Security engineering portfolio / 2026

PARAKHSHINDE.

Exploring how systems can fail.
Building tools to help defend them.

AI security, GCP IAM analysis and detection engineering

Portrait of Parakh Shinde

Learning through
building.

I’m an early-career security engineering candidate working at the intersection of AI security, cloud authorization and threat detection.

My projects turn security questions into tools, controlled experiments and documented findings. I focus on making results reproducible and being clear about what each lab can establish.

My part-time technical support background includes Windows and Linux systems.

AI SECURITYRED TEAM LABSDETECTION ENGINEERING
74IAMGraph testsDocumented in repository
10AWS lab SPL rulesCustom detections
8SOC lab SPL rulesControlled simulations

Built to ask
better questions.

Five projects. Source code, experiment results and limitations in each repository.

02 / CLOUD AUTHORIZATION

GCP-IAMGraph

Three-state IAM authorization and attack-path analysis with eight escalation-detection rules and SARIF export. The repository documents 74 tests and 91.33% coverage, with explicit limits to the modeled GCP behavior.

GCP IAMPYTHONSARIF
EXPLORE REPOSITORY
03 / AI RED TEAM LAB

LLM Vulnerability Assessment

A reproducible comparison of baseline and guarded local Llama 3.2 models using NVIDIA garak. Matched jailbreak and encoding-injection scans show both improvements and remaining failures in a controlled assessment.

GARAKOLLAMAPYTHON
EXPLORE REPOSITORY
04 / AWS DETECTION LAB

Cloud Security Monitoring

AWS CloudTrail and WAF telemetry connected to Splunk, with 10 documented custom SPL detections, dashboards and response notes. VPC Flow Logs are used for focused investigations in the single-node lab.

AWSSPLUNK SPLTERRAFORM
EXPLORE REPOSITORY
05 / SOC DETECTION LAB

Enterprise SOC Monitoring

A Splunk lab bringing together Windows/Sysmon, Linux, web and IDS telemetry. Eight documented custom SPL detections map to MITRE ATT&CK and are explored through eight controlled simulations.

SYSMONSURICATAMITRE ATT&CK
EXPLORE REPOSITORY

Tools behind
the work.

AI & API SECURITY

  • Prompt injection labs
  • API authorization testing
  • garak / Ollama
  • Python evaluation harnesses

CLOUD & IAM

  • GCP IAM analysis
  • AWS CloudTrail / WAF
  • VPC Flow Logs
  • Terraform

DETECTION

  • Splunk SPL
  • MITRE ATT&CK
  • Alert validation
  • Controlled simulations

SYSTEMS & SIGNALS

  • Windows / Sysmon
  • Linux logs
  • Suricata
  • Python automation

LET’S BUILD
SAFER SYSTEMS.

Looking for an entry-level security role or internship where I can build, investigate and keep learning.

EDUCATION

SRMIST — MCA, Cyber Security & Cyber Forensics
Expected June 2028

RNTU — BCA · 2025

CURRENT TRAINING

Advanced Cybersecurity Program (AccioJob)
In progress

LOCATION

Bengaluru, India
Open to onsite opportunities across India.