Skip to content
View kakshaykumar's full-sized avatar

Highlights

  • Pro

Block or report kakshaykumar

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
kakshaykumar/README.md

Akshaykumar Kathirvelu

Cybersecurity Professional Β· SOC Analyst Β· Security Operations Β· Cloud Security

Target Roles: SOC Analyst Β· Security Operations Β· Network Security Β· Cloud Security πŸ“ United States β€” Open to Relocation Authorized to work in the U.S. | F-1 OPT / STEM OPT eligible


πŸ—‚οΈ Portfolio

Real tools, real findings, real artifacts β€” built across coursework and independent research.

RepositoryWhat it covers
3 CloudTrail detections (root usage, IAM privilege escalation, log tampering) Β· CloudWatch metric filters + Sigma rules Β· 84–208s alert times Β· incident reconstructed from logs (680 β†’ 11 events)
12 attack scenarios Β· 24 real .pcapng captures Β· MITRE ATT&CK mapped Β· detection thresholds documented
SQL injection with annotated attack code Β· RSA-2048 with real .pem keypair and verifiable .enc artifact
Azure vs GCP default IaaS security review Β· IAM/logging gaps Β· CIS v3.0.0 / NIST hardening checklist
Malware evolution analysis Β· YARA detection rules (ransomware, fileless T1059.001, APT T1021)
Equifax / Cambridge Analytica / T-Mobile breach analysis Β· IAM controls Β· MFA strategy Β· STRIDE modeling
Nessus vulnerability scanning Β· Wireshark 5-protocol analysis Β· NAT/VPN behavior β€” live environments

πŸ’Ό Experience

πŸ‘¨β€πŸ«George Mason University Graduate Teaching Assistant
Aug 2025 – May 2026
Mentored 200+ students through Information Security; labs, office hours, and graded assessments.
πŸ›‘οΈComtech LLC Cybersecurity SME Intern (MSSP)
May 2025 – Aug 2025
Designed a managed security services package Β· built the organization's first CMMC compliance framework Β· STRIDE/DREAD threat modeling Β· 3 technical whitepapers; 5+ healthcare and government clients.
🌐Movate / HPE-Aruba Networking Network Security Engineer, L1 β†’ L2
Sep 2021 – Jul 2024
Enterprise incident response across 2,500+ switches/routers and 3,000+ users Β· 80% MTTR reduction via Splunk Β· 200+ Qualys/Nessus vulnerability assessments Β· 802.1X, RADIUS, TACACS+ hardening.

πŸ› οΈ Technical Skills

Security Monitoring & SIEM


Threat Detection & Analysis


Frameworks & Standards


Cloud Security


Networking & Infrastructure


Identity & Access Management


Operating Systems & Scripting



πŸ… Certifications

Β  Β  Β  Β  Β  Β  Β 

Splunk Core User Training β€” hands-on coursework


✍️ Writing

CTF walkthroughs & incident writeups on Medium β€” documenting the thinking behind each level, not just the solution.

Ransomware Breach on Instructure (Canvas)

OverTheWire Natas Level 0 β†’ 1

OverTheWire Natas Level 1 β†’ 2

OverTheWire Natas Level 2 β†’ 3

OverTheWire Natas Level 3 β†’ 4

OverTheWire Natas Level 4 β†’ 5

OverTheWire Natas Level 5 β†’ 6

More Levels are making their way!!!


🧭 Background

➜ ➜ ➜ ➜ ➜
Three years on the HPE-Aruba TAC team gave me a ground-level view of how enterprise infrastructure actually behaves under attack conditions β€” real customers, real incidents, real production networks. The security thread was always there: vulnerability assessments, access control hardening, Splunk log analysis, flagging misconfigurations before they became incidents. That operational foundation is what pushed me toward formalizing the security side at GMU.

πŸ’‘ My logic: understand how everything connects, then learn how to defend it.


πŸ“« Connect

Β  Β  Β 

United States Β· Open to full-time roles Β· Available now

Pinned Loading

  1. wireshark-network-threat-investigation wireshark-network-threat-investigation Public

    Packet-level threat investigation lab using Wireshark to analyze reconnaissance, credential attacks, and insecure network traffic.

  2. cloud-security-iaas cloud-security-iaas Public

    Comparative security evaluation of default Infrastructure-as-a-Service (IaaS) configurations in Microsoft Azure and Google Cloud Platform (GCP), focus on IAM controls, storage security, encryption …

  3. network-security-labs network-security-labs Public

    Cybersecurity lab portfolio showcasing real-world experience in vulnerability scanning, traffic analysis, and network security fundamentals.

  4. applied-security-labs applied-security-labs Public

    Practical security labs: SQL injection attack with annotated code and RSA-2048 asymmetric cryptography with real keypair artifacts

  5. malware-progression-detection malware-progression-detection Public

    Analyzes the evolution of malware and explores modern techniques for detecting and mitigating advanced cyber threats.

    YARA

  6. identity-theft-research identity-theft-research Public

    Identity theft - Case Studies, Attack Vectors, Business Impact. How it could have been prevented and counter measures taken to avoid such incidents in the future.