About¶
Tafadzwa Shingirai Mwerenga¶
Junior Penetration Tester and AI Engineer based in Harare, Zimbabwe. Computer Science graduate (Africa University, 2026), focused on the intersection of offensive security and automated AI workflows.
I run web application penetration tests, audit AI-generated backend code, and build n8n / Claude-assisted automation pipelines that fold security review into the development loop rather than bolting it on at the end.
Certifications¶
- eLearnSecurity Junior Penetration Tester (eJPT) — INE · Verification ID
175788210 - Microsoft Certified: Azure Fundamentals (AZ-900) — Verification ID
wnkCF-48EN
Specialisations¶
Offensive Security
- Active Directory exploitation (Kerberoasting, AS-REP Roasting, ADCS ESC abuse, BloodHound paths)
- Web application pentesting (OWASP Top 10, source code review)
- Network reconnaissance and traffic analysis (Nmap, Wireshark, Responder)
- Custom tooling in Python and Bash
AI Engineering
- Agentic workflow automation with n8n
- Claude-assisted secure code review
- Multi-agent orchestration and prompt engineering
- ERP integration and data-sync pipelines
Frameworks & Compliance
- NIST AI Risk Management Framework (AI RMF)
- OWASP Top 10 for Large Language Models
- MITRE ATT&CK and MITRE ATLAS
- ISO/IEC 27001 · SOC 2 Type II
Tooling I Reach For¶
Burp Suite Professional · Nmap · Wireshark · Metasploit · BloodHound · Certipy · netexec (nxc) · Impacket · Evil-WinRM · Responder · Ligolo-ng · ffuf · dirsearch · gobuster · n8n · Claude Code
Contact¶
- ts.mwerenga@gmail.com
- GitHub
- Hack The Box