Skip to content
View kakshaykumar's full-sized avatar

Highlights

  • Pro

Block or report kakshaykumar

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
kakshaykumar/README.md

Hi There :) - I'm Akshaykumar Kathirvelu 👋

Cybersecurity Professional · 3 Yrs Enterprise Network & Security Operations · Cybersecurity SME Intern (MSSP) · SIEM (Splunk, Sentinel, Wazuh) · Cloud Security · MS AIT (Cybersecurity) GMU '26 · Open to Full-time

Availability: Available now Open and Actively Looking for Full-time Opportunities

Roles Targeting: SOC Analyst · Security Operations · Network Security · Cloud Security

📍 United States | Open to Relocation Across the U.S. - Onsite · Hybrid · Remote

  • Authorized to work in the U.S. | F-1 OPT / STEM OPT eligible.

Currently

  • 🔒 Actively applying for full-time cybersecurity roles
  • ✍️ Writing CTF walkthroughs and Incident reports on Medium
  • 🎯 Actively working on hands-on Projects
  • 📚 CompTIA Security+ — in progress
  • ☁️ Building multi-platform cloud security assessment (AWS + Azure + GCP)

Portfolio

Real tools, real findings, real artifacts — built across coursework and independent research.

Repository What it covers
🔬 wireshark-network-threat-investigation 12 attack scenarios · 24 real .pcapng captures · MITRE ATT&CK mapped · detection thresholds documented
⚔️ applied-security-labs SQL injection with annotated attack code · RSA-2048 with real .pem keypair and verifiable .enc artifact
☁️ cloud-security-iaas Azure vs GCP default IaaS security review · IAM/logging gaps · CIS v3.0.0 / NIST hardening checklist
🦠 malware-progression-detection Malware evolution analysis · YARA detection rules (ransomware, fileless T1059.001, APT T1021)
🛡️ identity-theft-research Equifax / Cambridge Analytica / T-Mobile breach analysis · IAM controls · MFA strategy · STRIDE modeling
📡 network-security-labs Nessus vulnerability scanning · Wireshark 5-protocol analysis · NAT/VPN behavior — live environments

In Progress(artifacts will be published): Academic hands-on projects and assignments:

  • 🔒 Secure Software Development — 6 hands-on security labs
  • 📊 Information: Representation, Processing and Visualization - Understanding Victim Demographics for Violence Reduction in Chicago
  • 🧮 Data Structures & Algorithms — Shortest Path Computation for Self-Driving Cars Using Dijkstra and A* Algorithms

Experience

👨‍🏫 Graduate Teaching Assistant — GMU (Aug 2025 – May 2026)
Mentored 200+ students through IT 223 Information Security Fundamentals — labs, office hours, and graded assessments.

🛡️ Cybersecurity SME Intern (MSSP) — Comtech LLC (May – Aug 2025)
STRIDE/DREAD threat assessments, SOC validation lab, 3 technical whitepapers, CMMC readiness — healthcare and US State/Local Government clients.

🌐 Network Security Engineer L1 → L2 — Movate / HPE-Aruba (Sep 2021 – Jul 2024)
Enterprise incident response across 2,500+ switches and 3,000+ users · Splunk, Qualys, Nessus, Wireshark · 802.1X, RADIUS, TACACS+ hardening.


Technical Skills

Security Monitoring & SIEM
Splunk SPL Queries Microsoft Sentinel Wazuh Microsoft Defender Windows Event Viewer

Threat Detection & Analysis
Nessus Qualys Wireshark Nmap Burp Suite Metasploit YARA

Frameworks & Standards
MITRE ATT&CK NIST IR Lifecycle OWASP Top 10 STRIDE DREAD CVSS CIS Benchmarks

Cloud Security
Microsoft Azure Google Cloud Platform AWS
Defender for Cloud Security Command Center GuardDuty CloudTrail VPC/NSG Flow Logs

Networking & Infrastructure
HPE Comware ArubaOS CX Aruba Central Cisco Arista SolarWinds
VLANs OSPF BGP MPLS 802.1X RADIUS TACACS+ IPSec SSL/TLS

Identity & Access Management
Active Directory Azure Entra ID IAM RBAC Zero Trust

Operating Systems & Scripting Tools
Python PowerShell Bash SQL Git Linux Distros Windows


Certifications

  • 🏅 ISC2 Certified in Cybersecurity (CC)
  • ☁️ Microsoft Certified: Azure Fundamentals (AZ-900)
  • 🔍 Splunk Certified Core User Training (Hands-on Coursework)
  • 🛡️ Fortinet Certified Associate Cybersecurity (FCA)
  • 🛡️ Fortinet Certified Fundamentals Cybersecurity (FCF)
  • 🔒 TryHackMe Pre-Security Certificate
  • 🎯 CompTIA Security+ — In progress

Writing

CTF walkthroughs & Incident Writeups on Medium — documenting the thinking behind each level, not just the solution:


Background

🎓 ECE📡 CCNA🌐 HPE-Aruba Network Security (3 yrs · L1→L2)🔐 MS AIT Cybersecurity @ GMU🛡️ MSSP Cybersecurity SME Intern👨‍🏫 Graduate TA

Three years on the HPE-Aruba TAC team gave me a ground-level view of how enterprise infrastructure actually behaves under attack conditions — real customers, real incidents, real production networks. The security thread was always there: VAPT cycles, access control hardening, Splunk log analysis, flagging misconfigurations before they became incidents. That operational foundation is what pushed me toward formalizing the security side at GMU.

My logic: understand how everything connects, then learn how to defend it.


Connect

   


Washington DC-Baltimore Area / Fairfax, VA · Open to full-time roles in Security Operations · Network Security · Cloud Security · Available now

Pinned Loading

  1. wireshark-network-threat-investigation wireshark-network-threat-investigation Public

    Packet-level threat investigation lab using Wireshark to analyze reconnaissance, credential attacks, and insecure network traffic.

  2. cloud-security-iaas cloud-security-iaas Public

    Comparative security evaluation of default Infrastructure-as-a-Service (IaaS) configurations in Microsoft Azure and Google Cloud Platform (GCP), focus on IAM controls, storage security, encryption …

  3. network-security-labs network-security-labs Public

    Cybersecurity lab portfolio showcasing real-world experience in vulnerability scanning, traffic analysis, and network security fundamentals.

  4. applied-security-labs applied-security-labs Public

    Practical security labs: SQL injection attack with annotated code and RSA-2048 asymmetric cryptography with real keypair artifacts

  5. malware-progression-detection malware-progression-detection Public

    Analyzes the evolution of malware and explores modern techniques for detecting and mitigating advanced cyber threats.

    YARA

  6. identity-theft-research identity-theft-research Public

    Identity theft - Case Studies, Attack Vectors, Business Impact. How it could have been prevented and counter measures taken to avoid such incidents in the future.