Home About Experience Projects Research Blog Contact
🧑‍💻

Hello, I'm Heet.
Securing Systems
Through Creative Solutions

I believe security is a form of creative expression: building systems that are powerful, safe, resilient, and meaningful. From red teaming networks to hardening cloud and AI systems, I craft solutions that make technology more trustworthy.

🔍 Open for cybersecurity roles & consulting Get in Touch ↗
🛡️

Brands I've worked with

Uniqus ConsultechIIFL Finance5paisa CapitalIEEEVirginia TechUMD
24+
Security Assessments
33
Critical Vulns Fixed
98%
Attack Surface Reduced
Penetration Testing✦ Cloud Security✦ Threat Intelligence✦ Red Teaming✦ Network Security✦ Malware Analysis✦ SIEM & Incident Response✦ DevSecOps✦ Zero Trust Architecture✦ Vulnerability Assessment✦ Penetration Testing✦ Cloud Security✦ Threat Intelligence✦ Red Teaming✦ Network Security✦ Malware Analysis✦
👋 About Me

The Story Behind the Shield

I'm a cybersecurity engineer with a deep passion for offensive security, cloud infrastructure protection, and AI/LLM security. Currently pursuing a Master of Engineering in Cybersecurity Engineering at the University of Maryland, College Park (GPA 4.0), with hands-on experience at Uniqus Consultech, IIFL Finance, and 5paisa Capital.

My work sits at the intersection of red teaming, cloud security, and AI security: from compromising Active Directory domains to hardening multi-agent LLM platforms and publishing research in IEEE. I believe every system has a story to tell, and I'm here to read between the lines before the adversary does.

When I'm not breaking into things (ethically), I'm mentoring students, competing in CTFs, writing on Medium, or attending DEF CON and Black Hat to stay ahead of the curve.

⚡ Quick Facts
  • 🎓
    M.Eng. CybersecurityUniversity of Maryland · GPA 4.0
  • 📍
    Based inCollege Park, Maryland
  • 💼
    Available forFull-time, Consulting, Research
  • 🔐
    Focus AreasRed Teaming · Cloud Security · AI/LLM Security
🎯 Core Expertise
Penetration Testing AWS Cloud Security AI / LLM Security Red Teaming Malware Analysis SIEM / Incident Response
💼 Career Path

Experience &
Education

Hands-on security roles, rigorous academic training, and cutting-edge research.

Professional Experience

AI Security InternJun to Aug 2026
Uniqus Consultech · San Jose, CA
  • Architected a production AI security platform of 7 autonomous agents (Python, LangChain, FastAPI) spanning threat intel, cloud posture, and incident response
  • Hardened it against prompt injection and jailbreak attacks with adversarial red-team testing and runtime guardrails mapped to OWASP LLM Top 10 and NIST AI RMF
  • Chained agent findings into MITRE ATT&CK attack paths and prioritized CVEs with CISA KEV data, cutting false positives across secret and SBOM scanning
Information Security AnalystJan to Jun 2025
IIFL Finance · India
  • Vulnerability assessments and penetration tests across 10+ web apps, 5 APIs, and 3 internal networks for a regulated financial institution
  • Chained low-privilege footholds into 7 confirmed privilege escalation and lateral movement paths with CVSS-ranked remediation
  • Authored 10+ audit deliverables and rewrote 5 security policies against RBI and ISO 27001 requirements
Application Security AnalystMay to Jul 2024
5paisa Capital · India
  • Penetration tested 8+ production web and mobile apps, surfacing 3 critical vulnerabilities with a 95% remediation rate
  • Created 10+ testing templates and runbooks, reducing onboarding time for new analysts by 30%

🎓 Academic Journey

🌐
University of Maryland, College Park
M.Eng. in Cybersecurity Engineering (PMCY) · GPA 4.0
2025 to 2027
☁️
University of Maryland, College Park
Graduate Certificate in Cloud Engineering
2025 to 2027
💻
NMIMS University
B.Tech in Computer Science Engineering (Cybersecurity) · GPA 3.9
2021 to 2025
🏫
Virginia Polytechnic Institute (Virginia Tech)
Cybersecurity Certificate
2021 to 2025
🏅 Verified Credentials

Certifications

Industry-recognized credentials validating hands-on expertise in offensive security, cloud, and governance.

TCM Security
Practical Ethical Hacking
CompTIA
Security+
ISC2
Certified in Cybersecurity (CC)
CyberWarFare Labs
Certified Red Team Analyst
INE Security
eJPT (Junior Penetration Tester)
Pursuing
Additional Credentials
EC-Council
Ethical Hacking Essentials
EC-Council
Digital Forensics Essentials
LinkedIn Learning
Application Security in DevSecOps
LinkedIn Learning
Governance, Risk & Compliance
LinkedIn Learning
DevSecOps
Amazon Web Services
Cloud Security · Storage · Compute
Amazon Web Services
Online Privacy & Data Safety
MSME PPDCAGRA
Cybersecurity
🔬 Academic & Applied

Research Projects

Deep technical work at the intersection of machine learning, cloud security, and threat detection, published and presented.

