCI DSS, NIST 800-30/53/61 Cybersecurity Framework.
*Hands-on experience with both defensive (web hosting hardening, WAFs, creating modsecurity rules from scratch, firewalls, IDS, IPS) and offensive security tools and techniques.