Junior Penetration Tester Intern @ Byte Capsule

Md Rashed Mahmud

Jr Pentester | Security Analyst | AI Developer

Cybersecurity enthusiast focused on penetration testing, web application security, vulnerability assessment, and hands-on security labs.

rashed@root:~$ whoami
Md Rashed Mahmud
ACTIVE
ABOUT

Learning to think like an attacker, so I can help build systems that hold up.

I am a Computer Science student at Rangpur Polytechnic Institute and a Junior Penetration Tester Intern at Byte Capsule, where I am gaining practical experience as part of my Industrial Attachment Training. My primary interests include web application security, penetration testing, vulnerability assessment, and security research. I enjoy learning through hands-on labs, security testing environments, and practical projects while continuously developing my technical skills toward a career in cybersecurity.

CSEDiploma in Engineering
Web AppSecPrimary focus
VAPTCore discipline
EXPERIENCE

Where I'm building my craft

Practical, hands-on exposure to real security tooling and methodology.

Junior Penetration Tester Intern
Byte Capsule
Industrial Attachment Training

Currently working as a Junior Penetration Tester Intern at Byte Capsule as part of my Industrial Attachment Training from Rangpur Polytechnic Institute. The role provides practical exposure to cybersecurity concepts, penetration testing methodologies, vulnerability assessment, security tools, and hands-on security testing.

Web Application Security Penetration Testing Vulnerability Assessment Security Testing OWASP Methodology Burp Suite Linux Security Environment Practical Security Labs
EDUCATION

Academic foundation

Building the theory alongside the practice.

Byte Capsule

Junior Penetration Tester — Industrial Attachment Training
Running

Rangpur Polytechnic Institute

Diploma in Engineering — Computer Science
Currently Studying

Telihara Mohiuddin Alim Madrasha

SSC 2022 — Science
GPA: 5.00
Completed
CYBERSECURITY SKILLS

Core capabilities

The fundamentals I practice and build on every day.

Core Security

  • Penetration Testing
  • Web Application Security
  • Vulnerability Assessment
  • VAPT
  • OWASP Top 10
  • Security Testing

Networking

  • TCP/IP
  • OSI Model
  • Subnetting
  • VLAN
  • NAT/PAT
  • ACL
  • VPN
  • Routing Fundamentals

Systems

  • Linux
  • Windows Administration
  • Windows Security Fundamentals
  • Users & Groups
  • Services
  • Basic System Security
SECURITY TOOLS

Tools I practice with

Technologies I'm actively learning and using in labs — not a certification claim.

Burp Suite
Kali Linux
Parrot Security OS
OWASP Juice Shop
Hack The Box
Docker
FoxyProxy
Immunity Debugger
Vulnserver
// tools I'm building hands-on experience with, not professional certifications
HANDS-ON LEARNING

Security Labs & Practical Learning

Personal lab work and challenges — learning environments, not professional engagements.

Web Lab

OWASP Juice Shop Security Lab

Hands-on practice with web application security testing using OWASP Juice Shop, HTTP traffic analysis, Burp Suite, FoxyProxy, and a Docker-based lab environment.

Burp SuiteDockerFoxyProxy
Challenge Platform

Hack The Box

Practical cybersecurity learning through vulnerable machines and hands-on security challenges, focusing on enumeration, exploitation fundamentals, system security, and problem solving.

EnumerationExploitation Basics
Exploit Dev Basics

Buffer Overflow Fundamentals

Practiced basic Windows buffer overflow concepts using Vulnserver and Immunity Debugger, including stack fundamentals and understanding registers such as EIP and ESP.

VulnserverImmunity Debugger
SELECTED PROJECTS

A few things I've built

Applied projects outside of security work.

Web Application

Chowdhury House — Mess Monitor

A management platform designed for managing a student mess environment.

Admin DashboardBoarder DashboardExpense ManagementPayment TrackingRoom & Seat Management
FirebaseAuthenticationDatabase
Mobile Application

Ramadan App

A modern Ramadan-focused mobile application designed with a Bangla-first user experience.

Ramadan InformationCity SelectionTasbihQibla
Location-BasedModern Mobile UI
Education Management

EduSync

A Firebase-based educational application project focused on structured educational data and modern application workflows.

FirebaseFirestoreWeb/Mobile
DEVELOPMENT SKILLS

Supporting build skills

Secondary to security work, used to bring projects to life.

FRONTEND

  • HTML
  • CSS
  • JavaScript
  • React
  • Next.js
  • Tailwind CSS

MOBILE

  • Flutter
  • Kotlin
  • Android Development

BACKEND / SERVICES

  • Firebase
  • Firestore
  • REST APIs
  • JSON

WORKFLOW

  • Git / GitHub
  • AI-Assisted Development
  • Component-Based Dev
  • Rapid Prototyping
CURRENT LEARNING

Continuous learning loop

How I'm approaching skill growth right now.

01

Learn

Study concepts, methodology & theory

02

Practice

Apply in labs & sandboxed environments

03

Test

Attempt real scenarios & challenges

04

Improve

Review, refine & go deeper

Web Application Penetration Testing OWASP Top 10 Burp Suite Linux Security Windows Security Fundamentals Vulnerability Assessment Exploitation Fundamentals Practical Security Labs
PROFESSIONAL DIRECTION

Building Toward a Career in Cybersecurity

My current goal is to build strong practical foundations in penetration testing and vulnerability assessment, gain real-world security experience, and gradually grow into a professional Cyber Security Engineer.

CONTACT

Let's Connect

Interested in cybersecurity, collaboration, technical projects, or simply want to connect? Feel free to reach out.

rashed@root:~$ echo "thanks for visiting" © Md Rashed Mahmud