Rana Muhammad Talha Majid — Cybersecurity-focused Full Stack Developer
Hello, I'm

I build secure full-stack applications and hunt vulnerabilities — bridging the gap between development and cybersecurity.

Find me on:
15+ Projects Shipped
|
5+ Certifications
|
3+ Years in Development
Skills & Platforms: 🛡️ TryHackMe ☁️ Google Cloud 🐳 Docker 🐧 Linux ⚛️ React 🐘 PHP 🔐 OWASP 📊 Splunk
About Me

From Curious Builder to
Security-First Developer

It started with building things — then questioning how easily they could break. That shift from "does it work?" to "can it be exploited?" at UET Taxila reshaped my entire approach to software engineering.

Education
BS Computer Science — UET Taxila (2023–2027)
Focus Area
Cybersecurity & Penetration Testing
Development
Full Stack — React, PHP, JavaScript, MySQL
Currently Learning
DevSecOps, CI/CD Security, Cloud Infrastructure
Goal
Security Engineer at a Product Company
Methodology
OWASP, PTES, Secure SDLC
Campus

Leadership & Campus Involvement

Alongside development and cybersecurity, I actively contribute to university communities through leadership, media production, teamwork, and student initiatives.

Finance Secretary

Wall of Hope — Taxila Chapter

Managed budgeting and coordinated fundraising activities focused on community support and welfare initiatives.

FinanceTeamworkCoordination
Member

Quaid-e-Azam Debating Society

Participated in communication-focused activities, debates, and discussions to strengthen public speaking and critical thinking.

CommunicationPublic Speaking
Member

CompTech Society

Participated in technology-focused collaborative activities and technical learning events.

TechnologyCollaboration
Expertise

Skills & Technologies

The tools and techniques I use to secure, build, and ship production-grade applications.

Penetration Testing

Web application security testing, network reconnaissance, vulnerability assessment, and exploitation following OWASP and PTES methodologies.

Burp SuiteNmapMetasploitOWASP ZAPWireshark

Network Security & SIEM

Firewall configuration, IDS/IPS monitoring, traffic analysis, log correlation, and incident detection using enterprise security tools.

SplunkSuricatatcpdumpSnortWireshark

Frontend Development

Building responsive, accessible interfaces with modern JavaScript frameworks and CSS architecture. Performance optimization and cross-browser compatibility.

ReactJavaScriptHTML5CSS3Responsive Design

Backend & Database

Designing RESTful APIs, implementing authentication systems, building normalized database schemas, and applying server-side input validation.

PHPMySQLREST APIsNode.jsSQL

DevSecOps & CI/CD

Integrating security into development pipelines — from code scanning and container security to automated testing and deployment.

DockerGitGitHub ActionsLinuxNginx

Cloud & Infrastructure

Containerizing applications, configuring web servers, managing DNS, and working with cloud platforms for deployment and hosting.

Google CloudDockerLinuxNginxCI/CD
Portfolio

Featured Projects

Real-world applications built with security-first architecture and engineering best practices.

SpectraOps — Full-stack cybersecurity operations platform
Production

SpectraOps

Full-stack cybersecurity operations platform featuring a real-time threat monitoring dashboard, vulnerability scanning interface, and security analytics with data visualization.

🔒 Security: Prepared statements, session-based authentication, RBAC, input sanitization, CSRF tokens
⚙️ Architecture: PHP/MySQL backend, vanilla JS frontend with dynamic chart rendering, REST API endpoints
PHPMySQLJavaScriptREST APIRBAC
University Management System — Multi-role portal with RBAC
Production

University Management System

Multi-role university portal with role-based access control (Admin, Faculty, Student), course management, grade tracking, and attendance system.

🔒 Security: RBAC with 3 permission levels, input sanitization, CSRF protection, secure session handling
⚙️ Architecture: PHP/MySQL with normalized schema, responsive admin dashboard, form validation
PHPMySQLRBACSessionsFull Stack
CyberQuiz — Interactive security awareness quiz platform
Production

CyberQuiz Platform

Interactive security awareness quiz platform with timed challenges, score persistence, and a curated question bank covering OWASP Top 10, network security, and cryptography.

