Available for full-time roles & contract work
--:--:-- IST // Srinagar

Vansh Saini

Cybersecurity Analyst & VAPT Specialist

NIT Srinagar • B.Tech in Information Technology (CGPA 8.01/10)

“Offensive curiosity. Defensive precision. Systematically identifying attack vectors and verifying trust boundaries from network protocols to smart contracts.”

— Vansh Saini // Security Engineering & Operations

Specializing in SOC log triage (MITRE ATT&CK), web application VAPT (OWASP Top 10), and Azure cloud security controls (NSGs/WAF/Bastion). Ranked in the Top 3% on TryHackMe with CEH v13 and CNSP certifications.

Vansh Saini

Vansh Saini

NIT Srinagar • IT

CGPA 8.01
TryHackMe

Top 3% Global

Hackathon

Rank 8 / 2600+

Background & Philosophy

Engineering Secure, Resilient Digital Architectures

A comprehensive engineering approach bridging offensive vulnerability assessment, defensive SOC monitoring, and cloud-native security controls.

I am a 3rd-year Information Technology undergraduate at the National Institute of Technology (NIT) Srinagar (CGPA: 8.01/10). My work centers on understanding systems at a fundamental level — from TCP/IP packet flows and Linux kernel permissions to web application logic flaws.

In offensive security, I have conducted structured vulnerability assessments mirroring enterprise audit lifecycles (such as my OWASP Juice Shop VAPT), generating formal risk registers, proof-of-concept exploits, and remediation strategies for 8 distinct vulnerability classes.

In security operations, I engineer custom tooling like Loghound, which scores and aggregates suspicious authentication logs mapped to MITRE ATT&CK techniques for faster triage.

Beyond traditional infrastructure, I explore decentralized auditability using Solidity and research defenses against emerging AI/LLM prompt injection vectors.

Academic Standing

NIT Srinagar • B.Tech IT (2024–2028)

CGPA: 8.01 / 10.0

Presence & Locations

Srinagar (NIT), Jammu & Kashmir

Origins: Bhiwani & Bikaner

Web Application VAPT

Structured penetration testing following OWASP Top 10 guidelines. Proven ability to discover, exploit, and document vulnerabilities with standardized CVSS v3.1 scoring.

SOC & Detection Engineering

Analyzing authentication and web access logs, building custom Python log triage tools (Loghound), and mapping attack patterns to the MITRE ATT&CK framework.

Azure Cloud Security

Designing isolated multi-tier architectures with Azure VNet, Network Security Groups (NSGs), Application Gateway WAF, and Bastion jumpboxes for least-privilege administration.

Systems & Web3 Security

Developing robust automation in Python, Java, and C, with smart contract security and tamper-resistant audit trails developed on Solidity/Ethereum.

Security Repositories

Featured Systems & Assessments

Real-world penetration testing, custom threat triage tooling, cloud infrastructure hardening, and decentralized audit systems with individual GitHub repositories.

SOC & Detection Tool

Loghound — Security Log Triage & Threat Detection Tool

Python-based security log triage CLI tool mapping authentication anomalies to MITRE ATT&CK.

An automated threat triage and log analysis tool that ingests authentication and web access logs, scores anomalous events based on threat heuristics, and aggregates actionable investigation dossiers.

MITRE ATT&CK:T1110 (Brute Force)T1078 (Valid Accounts)T1190 (Exploit Public-Facing App)
  • Built a Python-based security log triage engine to analyze authentication and web access logs, prioritizing suspicious activity for SOC analysts.
  • Implemented dynamic detection scoring, event aggregation, and automated MITRE ATT&CK framework technique mapping.
  • Developed an interactive terminal UI (TUI) with Textual for rapid incident drill-down and structured JSON audit reporting.
PythonTextual TUIMITRE ATT&CKJSONRegexLog Analysis
Open GitHub Repo
Offensive Security & VAPT

VAPT Lab — Web Application Pentest on OWASP Juice Shop

Structured web application VAPT identifying and documenting 8 distinct vulnerabilities with CVSS v3.1 ratings.

CVSS v3.1 Severity: 8.8 (High)
Kali LinuxBurp SuiteNmapOWASP Top 10CVSS v3.1Web Security
Open GitHub Repo
Cloud Security Architecture

Azure Secure Web Application Infrastructure

Multi-tiered segmented cloud architecture on Microsoft Azure enforcing least-privilege and perimeter WAF defense.

Microsoft AzureAzure VNetNSGApplication GatewayWAFAzure Bastion
Open GitHub Repo
Web3 & Smart Contracts

Tamper-Proof Grievance & Audit Blockchain System

Solidity smart contract audit layer built during CodeSlayers 2K25 Hackathon (Ranked 8th / 2600+ Teams).

