Skip to content
Sakil Ahamed

About me

Sakil Ahamed

Cybersecurity Professional

A cybersecurity professional specializing in Web Application Security, API Security, and Penetration Testing. I'm focused on finding real-world vulnerabilities, validating their impact, and helping organizations make better security decisions.

That is where I come in. I approach security from an attacker's perspective, combining hands-on testing with a business-focused mindset. From identifying vulnerabilities in applications and APIs to delivering clear, actionable security findings, I focus on turning technical weaknesses into practical improvements.

Sakil Ahamed signature

/ HOW I WORK

From Scope to Security, With a Clear Process.

A structured security testing approach designed to uncover meaningful vulnerabilities, validate their impact, and give your team clear actions to strengthen security.

01

Requirement Analysis

Define scope, objectives & attack surface.

02

Security Assessment

Discover vulnerabilities across the attack surface.

03

Reporting

Deliver evidence-backed findings and remediation guidance.

04

Revalidation

Confirm fixes and close the security loop.

EXPERTISE

Security expertise built for real-world threats

Hands-on security testing across web, API, infrastructure, and cloud — with a focus on manual validation and practical risk assessment.

Offensive SecurityWeb & APICloud & Infra

Skill Radar

Proficiency %
255075100Web AppSecurityAPISecurityPenetrationTestingRedTeamingCloudSecurityNetworkSecurity90%90%88%75%65%70%
Proficiency fillBoundary line

Proficiency Breakdown

Web Application Security90%
API Security90%
VAPT / Penetration Testing88%
Application Security82%
Red Teaming75%
Active Directory72%
Network Security70%
Cloud Security65%

Levels reflect hands-on experience and practical application.

/ TECHNOLOGY STACK

Tools Behind the Testing

I use a practical security toolkit across web applications, APIs, infrastructure, cloud environments, and offensive security assessments — selecting the right tools for the target, not the other way around.

Burp Suite

Web Proxy

Caido

Caido

Web Proxy

Nuclei

Nuclei

Vulnerability Scanner

Nessus

Nessus

Network Scanner

ffuf

ffuf

Fuzzer

BloodHound

BloodHound

AD Recon

Ghidra

Ghidra

Reverse Eng.

AWS

Cloud Platform

Azure

Azure

Cloud Platform

Active Directory

Active Directory

Identity & Access

Python

Python

Scripting

MySQL

MySQL

Database

MongoDB

MongoDB

Database

/ Background

Career Chapters

From enterprise security to independent research — each chapter shaped how I test, assess, and protect applications.

Current Role2025 — Present

Cyber Security Analyst

Tata Consultancy Services (TCS)

Working in an enterprise cybersecurity environment with a focus on security assessment and application/API security. Applying practical penetration-testing knowledge to identify vulnerabilities, assess security risks, and support stronger security practices.

022025 — 2025

Junior Security Analyst

Webhibe Technology

Gained hands-on experience in cybersecurity and security assessment, developing practical skills across vulnerability identification, penetration testing, and application security.

03Ongoing

Independent Security Research & VAPT

Independent / Freelance

Conducting authorized security research and client-focused VAPT engagements across web applications and APIs. Completed 10+ VAPT projects, while researching and responsibly reporting vulnerabilities discovered across real-world platforms.

/ LET'S TALK SECURITY

Let's Find Out Where Your Security Stands.

Tell me about your application, API, or security requirements. Let's discuss the right testing approach and next steps.