🎯 Problem Solved: Making cybersecurity education accessible and gamified for beginners
⚙️ Architecture: Vanilla JS with localStorage persistence, timer logic, dynamic question rendering
JavaScriptHTML5CSS3LocalStorage
NexaGrowth — Modern responsive agency website
Production

NexaGrowth Agency Website

Client-facing agency landing page built from scratch with responsive design, SEO optimization, analytics integration, and performance-tuned delivery.

📈 Impact: Deployed to production at nexagrowth.xyz with 90+ Lighthouse performance score
⚙️ Architecture: Semantic HTML5, CSS Grid/Flexbox, vanilla JS, DNS configuration, hosting setup
HTML5CSS3JavaScriptSEOAnalytics
🌦️
In Development

Weather Dashboard

Real-time weather application consuming external REST APIs with geolocation, 5-day forecast rendering, and responsive data visualization.

🔌 APIs: OpenWeatherMap REST API integration with error handling and rate limiting
⚙️ Architecture: Async JavaScript, fetch API, JSON parsing, dynamic DOM updates
JavaScriptREST APIAsync/AwaitCSS3
In Development

Task Manager App

Full-featured task management application with CRUD operations, priority levels, due date tracking, and persistent data storage.

🎯 Problem Solved: Organizing development workflows with filterable, prioritized task lists
⚙️ Architecture: JavaScript with localStorage, DOM manipulation, event delegation, responsive UI
JavaScriptHTML5CSS3LocalStorageCRUD
📝
Production

To-Do List App

Clean, minimal to-do list application with add, complete, and delete functionality. Features a polished UI with smooth animations and localStorage persistence.

JavaScriptHTML5CSS3LocalStorage
My Tasks
Design responsive UI layout
Implement localStorage CRUD
Add smooth CSS animations
Deploy to GitHub Pages
Add dark mode toggle
Quick Break — Tic Tac Toe
Your turn (X)
🎬
Client Work

AI Video Editing Portfolio

Professional video editing and creative media production for clients, featuring AI-enhanced visuals, motion graphics, cinematic edits, and branded content for digital campaigns.

🎬 Showcase: Client video samples produced using industry-standard and AI-powered tools
⚙️ Tools: Premiere Pro, After Effects, CapCut, Runway ML, ElevenLabs, Canva
Premiere ProAfter EffectsAI EditingMotion GraphicsCapCut
Timeline — Project_Final_v3.prproj 00:00:00:00
0s5s10s15s20s25s30s
V3
Title
End Card
V2
B-Roll
VFX
V1
Main Footage
Interview
A1
A2
🎵 Background Music
Active

Cybersecurity Lab

Hands-on penetration testing, vulnerability assessment, and security research through TryHackMe rooms, CTF challenges, and real-world exploit analysis.

🛡️ Focus: Web exploitation, privilege escalation, OWASP Top 10, network enumeration
⚙️ Tools: Burp Suite, Nmap, Metasploit, Wireshark, Splunk, Linux
Penetration TestingCTFOWASPLinuxNmap
root@kali:~#
$ nmap -sV -sC 10.10.10.1
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 8.9
80/tcp open http Apache 2.4.54
443/tcp open ssl nginx 1.24
$ sqlmap -u "http://target/login" --dbs
[+] 3 databases found
$ hydra -l admin -P rockyou.txt ssh://10.10.10.1
[+] login: admin password: ********
Browse Full Web Portfolio

Experience

2025 -
2026

AI Video Editor & Creative Media Specialist

Produced AI-enhanced video content and creative media for digital campaigns and branded projects. Leveraged generative AI tools — Runway ML, ElevenLabs, Google AI Studio, Grok Imagine, and ByteDance AI — alongside Adobe Premiere Pro, After Effects, and CapCut to create cinematic edits, AI-assisted visuals, and motion graphics. Designed thumbnails and marketing assets in Canva, optimized short-form content for social platforms, and built automation-enhanced editing pipelines to accelerate production workflows.

