Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic
PHIRAVIN NAIR

PHIRAVIN NAIR

Cyber Security Consultant & Penetration Tester
Kuala Lumpur,Wilayah Persekutuan Kuala Lumpur

Summary

As a dedicated Cybersecurity Consultant and Penetration Tester with 3 years of hands-on experience, I specialize in identifying vulnerabilities and strengthening systems against cyber threats. I've led successful penetration tests for clients across various industries, with a particular focus on financial institutions, uncovering critical security gaps and delivering actionable solutions to enhance security posture. Motivated by the challenge of outsmarting cyber adversaries, I bring expertise in network security, ethical hacking, vulnerability assessments, and risk management. My passion for staying ahead of evolving threats is complemented by a deep knowledge of tools such as Burp Suite, Kali Linux, Metasploit and other open source tools.

Overview

8
8
years of professional experience
9
9
years of post-secondary education
3
3
Certifications
4
4
Languages

Work History

Security Consultant

FIRMUS SDN BHD
11.2022 - Current

As Team Lead for Red Team operations, overseeing the planning and execution of sophisticated offensive security assessments.

  • Coordinate and mentor both core and ad hoc team members, ensuring effective collaboration and timely delivery of engagement objectives.
  • Specialize in conducting Vulnerability Assessments and Penetration Testing across a wide range of environments, including Active Directory (AD) and cloud security assessments.
  • Perform both external and internal penetration tests, including Host Assessments, Database Assessments, Network Device Configuration Reviews, and PCI segmentation.
  • Expertise in Web and Mobile Application Penetration Testing, API Testing, and Red Team assessments.
  • Skilled in performing White Box, Black Box, and Grey Box testing methodologies.
  • Delivered a cybersecurity talk at one of the top universities in Malaysia, educating the next generation of security professionals.
  • Led client meetings, presenting detailed findings to board directors and senior stakeholders, and providing actionable remediation strategies.
  • Manage multiple projects simultaneously, consistently meeting deadlines and ensuring the highest standards of security and client satisfaction.
  • Experienced in using a variety of industry-standard tools, including Burp Suite, Kali Linux, Metasploit, and more.
  • Provide clients with well-documented reports outlining vulnerabilities, their potential impact, and recommended remediation steps.
  • Dedicated to continuous learning, always seeking to expand expertise and stay ahead of emerging cybersecurity threats and best practices.
  • Continuously refined penetration testing methodologies in response to evolving threats and client feedback, ensuring ongoing relevance and effectiveness.
  • Mentored junior team members in best practices for ethical hacking and penetration testing techniques, fostering professional growth among colleagues.
  • Developed scripts and tools to automate repetitive tasks during the penetration testing process, saving time without compromising quality or effectiveness.
  • Performed social engineering assessments to identify potential employee-based threats, increasing organizational awareness of security risks.

Security Consultant (Intern)

FIRMUS SDN BHD
10.2021 - 03.2022
  • Conduct comprehensive Vulnerability Assessments and Penetration Testing across various environments, identifying security weaknesses and risks.
  • Perform OSINT (Open Source Intelligence) gathering and Red Team assessments to simulate advanced, real-world attack scenarios.
  • Specialize in Web Application Penetration Testing, as well as Internal and External Penetration Testing, including Host Assessments, Database Assessments, and PCI Segmentation reviews.
  • Provide actionable remediation strategies and solutions to address vulnerabilities and enhance system security.
  • Collaborate effectively in team-based environments and demonstrate strong communication skills when working with both technical and non-technical stakeholders.
  • Consistently meet deadlines and manage multiple tasks and projects simultaneously while maintaining high-quality deliverables.
  • Develop and present detailed, well-written reports outlining identified vulnerabilities, their potential impact, and recommended solutions.
  • Possess strong problem-solving capabilities to quickly identify and mitigate security threats.
  • Continuously learn and adapt to new cybersecurity trends, techniques, and technologies to stay ahead of emerging threats.

Information Technology Trainee

Syntronix Asia Sdn Bhd
03.2017 - 08.2017
  • Provide technical assistance and support for incoming issues related to computer systems, software, and hardware.
  • Provide assistance in information technology projects.
  • Provide assistance to the Information Technology team including data analysis, security monitoring, data entry, and project management.

Education

Bachelor of Science - Computer Security

Technical University of Malaysia Malacca
08.2018 - 11.2024

Diploma in Computer Science - undefined

University Putra Malaysia
09.2014 - 06.2017

Skills

Vulnerability assessment

Penetration testing

Security testing

Ethical hacking

Network security

Wireless security

Mobile security

Social engineering prevention

Decision-making

Threat detection

Endpoint security

Data protection

Security awareness training

Certification

Offensive Security Certified Professional (OSCP)

Timeline

Security Consultant

FIRMUS SDN BHD
11.2022 - Current

Security Consultant (Intern)

FIRMUS SDN BHD
10.2021 - 03.2022

Bachelor of Science - Computer Security

Technical University of Malaysia Malacca
08.2018 - 11.2024

Information Technology Trainee

Syntronix Asia Sdn Bhd
03.2017 - 08.2017

Diploma in Computer Science - undefined

University Putra Malaysia
09.2014 - 06.2017
PHIRAVIN NAIRCyber Security Consultant & Penetration Tester