Damaris Mwikali
Information Security Analyst
Highest degree :
Bachelors
Field of study :
Software Development
Location :
Nairobi
Citizenships :
Kenyan
Experience :
3 Year(s)
Countries :
Kenya
Gender :
Female
Sectors :
Cyber Security
Digital Forensics
Highly motivated cybersecurity officer professional with over three years of experience in information security and vulnerability assessment. Experienced in designing and executing detailed test plans, validating complex software and data systems. Bringing deep knowledge of OWASP Top 10 vulnerabilities, network and infrastructure security testing, and cloud-specific security challenges. Proficient in utilizing both open source and commercial tools for application, mobile, and thick client security testing. Committed to enhancing organizational security posture through proactive threat assessment, secure design review, and continuous learning of emerging attack vectors and technologies.
Information Security Officer
Nairobi
Kenya Revenue Authority
February 2025
-November 2025
Conducted comprehensive security vulnerability assessments on API integrations for the "GavaConnect" platform, which involves integrating APIs across all government agencies. b) Conducting API testing using postman. c) Managing User Accounts (activations &deactivations upon exit) d) Successfully conducted continuous vulnerability scanning and assessments across government IT systems and networks to identify security weaknesses. e) Analyzing vulnerability scan results and prioritize remediation efforts based on risk and impact. f) Collaborate with IT teams to ensure timely patching and configuration of systems to mitigate identified vulnerabilities.
Information Security Officer
Nairobi
Communications Authority of Kenya
December 2023
-December 2024
Successful digital evidence recovery which includes data extraction and recovery, solving fraud, cybercrime, identity theft, and impersonation cases. b) Open source intelligence analysis. c) Collaborated with law enforcement agencies to assist in criminal investigations. d) Analyzed breaches and vulnerabilities to help organizations mitigate any possible security risks.
Network security
Digital Forensics
Incident Response & Crisis Management
Vulnerability Management, Pentesting, VAPT, Qualys. Nessus, Tenable
API Testing
1
