$ whoami

Fjona Mekaj

Cyber Security Graduate

I refine systems until they behave, then I lock them down.

$ cat about.txt

About

Cyber Security graduate from Høyskolen Kristiania. I've always been curious about how systems work, and what happens when they don't. I'm especially interested in how technology, people, and security interact, and how design decisions affect security in practice.

My background combines computer science and cybersecurity, with experience in programming, network defense, risk management, and ethical hacking. I enjoy understanding how systems are built, identifying weaknesses, and improving them in a structured and practical way.

→ motivated by clarity, precision, and continuous learning.

Python JavaScript SQL HTML CSS Java C Kali Linux Docker Wireshark Figma Scrumwise n8n
fjona@portfolio:~/about$ exit|

$ ls ./skills/

Skills

[+] Offensive & Analysis

Recon · vulnerability scanning · web app testing · exploitation · privilege escalation

[+] Secure Engineering

Secure coding · input validation · access control · security-by-design · hardening

[+] Tools & Automation

Scripting · test automation · data collection · workflow efficiency

[+] Reporting

Clear findings · risk levels · evidence · practical mitigations · technical & non-technical audiences

[+] Incident Response

Detection · log analysis · structured response · documentation · lessons learned

[+] Ethics & Practice

Responsible disclosure · confidentiality · legal boundaries · continuous learning

fjona@portfolio:~/skills$ exit|

$ cat experience.txt

Experience

[+] Cyber Security Intern

Jan 2026 – present

Verdane / MittAnbud · Oslo

  • Designed and ran phishing simulations across the organisation using authority, curiosity and fear as emotional triggers (GoPhish, lookalike domains).
  • Built an n8n + LLM pipeline that classifies phishing emails by emotional manipulation technique, evaluated with confusion matrices, precision, recall and weighted F1.
  • Iterated on prompt design and control datasets across multiple versions to improve classification reliability.
  • Conducted vishing simulations and OSINT reconnaissance against publicly available information.

Conducted on-site as part of a restricted bachelor project.

[+] Dental Secretary

Nov 2022 – present

Tannfeen · Drammen

fjona@portfolio:~/experience$ exit|

$ ls ./projects/

Projects

[+] Local Password Audit Tool

javascript privacy client-side

Browser-based password analysis tool. Runs fully locally, evaluates entropy, identifies weak patterns, suggests stronger alternatives. No data ever leaves the client.

[+] World Explorer — Cyber Map

d3.js osint cve-api

Interactive D3.js world map with cybersecurity profiles per country, national CERTs, major incidents, disclosure practices, and live CVE data from public APIs.

[+] Web Application Penetration Test — Boris LockPicks

pentest burp suite owasp

Full web application pentest conducted as an academic exam. Documents vulnerabilities, risk levels, and actionable recommendations.

[+] Phishing Simulation — Bachelor Thesis

n8n llm gophish social engineering

Bachelor thesis at Mittanbud Marketplaces AS. Multi-phase phishing simulations using authority, curiosity and fear as emotional triggers. Built an n8n LLM pipeline for classifying manipulation techniques in phishing emails.

fjona@portfolio:~/projects$ exit|

$ ls ./training/

Training & Platforms

TryHackMe

[+] TryHackMe

FjonaM · Level 5 — Visionary

Actively completing rooms in penetration testing, web exploitation, and network security.

Jr Penetration Tester
🟢

[+] HackTheBox

FjonaM

Practicing offensive security through machines and challenges in a real-world lab environment.

☁️

[+] Microsoft Azure

25 modules completed

Completed modules covering cloud architecture, security, Kubernetes, Docker, IoT, DDoS protection, and disaster recovery.

cloud security kubernetes docker iot

[+] Courses & Certifications

fjona@portfolio:~/training$ exit|

$ contact --list

Contact

Email LinkedIn
fjona@portfolio:~/contact$ exit|