VKHM.CYBER Vignesh K H M | Cybersecurity Portfolio

Hi I'm Vignesh K H M

Cybersecurity Analyst | SOC Operations Level 1| Cloud Security

I help organizations detect, investigate, and contain threats—fast. As a SOC-focused Cyber Security Analyst, I turn noisy logs into clear stories, map activity to MITRE ATT&CK, and automate the repetitive with Python & Bash. Blue Team at heart, Red Team curious. Familiar with cloud security services, auditing, and monitoring the cloud environment.

4+ Certifications
15+ Security Tools
Vignesh K H M

Cybersecurity & Cloud Security Analyst

SOC Operations & Threat Detection

CompTIA Security+ Google Cybersecurity Microsoft Azure Fundamentals

About Me

I am a cybersecurity enthusiast pursuing a Bachelor's degree in Computer Science, with a strong focus on Blue Team operations, threat detection, and cloud security. I hold the CompTIA Security+ and Microsoft Azure Fundamentals certifications, which have built my foundation in network security, risk management, and cloud security practices.

I have completed the TryHackMe SOC Level 1 learning path along with multiple hands-on labs, gaining practical experience in log analysis, threat hunting, and security monitoring. I am skilled in tools such as Wireshark, Nmap, and SIEM platforms.

I am passionate about SOC workflows, incident response, and securing systems, and I am continuously building my skills and projects to grow as a cybersecurity professional.

[SYSTEM_RUNNING]
> Location: Adoni, Andhra Pradesh, India
> Status: Cybersecurity Student
> Certification: CompTIA Security+, Microsoft Azure Fundamentals
> Focus: SOC Analysis | Cloud Security | Network Security Analyst

Core Skills

Cybersecurity Tools

Wireshark Nmap Metasploit Burp Suite Splunk OpenVAS NIKTO Snort IDS

Programming

Python Bash

Concepts

Network Security Threat Detection Incident Response SIEM Monitoring Vulnerability Assessment

Frameworks

OWASP ISO/IEC 27001:2022 MITRE ATT&CK

Operating Systems

Kali Linux Ubuntu Windows

Professional Experience

Cyber Security Intern

Future Interns Nov 2025 - Dec 2025
  • Performed Web Application Security Testing identifying SQL injection, XSS, and authentication flaws.
  • Built Password Strength Analyzer Tool using Python with comprehensive algorithm documentation.
  • Analyzed and responded to simulated cybersecurity incidents with detailed IR reports.
  • Utilized Splunk and Wireshark for incident analysis and evidence collection.

Summer Training

Cyber Security & Ethical Hacking (Board Infinity) Jun 2025 - Jul 2025
  • Practical exposure to vulnerability assessment, SQL injection concepts, and network attack techniques.
  • Gained hands-on exposure to web application security testing, including identifying server-side weaknesses and data access issues.
  • Acquired practical knowledge of SQL injection detection and exploitation concepts to understand database security risks.
  • Learned web reconnaissance and vulnerability identification techniques using industry-standard security assessment tools.

IAM Developer - Virtual Experience

Tata Consultancy Services Dec 2024 - Jan 2025
  • Completed job simulation involving Identity and Access Management (IAM).
  • Acquired expertise in IAM principles and cybersecurity best practices.
  • Delivered comprehensive documentation showcasing technical communication skills.
  • Collaborated with Cybersecurity Consulting team on strategic business alignment.

Featured Projects

🛡️ Portable Log Analyzer

Domain: Network Security / Security Operations (SOC)

  • Developed a lightweight and portable log analysis tool to assist in security investigations.
  • Implemented support for multiple log formats including JSON, CSV, and TXT for unified analysis.
  • Designed advanced filtering and search features to quickly identify suspicious events.
  • Enabled time-based analysis to track user activity and potential threats.
  • Built as a browser-based tool requiring no installation, ensuring easy accessibility.
  • Improved efficiency of log analysis for SOC analysts and incident response workflows.
JavaScript JSON CSV TXT

☁️ AWS IAM Least Privilege Analyzer

Domain: Cloud Security

  • Built a cloud security tool to analyze AWS IAM policies and identify over-permissive access.
  • Implemented automated checks to detect wildcard permissions and excessive privileges.
  • Used Boto3 to interact with AWS services and audit IAM roles and policies.
  • Applied the Principle of Least Privilege to recommend secure policy configurations.
  • Generated detailed audit reports for better visibility and governance.
  • Enhanced cloud security posture by reducing unnecessary access risks.
Python AWS IAM Boto3

📋 Information Security Auditor

Domain: Governance, Risk & Compliance (GRC)

  • Conducted an internal audit based on ISO/IEC 27001:2022 security standards.
  • Evaluated organizational policies, access controls, and risk management practices.
  • Identified security gaps, non-conformities, and areas for improvement.
  • Performed risk assessments aligned with industry compliance requirements.
  • Prepared detailed audit reports with corrective action recommendations.
  • Strengthened understanding of governance, risk, and compliance practices.
ISO/IEC 27001:2022 Risk Assessment Audit Checklists

🌐 Web App Security Assessment

Domain: Web Security / Application Security

  • Performed a comprehensive security assessment based on OWASP Top 10 vulnerabilities.
  • Identified issues such as SQL Injection, Cross-Site Scripting (XSS), and CSRF.
  • Used tools like SQLMap and Nikto alongside manual testing techniques.
  • Analyzed session management, input validation, and security misconfigurations.
  • Documented vulnerabilities with severity ratings and impact analysis.
  • Provided remediation strategies to improve overall application security.
OWASP Top 10 SQLMap Nikto

Certifications

CompTIA Security+

CompTIA Security+

Globally recognized cybersecurity validation.

Microsoft Azure

AZ-900 Microsoft Azure Fundamentals

Cloud concepts, architecture, and core Azure services.

Google

Google Cybersecurity

Planned - Expanding security horizons.

TryHackMe

THM SOC Level 1

In Progress - Mastering SOC fundamentals.

Get In Touch

Let's Connect

Feel free to reach out for collaborations or opportunities.