Summary
Overview
Work History
Education
Skills
Honors And Certifications
Timeline
Generic

Nan Zhou

Winnipeg,Canada

Summary

Seasoned cybersecurity expert with over a decade of experience in penetration testing, vulnerability management, and security solution development. Adept at leveraging automated tools and manual techniques to swiftly identify and remediate critical security vulnerabilities, significantly enhancing system resilience. Spearheaded multiple large-scale security projects, establishing efficient communication with numerous clients to ensure on-time delivery and exceed project objectives. Skilled at incorporating innovative ideas into product development, continuously optimizing user experience. Possesses exceptional analytical and problem-solving abilities, earning widespread acclaim within the industry.

Overview

14
14
years of professional experience

Work History

Security Specialist

dbapp security Technology Co., Ltd
11.2017 - 04.2022
  • Conducted automated and manual penetration testing, identifying and resolving over 3,000 critical vulnerabilities, fortifying system defenses, increasing customer satisfaction by 20%, and earning widespread client acclaim.

Penetration Tester

Shanghai Topsec Network Security Technology Co., Ltd
03.2015 - 10.2017
  • Spearheaded various security service projects, including assessments, patrols, baseline verifications, penetration tests, and hardening, significantly enhancing organizational defenses.

PHP Development and Security Manager

Huahao Technology Co., Ltd
03.2013 - 03.2015
  • Led PHP project development, ensuring timely delivery and compliance with quality standards, achieving a 100% success rate and enhancing client satisfaction by 30%.

Embedded Development Engineer

Shanghai Xuanye Technology Co., Ltd
06.2009 - 12.2012
  • Developed an embedded system for automotive hydrogen fuel cell applications using C language on ARM and DSP platforms, enhancing fuel efficiency and performance by 25%.

Operation Engineer

China Mobile Limited
03.2008 - 04.2009
  • Monitored network communication base stations across the city, ensuring optimal performance and connectivity, leading to a 10% improvement in network reliability.

Education

Associate of Applied Science in Marketing -

Assiniboine Community College
08.2024

Associate of Applied Science in Computer Network Electronics Technician -

Guiyang College
07.2008

Skills

  • Proficient in penetration testing tools: KALI, IBM AppScan, HP Inspect, Nessus, AWVS, Burp, etc
  • Expert in vulnerability exploitation: SQL injection, XSS, CSRF, file upload/inclusion, command execution, and OWASP Top 10 vulnerabilities
  • Skilled in threat intelligence and emergency response: malicious file and traffic analysis, threat traceability, red/blue team exercises, and ATT&CK framework application
  • Proficient in PHP, CSS, HTML, JavaScript, and C# for security and embedded systems development

Honors And Certifications

  • Employee of the Year, dbapp security (2019)
  • Third Prize, Huawei Cloud APAC Consumer Core Attack and Defense Drill (2019)
  • Top National Ranking for Vulnerability Submissions in Chinese University Websites (2018)
  • Champion, Guosen Securities Attack and Defense Drill (2019)

Timeline

Security Specialist

dbapp security Technology Co., Ltd
11.2017 - 04.2022

Penetration Tester

Shanghai Topsec Network Security Technology Co., Ltd
03.2015 - 10.2017

PHP Development and Security Manager

Huahao Technology Co., Ltd
03.2013 - 03.2015

Embedded Development Engineer

Shanghai Xuanye Technology Co., Ltd
06.2009 - 12.2012

Operation Engineer

China Mobile Limited
03.2008 - 04.2009

Associate of Applied Science in Marketing -

Assiniboine Community College

Associate of Applied Science in Computer Network Electronics Technician -

Guiyang College
Nan Zhou