Summary Certifications Engagement Log Flagship Project Projects Toolkit Education Contact
STATUS: OPEN TO WORK · EGYPT & REMOTE

Hosam Dyab

eJPT-certified penetration tester and CS graduate (MTI, Excellent, top-5). I find vulnerabilities, document them clearly, and help teams fix them - ready for junior pentest or appsec roles in Egypt and remote.

eJPT INE Certified Top 5 CS Graduate Open to Full-time & Freelance
0 Primary Cert
0 Engagements
0 Projects
0 Top Class Rank
Location
Cairo, Egypt
Certification
eJPT (INE)
Focus
Pentesting → Sec. Eng.
Availability
Full-time / Freelance
Portrait of Hosam Dyab
IDENTITY VERIFIED · CAIRO, EG
hosam@cairo:~
SCROLL
PROFILE Junior Penetration Tester Focused on web, API, and practical assessment work
AVAILABILITY Open to full-time Egypt, remote, and freelance security engagements
WORK STYLE Clear reports, practical fixes Findings written for both technical teams and hiring managers
01

Executive Summary

Who I am, in one paragraph

Recent Computer Science graduate from the Faculty of Computers and Artificial Intelligence at MTI, with an Excellent-grade record and a top-5 class ranking. eJPT-certified through INE, with hands-on cybersecurity exposure across an internship, a workshop track, and applied cryptography and anti-fraud engineering on a shipped mobile system. Comfortable across Python, Java, C++, and SQL, with practical experience spanning IT infrastructure, enterprise data platforms, and full-stack development. Seeking a Junior Penetration Tester role in Egypt, open to freelance security engagements, with a clear line of sight toward a Security Engineer position.

PYTHONNETWORK SECURITYWEB APP SECURITYAPPLIED CRYPTOGRAPHYFLUTTER / FULL-STACK

Certified & Trained

eJPT through INE, plus ITI ethical hacking and IEEE cybersecurity workshop experience.

Real Engagements

Security internship, enterprise data platform exposure at Raiffeisen Bank, and shipped anti-fraud features.

Clear Reporting

Strong technical writing - I explain findings, impact, and remediation steps recruiters and teams can act on.

02A

How I Can Help

What I bring to a team from day one

Web & API Testing

Assess common attack surfaces, document weaknesses clearly, and prioritize issues based on business impact.

  • Recon and enumeration
  • Input-validation and auth-flow review
  • Basic remediation guidance

Security Reporting

Turn technical findings into concise reports that recruiters, founders, and engineering teams can quickly act on.

  • Risk + impact summaries
  • Reproducible findings writeups
  • Actionable next steps

Secure-Build Mindset

Bring a builder’s perspective from shipping apps, AI-backed features, and anti-fraud flows, not only finding bugs.

  • JWT/auth awareness
  • Defensive implementation thinking
  • Cross-functional communication
02

Scope & Certifications

What's verified

PRIMARY

eJPT: Junior Penetration Tester

Issued by INE

JUN 2025 → JUN 2028

Verify credential
ITI

Ethical Hacking

Information Technology Institute

ITI

Computer Network Fundamentals

Information Technology Institute

MICROSOFT

Azure Data Fundamentals (DP-900)

Microsoft

MICROSOFT

Microsoft Dataverse

Microsoft

GOOGLE

Digital Marketing

Google

02B

Why Recruiters Shortlist Me

Fast proof, without reading the whole portfolio

CERTIFIED

Verified baseline in offensive security

eJPT gives a recognized foundation in practical junior-level penetration testing workflows.

SHIPPED WORK

Built real systems, not only lab exercises

My graduation project shipped anti-fraud and identity-verification features under realistic product constraints.

COMMUNICATION

Can explain risk clearly

I enjoy translating technical findings into business-aware language teams can understand and fix quickly.

LEARNING CURVE

Security-focused growth path already in motion

Actively deepening skills in AD, Windows privilege escalation, Burp Suite, OWASP Top 10, and Docker security.

