profile-pic

Golam Mallick

Dedicated and accomplished cybersecurity enthusiast with a strong background in protecting critical systems and networks from evolving cyber threats. Possessing a deep understanding of cyber security principles, methodologies and industry best practices, I am committed to ensuring the confidentiality, integrity and availability of sensitive information assets.
  • Role

    Security & Reverse Engineer

  • Years of Experience

    2.5 years

Skillsets

  • Blockchain
  • Cloud Computing
  • Ethical Hacking
  • Networking
  • OSINT
  • Python
  • VAPT
  • Wapt
  • Android & ios pen-testing

Professional Summary

2.5Years
  • Oct, 2024 - Present1 yr 5 months

    Assistant Manager - Security Engineer

    Protectt.ai
  • Jun, 2024 - Present1 yr 9 months

    Security Analyst

    WST
  • Aug, 2023 - May, 2024 9 months

    Cyber Security Analyst

    Green Fellow IT Security Solutions Pvt. Ltd.(ICSS)
  • Jun, 2019 - Sep, 2019 3 months

    Cyber security Trainee (Internship)

    Lucideus (Safe Security)
  • Jul, 2022 - Oct, 2022 3 months

    Trainee Python Developer

    Aggregate Intelligence
  • Dec, 2022 - Jun, 2023 6 months

    Cyber Security Consultant

    Cyber Intelligence Solutions

Applications & Tools Known

  • icon-tool

    Kali Linux

  • icon-tool

    Nmap

  • icon-tool

    Metasploit

  • icon-tool

    Burpsuite

  • icon-tool

    Nessus

Work History

2.5Years

Assistant Manager - Security Engineer

Protectt.ai
Oct, 2024 - Present1 yr 5 months
    Perform security assessments on Android and iOS applications, focusing on RASP (Runtime Application Self- Protection) mechanisms, Reverse engineer mobile applications to identify vulnerabilities and potential attack vectors, Perform root detection bypass, Frida bypass, SSL pinning bypass, emulator detection bypass, and other advanced mobile security testing techniques, Assess applications for screenshot prevention, data leakage, and other security risks, Analyze and mitigate threats related to SIM binding, device binding, and other mobile security implementations, Map security findings and threats to the MITRE ATT&CK framework to enhance security in products and improve defensive strategies, Generate detailed security assessment reports with findings, risk ratings, and remediation recommendations, Conduct client meetings and presentations to discuss findings, risk impact, and security best practices

Security Analyst

WST
Jun, 2024 - Present1 yr 9 months
    Conducted Red Teaming engagements to assess security posture and identify vulnerabilities across various platforms, Performed Web Application Security Testing to detect OWASP Top 10 vulnerabilities and ensure compliance with security standards, Performing manual/automated network security assessment using open source and commercial security tools on various operating systems like kali, Parrot, Conducted Android and iOS Application Security Testing, including dynamic and static analysis, reverse engineering, and bypassing advanced security mechanisms, Reviewed Source Code for vulnerabilities and insecure coding practices across multiple programming languages and platforms, Created detailed vulnerability assessment reports, including risk ratings, likelihood, impact, and remediation strategies, Collaborated with clients through regular meetings to discuss findings, share progress, and recommend mitigation strategies, Worked closely with cross-functional teams to address security gaps and ensure the security of applications and infrastructure, Utilized advanced tools and methodologies such as Frida, Burp Suite, OWASP ZAP, and SAST/DAST tools for in-depth security analysis

Cyber Security Analyst

Green Fellow IT Security Solutions Pvt. Ltd.(ICSS)
Aug, 2023 - May, 2024 9 months
    Conduct comprehensive web application testing, API testing and Android testing to identify vulnerability and security weakness, ensuring the integrity and confidentiality of critical data, Generate detailed reports highlighting identified security issues and vulnerabilities and recommended remediation measures, providing actionable insights for clients, Conduct knowledge - sharing sessions to enhance the team's expertise, fostering a culture of continuous learning and professional development, Review and evaluate security assessment reports prepared by team members, ensuring high-quality deliverables and adherence to industry best practices, Lectures at different colleges and University, Training the students

Cyber Security Consultant

Cyber Intelligence Solutions
Dec, 2022 - Jun, 2023 6 months
    VAPT, NPT, WAPT, Lectures at different colleges about cyber security, Training the students and employee

Trainee Python Developer

Aggregate Intelligence
Jul, 2022 - Oct, 2022 3 months
    Web scraping, Data scraping

Cyber security Trainee (Internship)

Lucideus (Safe Security)
Jun, 2019 - Sep, 2019 3 months
    solving case studies, Documentation of tasks, Participating in CTF

Major Projects

2Projects

Bike renting project on data science

Credit card segmentation project on data science

Education

  • B-Tech in CSE

    Siliguri Institute of Technology (2022)

Certifications

  • Ceh v11 (ec-council)

  • Lcsp (lucideus certified security professional)

  • Ceh (one byte lab)

  • Python (nptel)

  • Ceh (wbut)