VAPT Intern
- Hands-on web application testing: recon, SQL injection, XSS and access control
- Labs across PortSwigger, TryHackMe and DVWA, with Burp Suite
- Completed a mini web VAPT assessment written up as a full report
Security · GRC · Markets
Cybersecurity & GRC Analyst
I find security weaknesses and explain what they mean for the business. Trained in ethical hacking and VAPT, with a background on a trading floor.
About
I started my career on a trading floor, building and back-testing strategies against years of market data. That habit of forming a hypothesis, testing it and measuring the result is exactly what security work rewards.
Today I focus on vulnerability assessment and penetration testing (VAPT) and governance, risk and compliance (GRC): finding the gaps, ranking them by business impact, and writing them up so non-technical people can act on them.
Experience
Work
Risk assessments for simulated company environments on TryHackMe and Forage, with risk matrices, threat models and NIST-aligned fixes.
Investigated a phishing scenario, traced the root cause and wrote an executive-style briefing. Forage, 2025.
Capture the Flag challenges that sharpened recon, exploitation and problem-solving under pressure.
Certifications
Skills
Threat Desk
For businesses
A fixed-price check of your website's security with a plain-English report and the exact fixes. I only test sites you own, and only with your written permission.
Contact
Hiring for a GRC, security analyst or risk role, or want your website checked? Send me a message.
Sanda.adedotun@yahoo.comLinkedIn