
About Me
Bug Bounty Hunter & Ethical Hacker
Professional Summary
Experienced cybersecurity professional with over 15 years in IT infrastructure, system engineering, and security management. Currently serving as Information Security Manager at a National Administration, with deep expertise in Linux systems, network security, and automation technologies.
My passion extends beyond traditional IT roles into offensive security through bug bounty hunting and penetration testing. I believe in continuous learning and staying current with emerging threats and security technologies through formal education and hands-on research.
Professional Experience
Bug Bounty Hunter & Ethical Hacker
Independent Security Researcher
Active security researcher specializing in web application security testing and vulnerability discovery across diverse targets and attack surfaces. Participating in responsible disclosure programs across major platforms including HackerOne, BugCrowd, and private bug bounty programs. Dedicated to identifying critical security vulnerabilities before malicious actors can exploit them, contributing to a safer digital ecosystem.
Key Responsibilities & Achievements:
- ▸Discovered and responsibly disclosed critical security vulnerabilities in major web applications and platforms
- ▸Specialized in OWASP Top 10 vulnerabilities, business logic flaws, and advanced attack vectors including API security and authentication bypasses
- ▸Developed custom tools, automation frameworks, and innovative methodologies for efficient security testing and reconnaissance
- ▸Built strong reputation within the security community through consistent responsible disclosure and detailed vulnerability reports
- ▸Continuous research in emerging attack techniques, zero-day vulnerabilities, and modern defense strategies
- ▸Active participation in Capture The Flag (CTF) competitions to sharpen offensive security skills
Founder & Principal Security Consultant
AYSOLI CyberSecurity Gubser
Providing highly specialized and vendor-agnostic consulting and assurance services in IT security with a focus on strategic cybersecurity advisory. Dedicated to the strategic defense of complex network infrastructures, vendor-neutral design of security architectures, and comprehensive penetration testing of networks and web applications. Supporting C-level executives and technical leadership in defining their security strategy, implementing robust security frameworks, and achieving measurable improvements in their security posture.
Key Responsibilities & Achievements:
- ▸Delivered comprehensive security audits, risk assessments, and strategic consulting for securing complex enterprise network environments and critical infrastructure
- ▸Successfully executed advanced 'black-box' and 'white-box' penetration tests for mission-critical web applications, internal networks, and external perimeter defenses
- ▸Conceptualized and recommended vendor-agnostic security solutions, architectures, and frameworks tailored to specific client requirements and compliance needs
- ▸Developed and led multi-phase projects to enhance the overall security posture for large-scale enterprise clients across various industries
- ▸Produced comprehensive, clear, and action-oriented security reports with executive summaries and presented technical findings to C-level executives and technical management
- ▸Established long-term security roadmaps and incident response capabilities for clients, ensuring sustainable security improvements
Information Security Manager
Public Administration
Serving as Information Security Officer with comprehensive responsibility for information security management across government digital services. Leading security governance initiatives, policy development, and risk management programs to protect critical national infrastructure.
Key Responsibilities & Achievements:
- ▸Developed and implemented comprehensive security awareness training programs for government staff
- ▸Established security policy frameworks aligned with national and international standards
- ▸Conducted enterprise-wide risk analyses and security assessments
- ▸Led internal penetration testing and vulnerability scanning initiatives
- ▸Managed security incident response and crisis management protocols
- ▸Ensured compliance with ISO 27001 and national security requirements
Security Engineer Professional
Public Administration
Advanced technical security role focusing on infrastructure protection, network security, and system hardening for government digital services. Specialized in firewall management, mail security, web security, and Linux system administration.
Key Responsibilities & Achievements:
- ▸Architected and managed enterprise firewall infrastructure (CheckPoint, Fortigate, Sophos)
- ▸Implemented and maintained mail security solutions (FortiMail, SeppMail)
- ▸Deployed web security and proxy solutions (Citrix Netscaler, Cisco IronPort)
- ▸Administered and hardened Linux server environments for critical government services
- ▸Conducted security assessments and vulnerability management
- ▸Developed security automation and monitoring procedures
ICT System Engineer Senior
IT Service Provider
Senior consulting role providing comprehensive IT infrastructure and security solutions for enterprise clients. Specialized in Linux server engineering, network infrastructure design, and advanced firewall management across diverse client environments.
Key Responsibilities & Achievements:
- ▸Designed and implemented Linux server infrastructures (RedHat Enterprise Linux, Ubuntu)
- ▸Architected network solutions using Cisco and HP switching technologies
- ▸Deployed and managed WLAN infrastructure (HP WLAN Controller, Huawei WLAN Controller)
- ▸Implemented enterprise firewall solutions (WatchGuard, pfSense, Cisco ASA)
- ▸Provided security consulting and infrastructure design services
- ▸Mentored junior engineers in system administration and security best practices
System Engineer
IT Service Provider
System engineering role focused on Linux infrastructure, network design, and security implementation for mid-sized enterprise clients. Developed expertise in enterprise Linux systems and Cisco security technologies.
Key Responsibilities & Achievements:
- ▸Deployed and maintained Linux server environments (RedHat Enterprise Linux, Ubuntu)
- ▸Implemented network infrastructure solutions using Cisco switching technologies
- ▸Managed enterprise firewall platforms (Fortigate, Cisco ASA)
- ▸Conducted system hardening and security configuration
- ▸Provided technical support and infrastructure consulting for client projects
System Engineer
IT Service Provider
Foundation system engineering role focusing on Windows Server infrastructure, network technologies, and security implementations. Gained comprehensive experience in enterprise IT environments while developing core security and infrastructure skills.
Key Responsibilities & Achievements:
- ▸Designed and implemented Windows Server infrastructures and Active Directory environments
- ▸Deployed network infrastructure (HP Switch, HP WLAN Controller)
- ▸Managed firewall solutions (WatchGuard) for enterprise clients
- ▸Developed system administration and security monitoring procedures
- ▸Participated in infrastructure projects and security implementations
IT Professional
Food Industry
IT professional role supporting enterprise infrastructure operations in a manufacturing environment. Focused on Windows server and client systems, thin client technologies, and network infrastructure maintenance.
Key Responsibilities & Achievements:
- ▸Managed Windows Server infrastructure and client deployments
- ▸Administered thin client environment (Igel ThinClient)
- ▸Supported Cisco network infrastructure operations
- ▸Provided technical support for enterprise systems and end users
- ▸Participated in IT infrastructure upgrades and maintenance projects
Education & Certifications
CAS Cybersecurity and Information Risk Management
University of Applied Sciences Northwestern Switzerland (FHNW)
2024 - 2025
Advanced cybersecurity program focusing on CISSP, BSI, ISO 27000, and NIST frameworks. Comprehensive coverage of information risk management, security governance, and compliance.
CAS Cyber Security
Eastern Switzerland University of Applied Sciences (OST)
2021 - 2022
Specialized program covering both offensive and defensive cybersecurity techniques, including penetration testing, incident response, and security architecture.
IT Service Engineer HF / Technician HF Computer Science
Technische Berufsschule Zurich (TBZ)
2017 - 2020
Comprehensive technical education focusing on operating systems, databases, network technologies, and IT architecture design.
Professional Certifications
BSCP (In Progress)
2026
CISSP (In Progress)
2026
ISO 27001 Foundation
2024
Certified Ethical Hacker (CEH)
2020
Technical Skills
Security Testing & Research
Security Management
Infrastructure Security
Tools & Automation
Let's Connect
Interested in collaboration, cybersecurity discussions, or have questions about infrastructure security? Feel free to reach out through my social channels.