IEEE Published2025
🧠

AI-Based Intrusion Detection System (IDS)

Deep learning-based IDS detecting DDoS and SQL Injection attacks using a hybrid RNN-LSTM architecture trained on 50,000+ network samples. Achieved 97% detection accuracy, outperforming signature-based solutions by 25%.

REL Symposium 20252025
☁️

Cloud Threat Detection & Response System

Cloud-native monitoring and alerting system using SIEM tools to detect, triage, and respond to threats in real time across multi-cloud environments. Presented at REL Poster Symposium 2025.

🛡️ My Security

Showcase Projects

Security work reflecting a passion for identifying vulnerabilities, hardening systems, and building resilient digital defenses.

Offensive Security · Active Directory
Active DirectoryRed TeamBloodHound

Active Directory Red Team Assessment

Black-box test of a simulated post-acquisition network. Escalated from zero credentials to Domain Admin in under 5 hours via web RCE, SUID abuse, and Kerberoasting. Ranked 10 findings by CVSS (max 9.8).

Kali Linux · BloodHound · Impacket · Hashcat · Burp Suite · Nmap

Research-Driven ML Security
PythonDeep LearningIDS

DL-Based Intrusion Detection System

Hybrid RNN-LSTM model detecting DDoS and SQL injection attacks, processing 50,000+ network traffic samples. Published in IEEE, outperforming conventional IDS by 25% in zero-day detection.

TensorFlow · Keras · Scikit-learn · Pandas · NumPy

Pentesting & Security Solutions
GCPBlack-boxMetasploit

Humbleify Penetration Testing

Black-box testing on 16 GCP-hosted servers. Discovered 25 vulnerabilities and delivered 16 remediation actions, improving overall security posture by 40%.

Nmap · Hydra · Burp Suite · SQLMap · Metasploit

Security Automation
LinuxBashAutomation

Linux Security Scanner

Automated security assessment tool for Linux endpoints, scanning for misconfigurations, privilege escalation paths, and policy violations across systems.

Bash · Python · Linux · OpenSSL · Ansible

AI-Driven Cloud Risk Management
AIBlockchainCloud

Next-Gen Cloud Security Framework

Designed an AI-driven cloud risk management framework integrating blockchain-based audit trails for security transparency. Aligned with ISO, NIST, GDPR, and DPDPA standards, providing automated policy enforcement and real-time compliance monitoring.

Python · TensorFlow · Hyperledger · AWS

📁 Background

Earlier Work

Spanning systems programming, data engineering, ML, and full-stack development.

Systems & Low-Level Programming
PythonAssemblySystems

MIPS Assembly Language Converter

Built a Python-based system to convert MIPS assembly instructions into hexadecimal machine code. Implemented modular parsing and instruction mapping to simulate low-level execution behavior.

Python · MIPS · SPIM · Low-Level Systems

View Project ↗
Database Engineering & Analytics
Oracle SQLDatabaseAnalytics

Algorithmic Trading Database System

Designed a relational database for managing stock auctions, bids, and transactions. Optimized queries and schema using normalization. Strong data modeling skills relevant to financial analytics and security.

Oracle SQL · Normalization · Query Optimization · ERD

View Project ↗
Full-Stack Mobile Application
AndroidFirebaseFull-Stack

Food Delivery Application

Multi-role Android application supporting customers, restaurants, and delivery personnel. Firebase authentication and real-time database, showcasing full-stack application logic and secure system design.

Android · Firebase · Java · REST APIs

View Project ↗
Object-Oriented System Design
JavaOOPSystem Design

Movie Booking System

Java-based ticket booking platform with seat selection, movie listings, and secure transaction handling. Applied object-oriented design principles and clean system structuring.

Java · OOP · Design Patterns · JDBC

View Project ↗
Applied Machine Learning
MLCARTHealthcare

Medical Data Analysis

Predictive model using CART algorithm to recommend drugs based on patient attributes. Focused on data preprocessing, feature selection, and model evaluation, applying ML in real-world healthcare scenarios.

Python · Scikit-learn · Pandas · CART

View Project ↗
Computer Vision & Real-Time ML
OpenCVMLComputer Vision

Real-Time Sign Language Detection

Real-time gesture recognition system using OpenCV and ML models to recognize hand gestures, enabling communication assistance for nonverbal users.

Python · OpenCV · NumPy · TensorFlow · MediaPipe

View Project ↗
🎨 My Security

Arsenal

The tools, languages, platforms, and frameworks I use to build and break secure systems.

