Hydroficient logoHydroficient Externship via Extern
Farikanai Makubire portrait

IT Audit and Cyber Techology Risk Junior Consultant

I’m a GITC Techology Risk Consultant growing my skills in the IoT Cyber Defense sector at Hydroficient.

Work samples

Discover my work in Sales and Business Development, highlighting innovative projects and my contributions to the IoT Cyber Defense field.

  • Hydroficient IoT Cyber Defense Externship
    Hydroficient IoT Cyber Defense Externship
    Hydroficient logo

    Hydroficient · ✅ Verified by Extern · ⏱️ In progress

    Hydroficient IoT Cyber Defense Externship

    Build, hack, and defend real IoT infrastructure, then hand your security playbook to an actual company. You’ll launch realistic cyberattacks, from spoofing and replay attacks to unauthorized shutoffs, and implement defenses like TLS and mTLS.

    Python ProgrammingData AnalysisThreat ModelingDashboard Development

About me

I’m a GITC Techology Risk Consultant growing my skills in the IoT Cyber Defense sector at Hydroficient.

I am Farikanai Makubire, a junior consultant specializing in information security with experience in IoT cyber defense. I earned a BTech in Information Security and Assurance from Harare Institute of Technology and completed an Industrial Attachment at Deloitte & Touche Zimbabwe. During the Hydroficient IoT Cyber Defense externship, I built and defended IoT infrastructure and created a security playbook. My career focuses on providing risk assurance in tech consulting, where I blend technical security expertise with client-facing roles.

Externships

Hydroficient IoT Cyber Defense Externship

In progress

Experience

Junior Consultant at Axcentium

Axcentium ( Former Deloitte & Touche Zimbabwe) · November 2024 – Present

Industrial Attaché

Deloitte & Touche Zimbabwe · August 2022- July 2023

Education

Harare Institute of Technology Belvedere, Harare

Bachelor of Technology in Information Security and Assurance · Class of 2024

Gateway High School

Cambridge Advanced level / Cambridge Ordinary level

Skills

IoT cyber defenseNetwork security (TLS, mTLS)Penetration testing and attack simulationSecurity playbook developmentInformation security and assurance

✅ Verified by Extern · ⏱️ In progress

Hydroficient IoT Cyber Defense Externship

Build, hack, and defend real IoT infrastructure, then hand your security playbook to an actual company. You’ll launch realistic cyberattacks, from spoofing and replay attacks to unauthorized shutoffs, and implement defenses like TLS and mTLS.

Python ProgrammingData AnalysisThreat ModelingDashboard Development

Overview

During my Hydroficient IoT Cyber Defense Externship, I engaged in building, hacking, and defending IoT infrastructure. I executed realistic cyberattacks and implemented robust security measures, creating a comprehensive security playbook tailored for a real-world IoT system. This experience deepened my understanding of the vulnerabilities inherent in IoT devices and the necessary defenses.

Hydroficient IoT Cyber Defense Externship

What I've accomplished

I produced a threat model for the Grand Marina water-monitoring system that listed assets with CIA priorities, applied STRIDE to identify threats, and recommended mitigations including MFA, encrypted communications, and server redundancy.

Project breakdown

As part of the externship I mapped the Grand Marina water-monitoring architecture, listed assets with CIA priorities, applied STRIDE to identify threats, and produced a threat model with findings and recommended mitigations (MFA, encrypted comms, server redundancy).

The module required creating a mock sensor. I wrote Python code to generate time-stamped water sensor readings with realistic variation and counters, produced a sensor log file and a Colab notebook showing the generator and sample output.

I set up a Mosquitto broker and Python publisher/subscriber, ran the pipeline, captured plain-text MQTT messages with mosquitto_sub, and produced a proof-of-concept injected message that the subscriber accepted as if from a real device.

Google Docs
Access

The module assessed the sensor pipeline, added TLS, ran four experiments, and produced a security assessment. I documented risks (eavesdropping, unauthorized devices, false readings), mitigation steps, and an overall Medium-High risk rating.

Google Docs
Access
View all work