● identity verified — access level: public
SUSANT WAGLE
▌
Penetration Tester with 3+ years securing applications, networks, cloud and containerized environments — from Zero Trust architecture to hands-on penetration testing and SOC automation.
~/home / whoami.sh
whoami --verbose
I design and break systems for a living — building Zero Trust architectures and SOC pipelines by day, and probing web, mobile, API and network attack surfaces to find the gaps before someone else does. Lately I've been folding AI-assisted analysis into detection engineering and vulnerability triage to move faster without losing rigor.
| ROLE | Penetration Tester |
| FOCUS | Security architecture · Zero Trust · SOC/MSSP operations |
| LOCATION | Kathmandu Nepal |
| CONTACT | thehax345@gmail.com |
~/home / skills
ps aux | grep skill
| PID | PROCESS | LOAD | STAT | LINKED TOOLS |
|---|---|---|---|---|
| 0142 | security-architecture | 92% | RUN | Zero Trust · SOC/MSSP review · threat modeling |
| 0187 | siem-detection-eng | 88% | RUN | Wazuh · MITRE ATT&CK · alert correlation |
| 0213 | web-app-security | 95% | RUN | SQLi · XSS · CSRF · SSRF · IDOR · OWASP Top 10 |
| 0256 | pentest-toolchain | 90% | RUN | Burp Suite · Nmap · Metasploit · Nuclei · ffuf |
| 0301 | devsecops-pipeline | 80% | RUN | CI/CD security · secret detection · container security |
| 0344 | ai-assisted-secops | 75% | RUN | Claude · ChatGPT · AI workflow automation |
~/home / experience
tail -f experience.log
[2024-12-02] INFO connection established — role active
Penetration Tester | Soc Analyst @ CypherMatha
- Designed security architecture aligned with Zero Trust principles — least privilege, identity-based access, micro-segmentation.
- Built the organization's SOC MSSP function and ran continuous monitoring with Wazuh, ELK and Splunk.
- Led penetration testing across web, API, network and mobile, with prioritized remediation strategies.
- Implemented IAM controls — RBAC, MFA and access governance — across enterprise systems.
- Integrated SAST, DAST and secret detection into CI/CD pipelines via GitHub Actions.
- Led incident response and threat hunting, cutting response time and containing impact.
[2023-01] INFO role started · [2024-02] INFO role closed
Security Analyst@ Cynical Technology
- Ran comprehensive penetration tests across systems, networks and applications.
- Assessed IT infrastructure security posture with cross-functional teams.
- Developed testing plans aligned with industry best practices, and delivered detailed remediation reports.
- Led and mentored fellow penetration testers, and helped shape internal security policy.
[2022-02] INFO role started · [2023-01] INFO role closed
Penetration Tester@ Eminence Ways
- Enumerated attacks and scored criticality against NIST and organization-specific controls.
- Tested in-scope web applications for vulnerabilities using Burp Suite, ffuf, Nuclei and Postman.
- Authored PoCs and formal attack-scenario reports for clients, following OWASP methodology.
~/home / education
mount -l /credentials
| NAME | TYPE | DETAIL |
|---|---|---|
| Master in Cyber Security | EDUCATION | Islington College, Kathmandu · May 2023 – Jan 2026 |
| Bachelor in Cyber Security | EDUCATION | Softwarica College of IT & E-Commerce · Sep 2019 – Feb 2022 |
ENGLISH
NEPALI
HINDI
~/home / projects / geo
geoip --scan --projects
Security engagements & projects delivered across regions — HQ: Kathmandu, Nepal.
🇳🇵Nepal HQ
🇮🇳India
🇧🇹Bhutan
🇹🇭Thailand
🇸🇬Singapore
🇸🇦Saudi Arabia
🇯🇵Japan
🇦🇪Dubai, UAE
🇩🇪Germany
🇦🇺Australia
~/home / acknowledgement
cat acknowledgements.txt
Facebook
Yahoo~/home / certifications
ls -la /certifications
Lead Auditor
Mastermind
Certified AppSec Practitioner
CAP
~/home / contact
nmap -sV susantwagle.dev
✓ scan complete — 1 open ports found, ready to accept connections
| PORT | SERVICE | STATE | |
|---|---|---|---|
| 25/tcp | email — thehax345@gmail.com | open | connect |
email copied to clipboard_