Skip to content
View himsontam's full-sized avatar

Block or report himsontam

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
himsontam/README.md

👋 Hi there! Welcome to my Cybersecurity GitHub Portfolio

Lok Him Tam

🧑‍💻 About Me

I'm Hismon Tam, a QA engineer with over 8 years of professional experience in software quality assurance, user acceptance testing, and software development. I specialize in crafting robust testing strategies and integrating QA processes seamlessly into DevOps workflows to ensure digital products are not only functional but secure.

With a strong technical foundation in tools and languages such as Cypress, JavaScript, Java, Python, Postman, Jenkins, Docker, MySQL, Azure, and AWS, I build effective testing frameworks that drive customer satisfaction and business success. My international experience across the US, Hong Kong, and the UK in FinTech, B2C SaaS, IoT, and POS sectors has shaped a well-rounded and adaptable QA mindset.

In parallel with my QA career, I’m actively expanding my skill set into the field of Cybersecurity/Secuity Testing Skills. I’m currently learning and practicing skills in:

  • 🔐 Security Fundamentals: Risk management, secure architecture, incident response
  • 🌐 Network Security: Firewalls, VPNs, packet analysis, secure protocols
  • ☁️ Cloud Security: Microsoft Azure (AZ-500 labs completed), AWS security tools
  • 🧪 Practical Hands-on Labs: TryHackMe, Virtual Hacking Labs
  • 🧠 Certification Tracks:
    • CompTIA Security+ (in progress)
    • BLT1 (Basic Linux & Networking) (Planning)
    • PNPT (Practical Network Penetration Tester) (Planning)
    • OSCP (Offensive Security Certified Professional) – long-term goal (Planning)

This journey is helping me combine my strengths in QA and development with a growing knowledge of cybersecurity, allowing me to contribute to secure, high-performing software in modern IT World environments.


🛡️ Cybersecurity Journey

I’m currently learning cybersecurity with a strong focus on both fundamentals and hands-on technical skills. My learning path includes topics such as network security, threat analysis, incident response, and security architecture. I’m actively preparing for the CompTIA Security+ certification to solidify my understanding of core security concepts.

To gain practical experience, I regularly complete guided labs and challenges on TryHackMe, covering areas like networking, vulnerability management, and security operations. I’ve also completed a full set of Microsoft AZ-500 lab projects, gaining hands-on experience with Azure Security Center, role-based access control (RBAC), Azure Firewall, Key Vault, and Azure Sentinel.

As part of my continued growth, I’m planning to expand my skills through the following certifications and learning paths:

  • 📘 CompTIA Security+ (in progress)
  • 🧠 TCM BLT1 – Basic Linux & Networking
  • 🔍 PNPT – Practical Network Penetration Tester
  • 🧪 OSCP – Offensive Security Certified Professional (long-term goal)

This cybersecurity journey complements my QA and development background, allowing me to better understand security from both a preventive and technical testing perspective.


💻 Lab Projects

I’ve completed all core lab projects for AZ-500 certification including:

  • ✅ Azure Security Center & Microsoft Defender
  • ✅ Identity & Access Management (RBAC, PIM, Conditional Access)
  • ✅ Network Security (NSG, Firewall, VPNs)
  • ✅ Azure Key Vault, Disk Encryption, Policies
  • ✅ Azure Monitor, Log Analytics, Azure Sentinel

This repo contains lab walkthroughs, notes, and best practices I used to prepare.


🛠️ Technical Skills

Programming Language Expertise

python

html

css

js

java

mysql

ionic

cordova

flask



Developer / Coding Tools

Git

Jira

Linux

Terminal

PowerShell

VSCode

GitHub Actions

Postman



Cloud / Server Expertise

heroku

AWS

googlecloud

salesforce

linode



OS Expertise

android

ubuntu

windows



IDE Expertise

vscode

atom

vs

eclipse

sublimetext

vim

AS

notepadplusplus



Office Expertise

MS

MSword

MSppt

MSexcel

MSsharepoint

GoogleSheet




💬 Languages I Speak

  • English
  • Cantonese
  • Mandarin

📫 Connect with Me

LinkedIn Flask Portfolio GitHub GitLab Bitbucket Google Play Gmail




Thanks for stopping by! Let's connect and grow in the cybersecurity journey together. 🛡️🚀

Pinned Loading

  1. az500-lab az500-lab Public

    Hands-on Azure Security Labs for AZ-500 Certification | Identity, Network, Compute, and Monitoring Security | Notes, Configs & Demos for Portfolio

  2. security-SY0-701 security-SY0-701 Public

    Security+ Hands-on Labs Documented for Portfolio & Practice

  3. Cypress-Automation-Demo Cypress-Automation-Demo Public

    This project is a demo of the cypress automation tool for testing http://a.testaddressbook.com/ website

    JavaScript

  4. Timothy Timothy Public

    It is a UW Applied Computing Capstone Project. This is an ionic framework app that integrates with firebase as the backend. It is all about a church fellowship.

    TypeScript

  5. SeleniumPowershellAndroidExample SeleniumPowershellAndroidExample Public

    PowerShell

  6. adb-command-notes adb-command-notes Public

    adb command notes

    PowerShell 1