TALENT-2162

Onurcan
Security Engineer
Senior
Turkey
Book this talent
Connect with talent in 24 hours qualified by our recruitment team
Freelance
hour
€ 22
Not available
Salary
€ 2220
month
EOR / Payroll from
€ 199 month
Recruitment fee
1x salary
Professional Summary
Candidate brings more than 3 years of experience as a Penetration Tester, specializing in red team operations and conducting penetration tests across various domains. They have a strong track record of working with multiple platforms, including web, mobile (both iOS and Android), APIs, network infrastructure, and more. At Barikat, they gained valuable experience as part of a red team, where they conducted penetration tests encompassing web applications, mobile applications, APIs, network infrastructure, and iOS and Android platforms. This role provided them with extensive exposure to a wide range of cybersecurity challenges and methodologies. Similarly, at Turk, they continued to hone their skills as a red team member and penetration tester, further solidifying their expertise in assessing the security of web and mobile applications, APIs, network infrastructure, and various platforms. Overall, this candidate's experience and expertise in red team operations and penetration testing across diverse platforms make them a valuable asset in the field of cybersecurity. Their hands-on experience with a variety of technologies and domains positions them well for challenging cybersecurity roles.
Video of Talent
Portfolio
Education
Bülent Ecevit University / Bachelor's degree, Computer Engineering
2016 - 2020
Certifications and Trainings
Certified Ethical Hacker(CEH) Practical / EC-Council
Mobile Application Penetration Tester (eMAPT) / eLearnSecurity
Web Application Penetration Tester Extreme (eWPTXv2) / eLearnSecurity
Certified Penetration Test Expert - Network and System Infrastructure / Turkish Standards Institution (TSE)
Certified Appsec Practitioner / The SecOps Group
API Security Engineer / APIsec University
Web Application Security Testing Course
June 2019
Trainings received during the course held by BG-Tek Information Security Technologies Institution:
Information About Web Applications.
Web Application Security Tests
CTF Events
Experience
Security Testing Specialist / Türk Telekom
Sep 2022 – Present
Turkey
Performing penetration tests on web-based applications, networks and computer systems for both Turk Telekom and Turk Telekom's customers
Pinpointing methods that attackers could use to exploit weaknesses and logic flaws
Research, document and discuss security findings with management and IT teams
Defining requirements for information security solutions
Performing verification tests
Vulnerability testing
Web Application Security Testing
Mobile Application Security Testing
Internal and External Network Security Testing
API Security Testing
Wireless Network Security Testing
Social Engineering Security Testing
Source Code Analysis
Writing reports, detailing assessment findings and recommendations
Security Testing Assistant Specialist / Barikat Cyber Security
Feb 2021 – Sep 2022
Ankara, Turkey
Performing penetration tests on web-based applications, networks and computer systems for both Barikat Cyber Security and Barikat Cyber Security's customers
Pinpointing methods that attackers could use to exploit weaknesses and logic flaws
Research, document and discuss security findings with management and IT teams
Defining requirements for information security solutions
Performing verification tests
Vulnerability testing
Web Application Security Testing
Mobile Application Security Testing
Internal and External Network Security Testing
API Security Testing
Wireless Network Security Testing
Social Engineering Security Testing
Source Code Analysis
Writing reports, detailing assessment findings and recommendations
Computer Engineer - Intern / Kumport Port Services and Logistics Industry and Trade Inc.
Jun 2019 – Jul 2019
Istanbul, Turkey
Worked with:
Software Development Team about SDLC
Network Team about how to create & manage company network,
Cyber Security Team about managing the security process of a company.

