./Whoami

Hello! I am Kipchumba, a passionate Cybersecurity Analyst and IT Specialist operating out of Nairobi, Kenya.

My journey into tech started with a deep curiosity about how networks communicate and how systems are built. That curiosity naturally evolved into figuring out how those same systems can be broken, and more importantly, how to secure them.

Unlike purely offensive security professionals, my strong background in IT infrastructure gives me a unique advantage. I don't just find vulnerabilities; I understand the underlying architecture—whether it's an Active Directory forest, a Linux server, or a cloud deployment—allowing me to provide practical, effective remediation strategies.

When I am not auditing systems or managing infrastructure, you can find me tackling boxes on Hack The Box, participating in TryHackMe paths, or optimizing my personal homelab.

Technical Arsenal

Offensive Security
Penetration TestingVulnerability AssessmentsNmapBurp SuiteMetasploitPrivilege Escalation
Defensive & IT Infrastructure
Linux AdministrationActive DirectoryNetwork Protocols (TCP/IP, DNS)Firewall ConfigurationSplunk / SIEM
Web & Cloud
OWASP Top 10SQL InjectionXSSAzure FundamentalsPython AutomationBash Scripting

Experience

Front Office & Operations Assistant

Embassa Guest House & HotelJun 2025 - Dec 2025

Maintained accurate financial records, managed cash flow, handled procurement, and organized staff records to improve operational accountability.

OperationsFinanceManagement

Cybersecurity Analyst (Virtual Experience)

Mastercard (via Forage)Jul 2025

Served on the Security Awareness Team to identify phishing threats, analyze business security vulnerabilities, and implement targeted training procedures.

Phishing AnalysisSecurity AwarenessRisk Assessment

Security Analyst (Trainee)

CyberShujaaSep 2024 - Dec 2024

Conducted simulated penetration tests, practiced privilege escalation, and performed threat-hunting by analyzing network logs and traffic for suspicious activities.

NmapWiresharkMetasploitPenetration Testing

Enumerator (Contract)

Ministry of Labour and Social ProtectionOct 2024 - Nov 2024

Collected critical data for social protection programs, leveraging local language skills to build trust and ensure accurate data entry under strict deadlines.

Data CollectionReportingFieldwork

ICT Intern - Business Applications

Agile Business Solutions LimitedSep 2023 - Dec 2023

Developed and customized extensions for Microsoft Dynamics 365 Business Central, customized UI, and created reports using AL, RDLC, and Word layouts.

Dynamics 365ALRDLCVS Code

Education

Bachelor of Science in Information Technology

Umma University – Nairobi, KenyaSep 2021 – Jul 2025
Status: Graduated

Certifications

Cisco Certified Network Associate (CCNA)

Certified

Cisco

Ethical Hacking

Certified

Cisco

Security Analyst

Certified

Cybershujaa Program

Enterprise Security in Practice

Certified

IBM

Professional Foundations

Completed

ALX

Networking and Administration

Completed

Fundamentals

Achievements

Kenya Cybergame

National Cybersecurity CompetitionOngoing

Currently participating in the Kenya Cybergame, actively engaging in national-level cybersecurity challenges encompassing penetration testing, defense operations, and incident response.

Advent of Cyber 2024

TryHackMeJan 2025

Successfully completed TryHackMe's Advent of Cyber 2024, a 25-day challenge focused on real-world cybersecurity scenarios, including threat simulation, log analysis, vulnerability exploitation, malware analysis, and cloud security.

University CTF 2024: Binary Badlands

Hack The BoxDec 2024

Successfully completed the University CTF 2024: Binary Badlands, an advanced cybersecurity competition organized by Hack The Box. Demonstrated expertise in binary exploitation, reverse engineering, coding, forensics, and vulnerability analysis.