Enterprise application assessments
Assessing application portfolios for weaknesses in authentication, authorization, and business logic. The work includes investigating relationships between components, validating findings, and working with engineering teams on remediation.
My contribution
Manual penetration testing, secure code review, SAST/SCA triage, supporting evidence, technical reporting, and validation of proposed fixes.
Web & API assessments ↗