National Finals Top 8 / 2600+ Teams
SolidityEthereumWeb3.jsReactNode.jsSmart Contract Audit
Open GitHub Repo
CTF & Security Labs

Room Writeups & CTF Walkthroughs

Detailed exploitation notes, privilege escalation walkthroughs, and TryHackMe rooms documented on my GitHub.

View All Writeups on GitHub
VAPT LabDifficulty: Walkthrough
2025

OWASP Juice Shop — Complete Web VAPT & Risk Assessment

Comprehensive offensive security assessment uncovering 8 distinct vulnerabilities across authentication bypass, BFOR, SQL injection, reflected XSS, and security misconfigurations.

Key Technical Takeaway:

Demonstrated formal risk reporting with CVSS 8.8 High severity metrics and actionable patch remediation.

Burp SuiteOWASP Top 10CVSS v3.1SQLiXSS
Read Full Writeup
TryHackMeTryHackMeDifficulty: Medium
2026

TryHackMe AI Security Path — Prompt Injection & Model Vulnerabilities

Detailed writeups on LLM adversarial prompt injection attacks, indirect context poisoning in RAG pipelines, and model guardrail evasion.

Key Technical Takeaway:

Documented systematic sanitizer guardrails for LLM agentic tool calls and output classification.

AI SecurityOWASP LLM Top 10Prompt InjectionModel Evasion
Read Full Writeup
TryHackMeTryHackMeDifficulty: Medium
2025

Junior Penetration Tester Track — Privilege Escalation & Recon

Walkthroughs for Linux SUID exploitation, sudo misconfigurations, Windows Token manipulation, and automated Gobuster/Nmap port enumeration.

Key Technical Takeaway:

Reproducible bash & python automation scripts for fast local enumeration on compromised targets.

Privilege EscalationLinux SUIDNmapMetasploitGobuster
Read Full Writeup
Skills & Tooling

Technical Skills & Competencies

Offensive security tools, detection engineering environments, network defense, and core systems programming.

Core Technologies & Tools
Click or hover any technology to inspect

Select or hover over any technology logo above to view specialization details.

SOC & Security Operations

Security monitoring, log triage, incident analysis, and detection engineering mapped to MITRE ATT&CK.

Security Monitoring90%
Log Analysis & Triage92%
Detection Engineering85%
MITRE ATT&CK Mapping88%
Splunk SIEM82%
Wireshark Packet Analysis86%
Authentication Analysis88%

VAPT & Offensive Security

Systematic web application penetration testing, vulnerability identification, and CVSS severity scoring.

OWASP Top 10 Testing94%
Burp Suite Pro / Community92%
Nmap & Network Enumeration90%
CVSS v3.1 Scoring95%
Vulnerability Documentation90%
Metasploit Framework80%
Kali Linux Tooling (ffuf, SQLmap, Gobuster)88%

Cloud Security & Controls

Securing cloud-native infrastructure, network isolation, WAF rules, and least-privilege administrative access.

Microsoft Azure Security88%
Azure Virtual Networks (VNet)86%
Network Security Groups (NSG)90%
Application Gateway WAF85%
Azure Bastion Host88%
Access Controls & Least Privilege89%

Programming, Scripting & Web3

Developing automated security tools, backend API contracts, and smart contract verification.

Python (Security Automation & Textual TUI)92%
Solidity (Ethereum Smart Contracts)84%
Java & Object Oriented Programming86%
C Language & Memory Concepts82%
React & Next.js80%
SQL & Relational Databases85%
Git & Version Control90%

Core Computer Science & Networking

Rigorous academic fundamentals from NIT Srinagar covering protocols, OS internals, and data structures.

TCP/IP & OSI Protocols92%
HTTP/HTTPS & TLS Cryptography90%
DNS Architecture & Network Security88%
Linux & Unix Operating Systems90%
DBMS & Transaction Concurrency84%
Data Structures & Algorithms85%
Timeline & Roles

Experience, Leadership & Hackathons

Leading technical sprints under pressure, managing operations at NIT Srinagar, and maintaining rigorous academic excellence.

Hackathon🏆 8th / 2600+ Teams (National Finalist)

Team Lead — National Finalist (Rank 8 / 2600+ Teams)

CodeSlayers 2K25 Hackathon • NIT Delhi

November 2025New Delhi, India

Led a 4-member engineering team during a 36-hour sprint, developing a decentralized grievance and tamper-resistant audit infrastructure.

  • Coordinated task allocation, technical architecture, and rapid prototyping under high-pressure 36-hour hackathon conditions.
  • Designed and implemented a Solidity smart contract layer on Ethereum for tamper-resistant grievance verification and auditable history.
  • Achieved 8th rank nationwide out of 2600+ registered teams, successfully qualifying for the National Finals.
Leadership📜 Official LOR from Director & CEO

Operations Lead (NIT Srinagar Pod) & PAS Executive Lead

Caarya (Caarya Innovative Solutions Pvt. Ltd.)

