Skip to content

Cybersecurity engineer, researcher, and software developer

Professional work spans offensive and defensive security, enterprise infrastructure, security operations, applied cybersecurity research, and software engineering.

Wissam Almahasneh at SOFEX 2024

Public work and milestones.

Project demonstrations, media coverage, and academic milestones organized by year.

2025

University of Jordan

BSc in Cybersecurity

2024

SOFEX Jordan / Aqaba

S2VC exhibition and royal visit

Security services.

Test authentication, authorization, input handling, exposed services, privilege paths, and configuration weaknesses.

  • Confirmed findings with severity
  • Reproduction steps and evidence
  • Remediation recommendations
  • Retest results, if requested

Professional and research experience.

Cybersecurity Research Consultant

Zayed University, UAE

May 2026 to present

Verified security certifications.

Each certification includes the issued document and its TCM Security verification page.

IEEE / IJCC 2024 / pp. 70 to 75

S2VC: Secure Smart Vehicular Communications

The paper examines secure vehicle-to-everything communication through attack and defense scenarios, robot-car and virtual-road testbeds, a lightweight protocol, datasets, and machine-learning detection.

Iman Almomani, Wissam Almahasneh, Abdalhameed Aldradkeh, Suleiman Alfar, Mousa Al-Akhras, and Musa Alyaman

Project role
Lead developer
Publication role
Co-author
Published
December 17, 2024
View paper on IEEE

Software, security, and applied research.

ToolSpilo

A bilingual calculator platform for finance, education, cybersecurity, networking, health, business, and everyday use.

Open toolspilo.com
Creator, designer, and developer
Live English and Arabic interfaces, RTL support, calculator logic, technical content, search optimization, and deployment.

TEDxBAU

The official public website for TEDxBAU event information, agenda, speakers, sponsors, and visitor guidance.

Open tedxbau.org
Designer and developer
A live responsive website with event, program, speaker, sponsor, and visitor pages.

S2VC

Research on secure smart vehicular communications, including V2X attack scenarios, physical and virtual testbeds, and machine-learning detection.

View paper on IEEE
Lead developer and co-author
An IEEE conference paper, physical and virtual testbeds, attack and defense scenarios, datasets, and detection results.

Hack & Escape

A cybersecurity competition designed around a multi-stage penetration-testing progression.

Competition designer and technical scenario developer
A controlled environment covering enumeration, exploitation, privilege escalation, credential discovery, and lateral movement.

Efficient VANET Communication System

A vehicle-to-infrastructure simulation used to compare secure and adversarial communication scenarios.

Graduation project developer
Approximately 500 vehicles, 20 roadside units, four evaluation scenarios, and HMAC-SHA256 integrity protection.

Public cybersecurity guides.

Penetration Testing

Open guide
  • Getting started
  • Methodology and planning
  • Reconnaissance and information gathering
  • Shells
  • Active Directory
  • Web-based attacks
  • Network attacks
  • Wireless attacks
  • Privilege escalation
  • Post-exploitation and persistence
  • Reporting and communication
  • Tools and references

SOC Analyst

Open guide
  • Security operations fundamentals
  • Phishing analysis
  • Network security
  • Endpoint security
  • PowerShell
  • Collection at scale
  • Security Information and Event Management (SIEM)
  • Data transformation
  • Anomalies
  • Threat intelligence
  • Digital forensics
  • Threat hunting
  • Incident response

Mobile Application Penetration Testing

Open guide
  • Device requirements
  • Penetration-test process
  • Android
  • iOS
  • Cloud enumeration
  • Resources
  • Case studies

Malware Analysis

Open guide
  • Safety procedures
  • Basic static analysis
  • Basic dynamic analysis
  • Advanced static analysis
  • Advanced dynamic analysis
  • Binary patching and anti-analysis
  • Specialty malware classes
  • Malicious document analysis
  • Shellcode analysis
  • Scripted malware delivery mechanisms
  • Reversing C# and .NET malware
  • Analyzing Go malware
  • Sandboxes and pipelines
  • Rule writing and report publishing
  • Malware sources
  • File structures
  • Case studies

For technical work and professional inquiries.

Include the relevant system details, technical constraints, required outcome, and timeline. Security testing requires authorization from the system owner.