Career
Professional Experience
Hands-on security internships and practical exposure
Offensive Security Intern
Gained hands-on experience in offensive security operations, focusing on vulnerability assessment, penetration testing, and security automation. Worked alongside senior security professionals on real-world security assessments and red team engagements.
Key Responsibilities
- Developed automated reconnaissance tools using Python to streamline information gathering phases of penetration tests
- Performed web application penetration testing following OWASP methodology, identifying and exploiting vulnerabilities such as SQLi, XSS, CSRF, and authentication bypasses
- Analyzed Common Vulnerabilities and Exposures (CVEs) and assessed their impact on client infrastructure
- Conducted network scanning and enumeration using Nmap, Masscan, and custom scripts
- Participated in vulnerability disclosure and remediation consulting
- Documented findings and prepared comprehensive penetration testing reports with executive summaries
Key Achievements
- Discovered 15+ critical vulnerabilities across multiple client applications
- Reduced reconnaissance time by 40% through custom automation tools
- Contributed to 8 successful penetration testing engagements
- Received commendation for detailed technical reports and clear remediation guidance
Technologies & Tools
Cyber Threat Intelligence Intern
Immersed in the world of cyber threat intelligence, focusing on threat research, reconnaissance techniques, and practical exploitation in controlled lab environments. Worked with a team of analysts to identify, track, and analyze emerging cyber threats and attack campaigns.
Key Responsibilities
- Conducted threat research on emerging attack vectors and adversary TTPs
- Performed advanced reconnaissance and OSINT collection using various tools and methodologies
- Executed exploitation techniques in isolated lab environments to understand attacker methodologies
- Analyzed security logs from SIEM systems to identify indicators of compromise (IOCs)
- Tracked threat actor groups and documented their infrastructure, tools, and campaigns
- Contributed to threat intelligence reports and briefings
- Collaborated with incident response team on active investigations
Key Achievements
- Identified and documented 3 emerging phishing campaigns targeting financial institutions
- Created automated OSINT scripts that reduced research time by 50%
- Contributed to 12+ threat intelligence reports distributed to clients
- Successfully tracked and attributed malicious infrastructure to known threat actor groups
- Developed IOC extraction tool that processed 1000+ log entries daily
Technologies & Tools
Growth
Professional Skills Gained
Transitioned from theoretical knowledge to practical application. These internships provided exposure to real client environments, production systems, and the complexity of actual security challenges faced by organizations.
Learned industry-standard methodologies for penetration testing, threat intelligence gathering, and security assessment. Gained understanding of compliance requirements, legal considerations, and professional ethics.
Worked in professional security teams, participated in daily standups, collaborated on assessments, and learned the importance of clear communication in security operations.
Mastered the art of security report writing. Learned to communicate technical findings to both technical and non-technical audiences, create actionable recommendations, and document every step of the assessment process.
Enhanced critical thinking and analytical skills through real-world threat analysis, vulnerability research, and complex problem-solving scenarios. Learned to think like both an attacker and a defender.
Developed ability to quickly learn new tools, technologies, and techniques. Security landscape evolves rapidly, and these experiences taught the importance of continuous learning and adaptation.
Impact
Impact & Contributions
Throughout these internship experiences, I was able to make meaningful contributions to security operations and client engagements. My work directly helped organizations identify and remediate critical vulnerabilities before they could be exploited by malicious actors.
The automated tools I developed during these internships continue to be used by the teams, improving efficiency and reducing manual effort in reconnaissance and threat intelligence gathering operations.
These experiences solidified my passion for cybersecurity and provided invaluable insights into professional security operations. They also highlighted areas where I want to develop deeper expertise and continue growing as a security professional.
Let's Work Together
Interested in bringing this experience to your team?