🐉
Kali Linux
🔴
Burp Suite
💻
Metasploit
🗺️
Nmap
☁️
AWS Security
🦈
Wireshark
📊
Splunk
🔍
Nessus
🐍
Python
🗄️
SQLMap
💧
Hydra
🕷️
OWASP ZAP
🔵
Azure Sentinel
📡
QRadar
🛡️
Wazuh
🐳
Docker
☸️
Kubernetes
⚡
Snort/Suricata
🔬
Ghidra
🧪
Volatility
🔗
YARA
📋
Elastic SIEM
🌐
Velociraptor
🎯
Cobalt Strike
🩸
BloodHound
📦
Impacket
🔓
Hashcat
🤖
LangChain / LangGraph
🗝️
HashiCorp Vault
🧭
Trivy
🦉
Security Onion
Cybersecurity Skills
Cloud SecurityPenetration Testing Incident ResponseMalware Analysis Threat IntelligenceSecurity Architecture Vulnerability AssessmentEndpoint Security Red TeamingSIEM Implementation Threat ModelingSecure SDLC Digital ForensicsReverse Engineering Active Directory SecurityVulnerability Management Network SegmentationSecure Code Review CVSS Risk ScoringSecurity Auditing
AI & LLM Security
AI / LLM SecurityAI Red Teaming Adversarial TestingPrompt Injection Defense Jailbreak DefenseRuntime Guardrails Multi-Agent OrchestrationLangChain LangGraph
Programming
PythonJavaScript BashPowerShell C / C++Java SQLPHP Assembly (MIPS)R TensorFlow / KerasScikit-learn
Cloud & Systems
AWSAzure GCPDocker KubernetesLinux Windows ServerGit AnsibleTerraform GitHub Actions (CI/CD)FastAPI FlaskPostgreSQL Kafka
Frameworks & Standards
MITRE ATT&CKNIST CSF NIST AI RMFOWASP LLM Top 10 ISO 27001CIS Benchmarks OWASP Top 10Zero Trust OAuth / SAMLPCI DSS GDPR / HIPAA / DPDPAEDR / SOAR Kill ChainPTES
✍️ Thought Leadership

My Blog

Writing in-depth articles on cybersecurity trends, real-world threats, and technical breakdowns, covering nation-state attacks, cloud security, and the evolving threat landscape.

🎯 Beyond the Terminal

Co-Curricular Activities

Leadership, competitions, and continuous learning across the cybersecurity ecosystem.

🏆 Leadership & Volunteering
👥
Vice President
NMIMS CyberTechClub

Mentored 50+ students in cybersecurity fundamentals and CTF strategies. Helped 3 students secure internships. Led the first Cybersecurity Awareness Month event with 1,000+ participants.

🏛️
Business Management Executive
Students' Council (MPSTME)

Managed $10,000+ budgets for student-led initiatives. Coordinated cross-functional teams and organized large-scale events.

🌱
Volunteer
Clean Green Health Foundation

Simplified health and environmental concepts for public awareness. Led campaigns promoting sustainability and community education.

⚽
Sports Official
UMD Intramural Sports

Officiating intramural sports at the University of Maryland since Jan 2026, developing leadership, communication, and real-time decision-making skills.

🏅 Competitions & Events
🚩
Competitor · Top 1000 / 10,000+ Teams
PicoCTF & Hack The Box University CTF

Ranked globally in PicoCTF and competed in 3 HTB University CTFs representing NMIMS. Categories: web exploitation, reverse engineering, forensics, and cryptography.

💡
Participant
Cyber Cypher Hackathon

Developed a security-focused solution under time pressure. Applied rapid prototyping and real-world threat modeling to deliver a working proof-of-concept.

🎓
Participant
IIM Bangalore, Eximius 2023

India's premier entrepreneurship summit, developing business acumen, startup mindset, and understanding of the intersection between technology and entrepreneurship.

🛒
Participant, Software Development Track
Flipkart GRID 5.0

Competed in Flipkart's national-level engineering challenge, building and presenting a scalable software solution evaluated across multiple rounds.

🧠 Continuous Learning & Community
🔐
Active Practitioner
TryHackMe & Hack The Box Labs

Hands-on learning through real-world hacking scenarios. Deep experience exploiting Active Directory misconfigurations, Linux privilege escalation, and web vulnerabilities.

🕸️
Self-Directed Study
PortSwigger Web Security Academy

Structured labs covering SQL Injection, XSS, CSRF, SSRF, authentication bypass, XXE, and IDOR (building mastery in OWASP Top 10 attack categories).

🏙️
Attendee
DEF CON

Engaged with the global hacker community, participating in hands-on villages, CTF competitions, and red/blue team exercises.

🎤
Attendee
Black Hat & Security BSides

Black Hat briefings on penetration testing, exploit development, malware analysis, and AI security. BSides sessions on emerging defensive strategies.

✍️
Technical Writer
Medium · Cybersecurity Blog

Writing in-depth technical articles on cybersecurity trends, real-world threats, and offensive/defensive techniques for a growing technical audience.

HG

📡 Let's Connect!

Whether you're looking for a cybersecurity professional, want to collaborate on security research, or discuss the latest vulnerabilities, I'd love to hear from you.

📍 College Park, MD  ·  📞 (240) 714-9772

📨 Prefer

Email?

Got questions about penetration testing, cloud security, or collaboration? I'll get back to you as soon as possible.

Email me ↗

🤝 Get in Touch

Have a security project or research opportunity? Drop a message!