Nov 2025 – May 2026Srinagar, Jammu & Kashmir

Spearheaded operational execution, cross-pod workflow systems, and accountability governance across student pods at NIT Srinagar.

  • Served as Operations Lead for the NIT Srinagar Industrial Pod, establishing operational structuring, execution tracking, communication workflows, and documentation systems.
  • Core Team Executive Lead for the Pod Accountability System (PAS) initiative: orchestrated workflow planning, participation coordination, and execution tracking using Notion, Google Sheets, and Discord.
  • Awarded official Letter of Recommendation (LOR) on 15 May 2026 by Director & CEO G. Nikhil Srivatsa recognizing reliability, structured thinking, and execution-oriented leadership.

Verified Recommendation Letter

Endorsed by G. Nikhil Srivatsa (Director & CEO, Caarya) • 15 May 2026

Education🎓 CGPA: 8.01 / 10

B.Tech in Information Technology

National Institute of Technology (NIT) Srinagar

2024 – 2028 (Expected)Srinagar, Jammu & Kashmir

Undergraduate student focusing on Computer Networks, Operating Systems, Systems Security, Cryptography, and Database Management Systems.

  • Current CGPA: 8.01 / 10.0
  • Active participant in collegiate cybersecurity CTFs, technical hackathons, and security research groups.
  • Deep theoretical grounding in OSI/TCP protocols, network defense, OS kernel concepts, and distributed systems.
Industry Credentials

Certifications & Accreditations

Verified knowledge and practical examinations validating offensive pentesting, network defense, and AI security expertise. Click any certificate to inspect the full document.

Quick View:
EC-Council

Issued: 30 April, 2026

VerifiedID: ECC9416705823

Certified Ethical Hacker (CEH)

Industry-standard certification accredited under ANSI/ISO/IEC 17024 validating practical offensive security, threat vector analysis, network attacks, malware analysis, and web application exploitation.

Certified Ethical Hacker (CEH) full certificate
Click to Enlarge & Verify
Ethical HackingPenetration TestingThreat Vector AnalysisVulnerability Assessment+2
Inspect Document →
The SecOps Group

Issued: 30 July, 2026

VerifiedID: 11712955

Certified Network Security Practitioner (CNSP) — With Merit

Hands-on examination evaluated by S. Siddharth assessing enterprise network hardening, packet inspection, perimeter firewall configurations, IDS/IPS tuning, and defensive boundary enforcement.

Certified Network Security Practitioner (CNSP) — With Merit full certificate
Click to Enlarge & Verify
Network SecurityPacket InspectionFirewall ConfigurationIDS/IPS+2
Inspect Document →
Defronix Academy

Issued: 20 June, 2025

VerifiedID: DEHE-ACAD-2025

Defronix Ethical Hacker Essential (DEHE)

Certificate of Appreciation awarded for core practical foundation in offensive security principles, footprinting, reconnaissance, vulnerability assessment, system hacking, and web exploitation methodologies.

Defronix Ethical Hacker Essential (DEHE) full certificate
Click to Enlarge & Verify
FootprintingReconnaissanceSystem ExploitationWeb Pentesting+1
Inspect Document →
TryHackMe

Issued: 27 May, 2026

VerifiedID: THM-3SLPL0YMN1

AI Security Learning Path

Official certificate of completion signed by Ben Spring (CEO) and Ashu Savani (CTO) covering 20+ hours of advanced labs on LLM security, adversarial prompt injections, RAG pipeline poisoning, and model guardrail evasion.

AI Security Learning Path full certificate
Click to Enlarge & Verify
Prompt InjectionModel InversionAdversarial MLOWASP LLM Top 10+2
Inspect Document →
Continuous Security Training

TryHackMe Journey & Global Standing

Consistent hands-on CTF challenge completion, offensive labs, and specialized AI security research.

TryHackMe
Official THM Profile

@vanshsaini

Verified
Global Platform Standing

Top 3%

Ranked in the Top 3% of global security practitioners

AI Security Path (Completed)100%
View Live TryHackMe Profile
01

Offensive Pentesting

Web exploits, privilege escalation, Burp Suite, OWASP Juice Shop, Metasploit.

02

SOC & Threat Triage

Log analysis, SIEM investigation, Wireshark packet capture, alert correlation.

03

AI & LLM Security

OWASP Top 10 for LLMs, prompt injection vectors, model guardrail evaluation.

04

Network Defense

Subnet scanning, firewall filtering, DNS security, encrypted tunneling.

Get in Touch

Let's Connect & Collaborate

Open to SOC Analyst, Security Engineering, and VAPT opportunities, internships, and technical collaborations.

Direct Email

Send a Message

Active

Feel free to reach out directly for full-time opportunities, security discussions, or technical projects.

vansh.sainiwork@gmail.com
Resume (PDF)
Encrypted Dispatch

Send a Direct Message

Fill in the details below to open a pre-formatted inquiry to Vansh.