About
Background
I'm a security engineer working in network security at GoDaddy, focused on infrastructure security, access control architecture, and cloud security on AWS. The work is mostly segmentation and ACL design, and keeping controls correct as the environment around them changes.
I've reported high-severity vulnerabilities (CVSS 9.1, 8.8) in production APIs, each with a working PoC and each since patched. The root causes were ordinary: trust placed in the client, access checks in the wrong place. Finding them taught me where defenses tend to fail, which is most of what I bring to building them.
Previously, I interned in network engineering at LPU, automating log analysis pipelines with Python and Bash, investigating anomalous traffic with Wireshark and Splunk, and refining VLAN segmentation and access controls. I also wrote the internal security SOPs for the infrastructure team.
As Cybersecurity Lead at the Cisco CyberSec Symposium, I built the vulnerable lab environments and delivered hands-on training to 2000+ students on IDOR, SSRF, privilege escalation, and API security. Teaching something is a reliable way to find out how well you actually understand it.
Along the way: five industry certifications, top-5 finishes in national CTFs, top 3% on TryHackMe across 120+ labs, and a ₹1,00,000 startup grant for a privacy-focused blockchain feedback system.
Right now I'm going deeper into vulnerability research and offensive security, and writing about it as I go.
Certifications
Skills
Offensive
- Web & API Exploitation
- Penetration Testing
- Vulnerability Research
- CVE Discovery & Disclosure
Defensive
- Network Security
- SIEM & Log Analysis (Splunk, ELK)
- Threat Detection & Triage
- Security Automation
Networking
- VLAN / ACL Architecture
- Packet Analysis
- Cloud Security (AWS)
- Network Architecture
Tools
- Wireshark, Burp Suite, Nmap
- Splunk, ELK Stack
- Metasploit, Nessus
- Python, Bash, Git