Skip to content

I help organizations build secure software ecosystems through structure and governance.

Riyadh, Saudi ArabiaApplication & DevSecOps Security

CEH · ECSA · CND
Certified
5+ Years
Experience
Work with me
Have a system that needs a second, harder look?
01Approach

5+ years in application security — auditing, implementation, and automation across compliance reporting, secure development, and DevSecOps. I focus on embedding security into the SDLC and CI/CD pipeline itself, not bolting it on after, and on delivering measurable results in weeks, not quarters.

02Services
See all →
DevSecOps
Ensure secure development with integrated security in your SDLC and CI/CD pipelines.
Threat Modeling
Proactively address security risks with tailored threat modeling services.
Secure Code Review
Combine automated and manual code review for thorough analysis of your application.
Integration Security Review
Evaluate and improve the security of integrated systems with a detailed security review.
03Selected work
Full history →
Elm — DevSecOps Resident Engineer
Oct 2024–Present
Principal Application Security Consultant, embedding security across the SDLC and CI/CD for cloud-native & on-prem environments.
Fawry Banking & Payment Technology
Jan 2023–Jan 2024
Team Lead, Application Security (FAST) — PCI ASV review, SSDLC planning, mobile/web/network/POS pentesting.
04Writing
See all →

Writing coming soon.

Work with me
Have a system that needs a second, harder look?