Skip to content

Experience

Reverse-chronological. See the Security Evidence Graph for how these roles connect to research and labs, or the Application Security page for the role framed for that specific audience.

Professional experience

Application Security Analyst — wHTa Networks

Mar 2025 – Present

Current, paid role focused on identifying, mitigating, and preventing vulnerabilities across web applications and CI/CD pipelines, applying a frontend development background to bridge engineering and security. Work spans SAST/DAST assessment (XSS, CSRF, injection flaws) early in the SDLC; enforcing secure coding practices aligned to OWASP Top 10 and CWE/SANS with developers, including remediation guidance and fix verification; secure authentication/authorization flow design (least privilege, session hardening, token management); reviewing API endpoints and client-server data transmission (HTTPS/TLS, input validation, output encoding); embedding security controls and automated vulnerability detection into CI/CD with DevOps/engineering teams; implementing CSPs and secure headers against client-side and browser-based attacks; and delivering internal security training and reviews.

Outcome: Ongoing role since Mar 2025.

Penetration Testing — wHTa Networks

Jan 2024 – Feb 2025

Supporting role on wHTa Networks' penetration testing function: assisting in conducting security assessments and penetration testing activities, collaborating with the cybersecurity team to identify and address potential vulnerabilities, participating in the development of security best practices and guidelines, and assisting in documenting findings and recommendations.

Verification Specialist — Bill Gosling Outsourcing

Mar 2022 – Sep 2024

Operational fraud, identity, privacy and compliance exposure: reviewed and validated customer applications, identity documents, and supporting records for compliance with financial-institution and privacy requirements; identified and escalated suspected fraud (forged identification, altered financial documents, impersonation attempts, account takeover indicators); supported identity and access-related checks for customer-facing systems; handled sensitive customer information against established procedural controls; and collaborated with fraud, compliance, and operations teams on suspicious-activity investigations, while maintaining record accuracy across high-volume, regulated case queues.

Outcome: 18,000+ customer applications, identity documents, and records reviewed and validated; 750+ suspected fraud attempts identified and escalated.

Information Security & System Analyst — Zionshine ICT Hub

Jan 2021 – Jan 2022

Supported identity and access management initiatives across healthcare and business environments, provisioning, modifying, and deactivating user accounts under least-privilege access controls. Assisted with deployment and integration of web-based systems, APIs, and authentication workflows, and collaborated on hospital technology projects involving account management systems and secure access controls. Investigated user access issues and security-related incidents, and participated in website/backend integration projects that reduced duplicate data-entry processes.

Outcome: 4,000+ user accounts provisioned, modified, or deactivated under least-privilege controls.

Early-Career IT & Security Operations (Nigeria, 2015–2020)

Dec 2015 – Dec 2020

Security Analyst, ZionShine ICT (Sep 2017 – Dec 2020): day-to-day security monitoring and alert response; identified setup weaknesses and implemented stronger controls before issues escalated; reviewed system configurations and applied hardening measures; collaborated across departments, vendors, and external partners on incident investigation and response; promoted security awareness practices org-wide. Compliance & IT Support Analyst, Mediasoft Technologies (Dec 2015 – Aug 2017): evaluated and installed secure hardware, networking software, and OS components against compliance standards; performed routine maintenance/health checks; configured and monitored critical systems, escalating and documenting incidents; conducted asset-tracking reviews for audits and licensing compliance; supported Windows/PC/scanner/printer environments and provided Tier 2 Microsoft Office support; applied foundational network administration (routing, switching, wireless troubleshooting); helped develop IT documentation and security checklists.

Outcome: Mediasoft Technologies: 99% uptime maintained, 90% of incidents resolved on first contact, and a 20% reduction in configuration drift from improved documentation practices.

Education

University of Guelph

2026

MSc, Cybersecurity and Threat Intelligence

Final average: 89.9%. Research focus: AI/LLM security -- adaptive defense and layered-defense architectures for LLM applications.

Conestoga College

Sep 2024 – Aug 2025

Postgraduate Diploma, Computer Application Development

Lighthouse Labs

Jun 2023 – Sep 2023

Diploma, Cyber Security

See the Application Security page for the applied lab projects from this program.

University of Nigeria, Nsukka

2011 – 2015

BSc, Microbiology

Certifications

Certifications and specialized training are on the Application Security, AI Security, and AI Governance pages.