AI EditingGenerative AIMotion GraphicsContent ProductionPremiere Pro
2026 -
Present

Founder & Lead Developer

NexaGrowth — Digital Agency

Built and deployed the agency website (nexagrowth.xyz) from scratch using semantic HTML, CSS Grid, and vanilla JavaScript. Implemented SEO optimization achieving 90+ Lighthouse scores. Managed DNS configuration, hosting setup, and SSL certificates. Developed responsive landing pages for clients with analytics integration and performance monitoring.

2024

Web Development & Operations Intern

Capxa

Contributed to frontend development tasks including responsive UI implementation and cross-browser compatibility testing. Assisted in website performance optimization, production deployment workflows, and debugging layout issues across devices. Gained hands-on experience with professional development workflows and version control practices.

2023 -
Present

Freelance Full Stack Developer

Independent — Remote

Delivered 15+ client websites spanning e-commerce stores, portfolios, and business landing pages. Handled full project lifecycle: requirements gathering, UI/UX implementation, backend API development with PHP/MySQL, database schema design, deployment configuration, and post-launch maintenance. Implemented form validation, responsive layouts, and SEO best practices across all projects.

Interactive

Cyber Tools

Try these security tools right here in your browser — built to demonstrate security concepts.

Email Breach Checker

Simulates checking if an email has appeared in known data breaches. Demonstrates how breach databases work.

Results will appear here...
Educational simulation — does not query real breach databases. Use haveibeenpwned.com for actual checks.

Password Strength Analyzer

Analyzes password entropy, character diversity, and estimated brute-force crack time.

Enter a password to analyze...
Your password is never stored or transmitted. All analysis happens locally in your browser.

HTTP Header Security Check

Demonstrates which security headers a well-configured website should have to prevent common attacks.

Results will appear here...
Educational demonstration — shows ideal security header configuration for any domain.
Impact

Engineering Metrics

Numbers behind the work — measurable engineering output and continuous learning.

0
Projects Shipped
Full-stack applications delivered to production for clients and personal use
0
TryHackMe Rooms
Hands-on cybersecurity labs completed — web exploitation, privilege escalation, CTFs
0
Certifications Earned
Industry certifications from Google, IBM, CompTIA track, and TryHackMe
0
APIs Integrated
Third-party REST APIs consumed and integrated across various projects
0
Years in Development
Continuous learning journey from HTML basics to full-stack security engineering
0
Blog Articles
Technical articles on cybersecurity, DevSecOps, and secure development practices

Certifications

2024 -
Present

CompTIA PenTest+ Track CompTIA

CompTIA Certification Track

Advanced penetration testing methodologies including planning and scoping, information gathering, vulnerability identification, exploitation, post-exploitation, and professional reporting. Currently preparing for certification exam.

2024

Google Cybersecurity Professional Certificate Google

Google / Coursera

8-course specialization covering security frameworks (NIST CSF), SIEM tools (Splunk, Chronicle), incident response playbooks, Python automation for security tasks, Linux command-line operations, and network security fundamentals.

Verify on Coursera
2024

IBM Full Stack Software Developer IBM

IBM / Coursera

Cloud-native full stack development covering React, Node.js, Express, microservices architecture, containerization with Docker, Kubernetes orchestration, and CI/CD pipeline implementation with DevOps practices.

Verify on Coursera
2023 -
2024

TryHackMe — Top Learner THM

TryHackMe Platform

200+ rooms completed covering web exploitation (XSS, SQLi, SSRF), privilege escalation (Linux & Windows), CTF challenges, OWASP Top 10 vulnerabilities, network enumeration, and Active Directory attacks.

View TryHackMe Profile
2023 -
2027

BS Computer Science

UET Taxila — University of Engineering & Technology

Core CS fundamentals including data structures & algorithms, operating systems, computer networks, database systems, software engineering, and cybersecurity coursework. Active in technical societies and CTF competitions.

Let's Connect

Get in Touch

Looking for a security-conscious developer? Let's talk about your next project, internship opportunity, or collaboration.

Available for Internships, Jobs & Projects

Let's Build Something Secure

Whether you need a full-stack developer who thinks about security from day one, or a cybersecurity student eager to contribute to real-world projects — I'm ready.

Download Resume

Typical response time: under 24 hours
Please enter your name (at least 2 characters)
Please enter a valid email address
Please enter a message (at least 10 characters)