~/portfolio / about

About.

A short read on who I am, what I work on, and what I care about when securing systems.

I'm a final-year B.Tech Computer Science student at Bennett University, graduating in 2026 with a sustained focus on cybersecurity. My day-to-day blends offensive testing with defensive operations — the same building can be attacked and defended, and I'd rather understand both sides.

As a Cybersecurity Analyst at Cybrotech Digiventure in New Delhi, I run web and network penetration tests against the OWASP Top 10, tune SIEM pipelines in Wazuh and ThreatSpike, and deploy DLP policies that actually get adopted. I write the findings up against ISO/IEC 27001:2022 so engineering, leadership, and auditors all read the same story.

How I think about security

// 01

Reports beat findings.

A CVE in a chat is noise. A reproducible, scored, prioritized report is a roadmap.

// 02

Attackers don't read your docs.

Architecture diagrams lie. Run the test, watch the packet, then update the diagram.

// 03

Automate the boring half.

Policies, scans, log triage — if it repeats, write the Python and move on.

// 04

Security is a team sport.

The best findings come from sitting next to backend, ops, and people who own the risk.

Skill matrix

// pentesting & tooling

Burp Suiteadvanced
Nmap / Nessusadvanced
Metasploitproficient
Wiresharkadvanced
Hydra / Johnproficient

// detection, siem & dlp

Wazuhadvanced
ThreatSpikeproficient
DLP configurationproficient
Log analysis / IRproficient

// programming & automation

Pythonadvanced
Bashproficient
C++working
SQLproficient

// frameworks & concepts

OWASP Top 10advanced
ISO/IEC 27001:2022advanced
Cryptographyworking
Cloud (AWS/GCP/Azure)working