Sunderland, United Kingdom · LinkedIn · TryHackMe · Medium · Email
MSc Cyber Security graduate (Distinction) with over four years of IT operations experience across systems administration, Active Directory, Microsoft 365, endpoint management, and network support. I am developing a practical portfolio in authorised web application testing, vulnerability assessment, Active Directory security, and AI security research.
I am currently preparing for the Certified Penetration Testing Professional (CPENT) certification and am open to junior penetration testing, cybersecurity analyst, and security research opportunities in the UK.
| Area | Capabilities |
|---|---|
| Offensive Security | Vulnerability assessment, web application testing, OWASP Top 10, network scanning and enumeration, Active Directory security assessment, security reporting |
| Security Tooling | Nmap, Burp Suite, Metasploit, Cobalt Strike, Nessus, OpenVAS, Wireshark, Kali Linux |
| Enterprise Technology | Windows Server, Active Directory, Microsoft 365, Microsoft Intune, VMware, Barracuda appliances, Nagios, Uptime Robot, ServiceNow |
| Research Interests | AI and LLM security, federated learning, adversary simulation, secure system design |
| Project | Summary |
|---|---|
| SME VAPT Framework | MSc project that defines an end-to-end penetration-testing and vulnerability-assessment workflow for SMEs, from scoping and reconnaissance through validation, reporting, and controlled adversary simulation. |
| PoisonScope: Detecting Backdoored LLMs | AI security research evaluating a transformer sentiment model against TextFooler and DeepWordBug attacks, with documented mitigations. |
| CPENT Project Portfolio | Ongoing collection of CPENT study notes, lab methodology, evidence, and practical lessons learned. |
Security testing featured in this portfolio is conducted only in authorised environments, labs, and CTF platforms.
Cybersecurity Researcher - CRAC Learning
AI Security Research | 2025
- Compared federated-learning frameworks for simulation and enterprise use.
- Implemented secure federation communications using TLS certificates, authentication keys, mutual TLS, and public-key allowlisting.
Intern System Administrator - Vital Hub Innovations Lab
Hybrid | 2022-2023
- Administered Active Directory and Microsoft 365, including access controls, account lifecycle management, and group policies.
- Supported endpoint hardening and device compliance with Microsoft Intune, VMware, Barracuda appliances, and operational monitoring.
- Preparing for the CPENT certification.
- Deepening practical skills in web application testing, Active Directory attack paths, vulnerability validation, and remediation reporting.
- Continuing research into AI/LLM security and secure federated learning.
- MSc Cyber Security (Distinction), University of Sunderland.
- TryHackMe: ranked in the top 6% globally.
- Published technical notes and security write-ups on Medium.
I welcome connections with cybersecurity professionals, recruiters, and researchers. You can reach me through LinkedIn or email.


