ββββββββββββββββββββββββββββββββββββββββββββββ
β β
β ββββββ βββ βββ β
β βββββββββββ βββ β
β βββββββββββ βββ β
β βββββββββββ βββ β
β βββ ββββββββββββββ β
β βββ ββββββββββββββ β
β β
β Cybersecurity Expert β’ Kuwait π°πΌ β
β β
ββββββββββββββββββββββββββββββββββββββββββββββ
Cybersecurity Expert at a leading financial institution in Kuwait. I design security architectures, lead incident response, and build open-source tools for the cybersecurity community. My work spans offensive security, compliance automation, and critical infrastructure protection.
Education Carnegie Mellon University β’ Kuwait University β’ GUST University
Certs 8x GIAC | SANS LDR514 | SANS SEC566 | MCT | PCI DSS Professional
Location Kuwait π°πΌ
βββββββββββββββββββββββββββ¬βββββββββββββββββββββββββββββββββββββββββββββββββββ
β Banking & Financial β PCI DSS v4.0, SWIFT CSP, CBK CORF, SAMA CSF β
β ICS / OT / IoT β IEC 62443, NIST SP 800-82, NERC CIP β
β Offensive Security β Penetration Testing, Red Teaming, CTF β
β Cloud Security β AWS, Azure, GCP β Zero Trust Architecture β
β Threat Hunting β KQL, Sentinel, Splunk, MITRE ATT&CK β
β GRC & Compliance β NIST CSF, ISO 27001, CIS Controls v8 β
β Community β Arabic infosec content, mentorship, open source β
βββββββββββββββββββββββββββ΄βββββββββββββββββββββββββββββββββββββββββββββββββββ
Offensive & Red Team
| Tool | Description |
|---|---|
| S7aba | Cloud privilege escalation framework β AWS, Azure, GCP, K8s. 49 privesc methods. |
| VulnScan Framework | Automated penetration testing & vulnerability scanning engine. |
| CyberToolkit | Modular bash pentesting toolkit β recon, exploitation, post-exploit. |
| AlEnezi CTF Tool | All-in-one CTF terminal toolkit β forensics, OSINT, web, crypto. |
| HardNix | Linux security auditing for red teamers and pentesters. |
| Field Manual | Red & Blue Team field manual β interactive terminal reference. |
Compliance & GRC
| Tool | Description |
|---|---|
| CORF Compliance Tool | CBK CORF v1.0 β 876 controls, 27 domains. React + Node.js + SQLite. |
| SAMA CSF Assessment | Saudi Central Bank framework β bilingual AR/EN, 114 sub-controls. |
| CIS Benchmark Checker | CIS compliance checker for Kuwait government entities. |
| Arabic InfoSec Policies | Information security policies in Arabic (ISO/NIST aligned). |
| CIS Audit Tool | Web-based CIS Critical Security Controls audit checklist. |
Security Operations
| Tool | Description |
|---|---|
| Security Leadership Panel | CISO governance dashboard β NIST CSF 2.0 + CIS Controls v8. |
| TLS Cert Radar | SSL/TLS certificate monitoring with radar, maps, scanner. |
| KWTCyberWatch | Real-time Certificate Transparency monitoring for Kuwait. |
| SecOpsDash | Security operations dashboard for SOC analysts. |
| PhishBOT | Real-time phishing detection β REST API + React + Telegram bot. |
Infrastructure & ICS
| Tool | Description |
|---|---|
| ICS/IoT/OT Hardening | Industrial security framework β IEC 62443, NIST 800-82. |
| SecureArch | Security architecture designer with STRIDE threat modeling. |
| OpenICS-Atlas | Map & harden ICS exposure β Shodan-aware, vendor-neutral. |
| FalconOT | IoT / ICS / OT self-security assessment toolkit. |
Community
| Tool | Description |
|---|---|
| KW-OS | π°πΌ Kuwait Open Source Directory β 266 projects, 177 developers. |
| Daily Ayah | Complete Quran β 114 surahs, 6,236 ayahs, Uthmani script. |
| Dua Collection | 337+ authentic duas from Quran, Sunnah & Hisn al-Muslim. |
| CyberArsenal | Open-source cybersecurity tools platform β 60+ tools cataloged. |