03

Engagement Log

Where I've worked

Raiffeisen Bank International AG

Worked within a data warehouse platform team at a major European bank, gaining exposure to enterprise data infrastructure, access controls, and operational data-handling standards.

→ Environment: regulated financial-sector data platform

Prodigy InfoTech

Completed applied cybersecurity tasks covering reconnaissance, vulnerability identification, and security-tooling fundamentals as part of a remote internship track.

→ Focus: hands-on reconnaissance & vulnerability-identification tasks

IEEE Cairo University Student Branch

Completed a hands-on cybersecurity apprenticeship track covering core security concepts and practical exercises alongside a student engineering community.

→ Format: extended apprenticeship, hands-on labs

InterContinental Hotels & Resorts

Supported hotel IT infrastructure including database operations, the Micros POS system, and guest door access systems, while maintaining security systems and access controls in line with hotel IT and data-protection policies.

→ Scope: POS integration, access control, data-protection compliance

04

Flagship Engagement

Deep-dive case study

GRADUATION PROJECT · 2025-2026

ClassTrack

Flutter · Supabase · Python (Flask) · YOLOv8 · FaceNet · Linear Regression

Supervised by Prof. Dr. Hanafy Mahmoud Ismail

A mobile system for student performance monitoring and QR-based attendance, built with the same instinct that drives a pentest: assume the system will be attacked, and design so that attacks fail quietly and safely.

0%
Face-verification true-accept rate
0
R² · grade prediction model
0s
QR token refresh window
  • Built an anti-fraud attendance pipeline combining time-bound dynamic QR codes with on-device face verification (YOLOv8-Face + FaceNet), JWT-based API authentication, and encrypted local storage.
  • Designed a cross-platform Flutter app backed by Supabase and a Flask AI microservice, plus a linear-regression grade-prediction model for early at-risk-student alerts, open-sourced separately as student-grade-prediction-api.
  • Validated the system through a live pilot in an Object-Oriented Programming course section, and managed the project end to end from planning through production deployment.
Hosam Dyab with his graduation project supervisor, holding the ClassTrack thesis book
EXHIBIT A · Defense day, with Prof. Dr. Hanafy Mahmoud Ismail
The ClassTrack graduation project team on defense day
EXHIBIT B · The ClassTrack team, defense day
05

Additional Engagements

Independent & coursework projects

Also built: Admin-app (Flutter/Dart), an administrative dashboard companion to ClassTrack · Quiz-App (CSS), a front-end quiz interface.
06

Toolkit

Languages, frameworks, concepts

Security Focus
ReconnaissanceVulnerability AssessmentWeb App SecurityAPI SecurityJWT / Auth FlowsApplied CryptographyNetwork Fundamentals
Languages
CC++C#JavaPythonSQL (MySQL)Dart
Frameworks & Tools
FlutterSupabaseFlaskGitGitHubVisual StudioVS CodeIntelliJ IDEALinuxWindows
Concepts
Object-Oriented DesignData Structures & AlgorithmsRelational DatabasesML & CV fundamentalsVersion Control
Languages Spoken
Arabic (Native)English (Professional)German (B2)French (Beginner)
Currently Deepening
Active DirectoryBurp SuiteWindows PrivescOWASP Top 10Docker Security
07

Credentials & Education

Academic record

Modern University for Technology and Information (MTI)
Sep 2022 - Jul 2026
Bachelor of Computer Science, Faculty of Computers & Artificial Intelligence

GPA: Excellent (Distinction), 4-year Dual Degree Program. Graduate, certificate pending issuance.

Consistently ranked among the top students, Computer Science (MTI)
Enactus MTI: Head of Marketing & Media (Sep 2023 - Feb 2024); Vice Head (Nov 2022 - Sep 2023)
Organizer, EYE - Ministry of Youth and Sports of Egypt (Feb 2025 - Present)
08

Hiring FAQ

Quick answers for recruiters and security leads