Skip to content
03Work

Full work history.

Elm — DevSecOps Resident Engineer
Principal Application Security Consultant. Led enterprise-wide application security and DevSecOps initiatives, embedding security across the SDLC for cloud-native and on-prem environments. SAST/DAST/IAST tuning and administration, CI/CD security automation, Application Maturity Assessment, PAMM analysis by Synopsys.
Oct 2024–Present
AppSec — Application Security Consultant
Provided application security services for AppSec customers: threat modeling assessments for applications and cloud, and mobile/API/web penetration testing.
Jan 2024–Sep 2025
Fawry Banking & Payment Technology — Staff Application Security / Team Lead
Team Leader for Fawry's Application Security Team (FAST) and Vulnerability Management (VMR). PCI ASV scan review, SSDLC planning with Agile Scrum teams, penetration testing across mobile/web/network/POS devices, DevSecOps planning (SCA/SAST/DAST/IAST/container security).
Jan 2023–Jan 2024
Fawry Banking & Payment Technology — Senior Application Security Engineer
Application security engineering within Fawry's security team.
Jan 2022–Jan 2023
Fawry Banking & Payment Technology — Application Security Engineer
Application security engineering within Fawry's security team.
Jun 2021–Dec 2021
Cloud Consultancy (Egypt) — Cyber Security Engineer / Penetration Tester
Internal & external network pentesting, web and mobile application pentesting, written reporting and retesting. Methodologies: OWASP, NIST, SAMA.
Sep 2020–Jun 2021
Next Technology Leaders (NTL) — Cyber Security Specialization, Intern
Code vulnerability analysis, applied cryptography, hardware security, and security integration across every layer.
Feb 2017–Oct 2017

Want more detail? See the full history on LinkedIn →

Work with me
Have a system that needs a second, harder look?