FA_
// Securing digital frontiers

Fadi AlAswadi

Cybersecurity Expert

Protecting organizations from evolving threats with advanced security strategies, penetration testing, and vulnerability assessment.

01 // Who I am

About Me

fadi@security-expert:~
$ whoami

Fadi AlAswadi - Cybersecurity Expert with 15+ years of experience

$ cat about.txt

I'm a dedicated cybersecurity professional specializing in penetration testing ,threat detection, incident response, and security architecture. With expertise in both offensive and defensive security, I help organizations protect their critical assets from evolving cyber threats.

$ ls -la skills/

Penetration Testing
Web Penetration Testing
Mobile Penetration Testing
API Penetration Testing
Vulnerability Assessment
Security Architecture
Incident Response
Threat Intelligence
Cloud Security
Security Automation

$ find / -name "security_vulnerabilities" -type f -delete

I'm a cybersecurity expert with a passion for protecting digital assets and infrastructure from sophisticated threats. My approach combines technical expertise with strategic thinking to build robust security postures.

With experience spanning multiple industries including finance, healthcare, and government sectors, I've developed a comprehensive understanding of diverse security challenges and compliance requirements.

I believe in continuous learning and staying ahead of emerging threats. When I'm not securing systems, I contribute to the security community through research, speaking engagements, and mentoring aspiring security professionals.

02 // What I do

Security Expertise

Penetration Testing

Conducting thorough security assessments to identify vulnerabilities before malicious actors can exploit them. Using both automated tools and manual techniques to simulate real-world attacks.

Threat Intelligence

Analyzing and correlating data from multiple sources to identify potential threats and attack patterns. Providing actionable intelligence to strengthen security posture.

Security Architecture

Designing robust security frameworks that protect critical assets while enabling business operations. Implementing defense-in-depth strategies for comprehensive protection.

Cloud Security

Securing cloud environments across AWS, Azure, and GCP. Implementing security controls, compliance frameworks, and continuous monitoring for cloud infrastructure.

Security Automation

Developing scripts and tools to automate security processes, vulnerability scanning, and incident response. Leveraging Python, Bash, and PowerShell for security operations.

Incident Response

Leading incident response efforts to quickly contain, eradicate, and recover from security breaches. Developing and testing incident response plans for various scenarios.

Technical Skills

Network Security 95%
Penetration Testing 99%
Security Analysis 95%
Cloud Security 85%
Security Automation 93%
Incident Response 90%

Tools & Technologies

Kali Linux Metasploit Wireshark Burp Suite Nmap SIEM Tools Python AWS Security Azure Security Docker Security OWASP ZAP Snort
03 // Where I've worked

Work Experience

Cybersecurity Consultant

Dynamic Solutions

2022 - Present

Supporting organizations with cybersecurity assessments, penetration testing, and awareness training initiatives.

  • Provided offensive penetration testing services for financial institutions across Yemen, focusing on critical banking, remittance, and financial systems.
  • Conducted numerous penetration tests on core banking platforms, payment gateways, and internal infrastructures, identifying and mitigating security vulnerabilities.
  • Delivered specialized API security training tailored for the banking and exchange sectors, enhancing cybersecurity awareness and secure API development practices.
  • Supported clients in strengthening their security posture by offering actionable recommendations and aligning testing methodologies with international best practices.

Bug Bounty Hunter

Online

2020 - Present

Actively engaged in bug bounty programs, discovering and reporting numerous exceptional, critical, and high-severity vulnerabilities across various websites and applications. My work includes successful findings for major organizations such as Red Bull, Bpost, UZ Brussel, and multiple private programs.

  • Identified and responsibly disclosed critical vulnerabilities impacting high-profile web applications and infrastructures.
  • Earned acknowledgments and rewards from international brands and private security programs.
  • Specialized in mobile, web application, API, and authentication security testing.
  • Contributed to improving the security posture of organizations by providing detailed technical reports and remediation guidance.

Technical Support Manager

CAC Bank — Yemen

2007 - 2024

Led the technical support operations for one of Yemen’s leading banks, ensuring the stability, security, and performance of critical banking systems and infrastructure. Managed daily IT support activities, supervised technical teams, and contributed to enhancing service delivery across all branches.

  • Oversaw the maintenance, troubleshooting, and support of banking systems, servers, and network infrastructure.
  • Managed and trained a team of technical support specialists to ensure timely and efficient issue resolution.
  • Collaborated with IT and cybersecurity teams to enhance system security, minimize downtime, and strengthen operational resilience.
  • Implemented process improvements and support frameworks that improved service quality and client satisfaction across banking operations.
04 // My credentials

Certifications

CISSP

Certified Information Systems Security Professional

CEH

Certified Ethical Hacker

CHFI

Computer Hacking Forensic Investigator

LPT

Licensed Penetration Tester

05 // My work

Security Projects

Web Recon Lite

A lightweight, web-based reconnaissance tool with a cyberpunk UI. WebReconLite performs subdomain enumeration using Subfinder, Assetfinder, Chaos, and Sublist3r, and web detection/probing using Httpx and Gau.

Python Flask Celery Docker

Vulnerable Banking API Project

This project is a demonstration of a vulnerable banking API. It is designed for educational purposes, focusing on teaching secure coding practices by showcasing common vulnerabilities in API implementations.

PHP Docker MySQL HTML
06 // Get in touch

Contact Me

fadi.alaswadi@gmail.com
$ cat contact_info.txt

Email

fadi.alaswadi@gmail.com

Phone

+1 (716) 755 3793

$ ls -la social/
$ ssh secure@fadi-alaswadi.sec -p 22