Mongwoiching Marma

Cybersecurity Enthusiast & Aspiring Penetration Tester

Driven by a passion for cybersecurity, I am actively developing skills in penetration testing, vulnerability assessment, and defensive security practices. Eager to contribute to protecting digital environments and continuously learning to master the art of ethical hacking and cyber defense.

Aspiration: To become a proficient penetration tester, applying offensive security knowledge to identify and mitigate vulnerabilities, and to contribute positively to the cybersecurity community through continuous learning and ethical practices.

Aspiring Pentester

Dhaka, Bangladesh

💡 Core Skills & Developing Expertise

Building a strong foundation in offensive and defensive cybersecurity principles and tools.

Offensive Security Concepts

Penetration Testing (Learning) Vulnerability Assessment Ethical Hacking Principles Web Application Security Basics Network Reconnaissance Social Engineering Awareness OSINT

Defensive Security Awareness

Threat Landscape Understanding SIEM Tools (Familiarity) Incident Response Basics Network Security Fundamentals Endpoint Detection (OpenEDR) Risk Identification & Management Cyber Threat Hunting (Intro)

Technical & Programming Skills

Python (Scripting, Data Science Basics) Bash & PowerShell (Basics) SQL Fundamentals (Incl. Injection Aware) Linux Administration Computer Networking Cloud (OCI AI Foundations)

Security Tools Familiarity

Nmap, Wireshark, Metasploit Burp Suite (Community) Splunk/QRadar (Exposure) Qualys VM CVSS Scoring SecurityScorecard Various AttackIQ Modules

📈 Practical Experience & Internships

Applying learned concepts and gaining hands-on experience in real-world and simulated environments.

Q1 2025 - Active

Cybersecurity Intern

Code Alpha - Global Remote Operations

Actively participating in security testing and vulnerability assessments for network and web applications under supervision. Gaining experience in penetration testing methodologies, security analysis, and risk mitigation techniques. Assisting in identifying and reporting security flaws to contribute to system defense improvements.

June 2021 - December 2022

Computer Stitching Machine Programming Support Technician

Maf Shoes Limited - On-Site Industrial Complex

Provided technical support for programmable stitching machines, diagnosing and resolving hardware/software issues to minimize downtime (achieving ~30% reduction). Performed routine maintenance and collaborated with production teams to support operational efficiency and workflow optimization.

May 2022 - July 2022

Administrative Assistant Intern

GAO Tek Inc. - Remote HQ

Supported business operations by managing communications, email workflows, and CRM system data entry. Assisted with data analysis tasks and digital marketing support. Gained exposure to cybersecurity and threat management discussions related to data protection.

🚀 Learning Projects & Explorations

A collection of personal projects and tools developed to practice and explore cybersecurity concepts.

CodeGuard - Secure Code Scanner

A Python-based tool developed to explore static code analysis techniques for identifying common security vulnerabilities and code smells in various programming languages. Focuses on real-time scanning concepts and basic vulnerability reporting.

Python Static Analysis (Learning) Security Concepts Vulnerability Detection
View on GitHub

SnipHawk - Network Recon Tool

A Python script for exploring network reconnaissance and packet sniffing. Designed as a learning tool for understanding network traffic analysis and protocol inspection for ethical hacking and security assessment purposes.

Python Network Security (Learning) Packet Analysis Reconnaissance Tools
Explore Code

Bangladesh Gov Data Breach Study

A research project analyzing publicly available information on government data breaches. Aims to understand common attack vectors and propose general recommendations for improving cybersecurity awareness in public sector contexts.

Security Research (Learning) Incident Analysis Risk Awareness Public Data Review
Read Analysis

NovaCyberBarrier Firewall Project

An experimental firewall project built with Python, exploring concepts of network traffic filtering and rule-based defense. Focuses on understanding iptables interactions and basic threat detection logic for network security learning.

Python iptables (Conceptual) Network Defense (Learning) Rule-Based Filtering
See Project Code

SecureFileTransferApp Study

A Python application developed to learn and implement secure file transfer concepts. Explores AES-256 encryption, HMAC for integrity verification, and basic secure key exchange ideas for confidential data transmission.

Python AES-256 (Learning) Cryptography Basics HMAC
Review Implementation

Bybit 2025 Crypto Hack Case Study

A personal research and analysis project based on hypothetical cryptocurrency exchange security scenarios. Explores potential attack vectors, impact considerations, and general mitigation strategies in the crypto space. (PDF Report)

Security Research Vulnerability Study Crypto Security Concepts Risk Brainstorming
View Case Study

🏆 Certifications & Ongoing Training

Demonstrating a commitment to continuous learning and professional development in the cybersecurity field. (Selected Highlights - Full list on Credly)

Cisco CyberOps Associate

Cisco Networking Academy • Expected May 2025

Critical Infrastructure Protection

OPSWAT Academy • Expected May 2025 (Expires May 2026)

ISO/IEC 27001:2022 Lead Auditor

Mastermind • Expected May 2025 (Expires May 2028)

Oracle Cloud Infrastructure 2024 Certified AI Foundations Associate

Oracle • Expected Feb 2025

Certified Cyber Security Analyst (C3SA)

CyberWarFare Labs • Expected Jan 2025

Certified Network Security Practitioner (CNSP)

The SecOps Group • Expected Jan 2025
Credential ID: 9581888

Cisco Certified Ethical Hacker

Cisco Networking Academy • Expected Jan 2025

Junior Cybersecurity Analyst

Cisco Networking Academy • Expected Jan 2025

Foundationals OpenEDR Certified

Xcitium • Completed Oct 2024

SOC Level 1 Learning Path

TryHackMe • Completed May 2024

Google Cybersecurity Professional Certificate

Google • Completed Apr 2024

Cyber Defence Learning Path

TryHackMe • Completed Oct 2023
Credential ID: THM-V3WGNGGSRH

IBM Cybersecurity Analyst Professional Certificate

IBM • Completed Apr 2023

Ethical Hacking Essentials (EHE)

EC-Council • Completed Nov 2022
Credential ID: 6383264273645

Official (ISC)² Certified in Cybersecurity (CC) Training

ISC2 • Completed Dec 2022

📞 Let's Connect!

Eager to discuss cybersecurity, collaborate on learning projects, or explore entry-level opportunities in penetration testing.

Phone

(+880) 1580-821589

Location

Jigatola, Dhaka - 1205
Bangladesh