Erick Charles Sanga

Cybersecurity Engineer | Penetration Tester | Ethical Hacker

Get In Touch

About Me

I'm a passionate cybersecurity professional and a certified digital forensics engineer with expertise in penetration testing, vulnerability assessment, and ethical hacking. With a strong background in computer science and multiple security certifications, I help organizations protect their digital assets from evolving cyber threats.

My approach combines technical skills with strategic thinking to identify and mitigate security risks before they can be exploited. I stay at the forefront of cybersecurity trends to provide cutting-edge protection against modern attack vectors.

Name:

Erick Charles Sanga

Email:

erick29sanga@gmail.com

Phone:

+255 747 439 472

Location:

Dodoma, Tanzania

View CV My Certificates Contact Me
Erick Sanga

Technical Skills

Penetration Testing

OWASP methodologies, vulnerability scanning, exploitation techniques, and post-exploitation

Web Security

XSS, CSRF, SQLi, SSRF, IDOR, and other web application vulnerabilities

Network Security

Firewalls, IDS/IPS, network segmentation, VPNs, and secure architecture design

Secure Coding

Python, Bash, JavaScript with security best practices and code review

Cryptography

Encryption algorithms, PKI, TLS/SSL implementation, and cryptographic protocols

Red Teaming

Social engineering, physical security assessments, and adversary simulation

Professional Experience

2024

Cybersecurity Intern

Ministry of Finance(MOF)

  • Conducted penetration tests for 15+ simulated clients across various areas of scope
  • Discovered and reported several vulns in web applications to my supervisor
  • Provided security recommendation and remediation guidance
  • Developed custom security tools for client-specific needs, present in my projects
2023 - Present

Bug Bounty Hunter

HackerOne, Bugcrowd

  • Reported 9 valid vulns including XSS, CSRF, and IDOR
  • Recognized by multiple organizations for quality reports
  • Specialized in API security testing and business logic flaws
2025-Present

Cybersecurity Intern

e-Ga

  • Assisted in security assessments of government systems
  • Participated in national cybersecurity awareness campaigns
  • Helped organize cybersecurity competitions and workshops
  • Researched emerging cyber threats in the Tanzania

Education & Certifications

2025

Certified CyberChampion

TCRA

  • Participated and competed against other members through the semi-finals.
  • Passed to the finals top 50 candidates countrywise
  • Won 10th place in the final TCRA Cyberchampion 2025.
2022 - 2026

BSc in Cybersecurity and digital forensics

University of Dodoma

  • Specialized in cybersecurity and digital forensics
  • Still ongoing...
  • Active member of UDOM CyberClub
2025 - Present

Certified Red Team Analyst(CRTA)

Cyberwarfare labs

  • Hands-on penetration testing mostly in Active Directory
  • Developing advanced exploitation skills
  • Mastering privilege escalation techniques

My Projects

Cybersecurity Platform

QuantumVault

Send files securely with military-grade AES-256 encryption and an intuitive GUI. Password-protected transfers that even snoops can't crack.

Python Socket Programming Cryptography Tkinter
Vulnerable Web App

Keystroke Monitor

I created a keystroke monitoring tool using python programming language that sends keystrokes to the controller's server. It works for both windows and linux operating systems.

Python WAN API Tokens Persistence
Security Scanner

WiFi Sentinel

Detect vulnerabilities, test resilience—simulate WiFi deauthentication attacks to secure networks before attackers do.

Shell Aircrack-ng Suite Network Protocols Scapy

Get In Touch

I'm always interested in discussing cybersecurity projects, collaborations, or job opportunities. Feel free to reach out!

Location

Dodoma, Tanzania

WhatsApp

+255 789883200