Aditya Jain
Versatile Cybersecurity Engineer with 4+ years of enterprise experience in Security Operations, Threat Hunting, and Vulnerability Management across India’s national government IT infrastructure.
Orca6™ High-Frequency Trading VPS
Sub-millisecond Windows Server VPS pre-installed with automated watchdog algorithms.
Professional Summary
Highly capable Cybersecurity Engineer & SME with 4+ years of hands-on enterprise experience architecting, tuning, and defending critical IT and e-governance systems. Currently managing large-scale SecOps operations at Ebix Technologies contracted directly to the National Informatics Centre (NIC).
Adept at offensive simulations (Active Directory exploitation, payload analysis, and sandbox malware replication) and defensive engineering (writing custom Wazuh/Snort IDS rules, tuning SIEM systems, and orchestrating EDR policies).
Proven ability to automate regulatory auditing through custom PowerShell and Python frameworks, reducing overall audit cycles by 60% and successfully responding to national CERT-In security advisories.
🎯Open to U.S. Relocation / H-1B Sponsorship. Currently targeted locations: Washington D.C. Metro, Northern Virginia, Austin TX, Dallas TX, or Chicago IL.
{
"name": "Aditya Jain",
"title": "Cybersecurity Engineer",
"exp": "4+ Years Enterprise SecOps",
"relocation": "U.S. Relocation / H-1B",
"email": "adityasec32@gmail.com",
"contact": "+91 740 058 8896",
"studying": "MBA in Cybersecurity",
"pursuing": ["OSCP", "CISSP"]
}Core Competencies
SIEM / EDR
Wazuh SIEM, Blu Sapphire, SentinelOne EDR, Trend Micro Deep Security, Kaspersky EDR, Splunk (familiar), Microsoft Sentinel.
Offensive Security
Active Directory Exploitation (Kerberoasting, Pass-the-Hash, DCSync, Kerberos Delegation), Burp Suite Pro, BloodHound, Metasploit, Nmap, Impacket, Mimikatz.
Network Security & VPNs
Check Point NGFW, Fortinet FortiGate, Sophos, Cisco AnyConnect, AAA (TACACS+/RADIUS), OSPF Routing, Wireshark packet capture & triage.
Scripting & AI Automation
Python, PowerShell, Bash, Git. Developing customized automated compliance scripting, network log parsers, and AI telemetry helpers.
Compliance & Incident Response
NIST CSF, OWASP Top 10 remediation, CERT-In compliance guidelines, RAM dump forensics, threat intelligence feed integration, Snort signature engineering.
Endpoint & Infrastructure
KACE UEM (750+ nodes), USB policy enforcement, unified security baselines, Linux server hardening, DHCP/PXE deployment, automated patching.
Professional Experience
Security Administrator
- Enterprise EDR Deployment: Architected and managed SentinelOne and Trend Micro Deep Security across 750+ regional offices, monitoring threat telemetry and tuning detection rules to neutralize emerging vectors.
- Incident Response & Forensics: Primary responder to CERT-In security advisories; performed host forensics, RAM dump analysis, IP reputation triage, and authored PoC exploits to validate vulnerability closures.
- Compliance Automation: Built PowerShell and Python frameworks executing 120+ regulatory checks (NIST/ISO 27001 aligned) across 750+ endpoints — reducing manual cycles by 60%.
- Vulnerability Management: Coordinated disclosure and patching with government development teams to remediate OWASP Top 10 vulnerabilities.
- Endpoint & Network Hardening: Enforced default-deny policies on Check Point NGFW, deployed USB blocks, and conducted public IP exposure audits.
SOC Analyst — Threat Hunter
- CNI SOC Operations: Threat hunting and incident response SME in a 24x7 critical nuclear infrastructure SOC (DOE-equivalent sensitivity), monitoring telemetry via Blu Sapphire SIEM.
- Sandbox Analysis: Reproduced adversary exploit signatures in isolated lab environments; performed behavioral malware analysis with Kaspersky EDR to reverse-engineer TTPs.
- Detection Engineering: Tuned SIEM correlation rules and EDR behavioral rules, yielding a 35% improvement in true-positive detection rates while eliminating alert fatigue.
SOC Analyst — IDS & Signature Development
- IDS Engineering: Authored and deployed custom Snort and Wazuh IDS signatures to capture novel attack patterns.
- Threat Intelligence: Automated AbuseIPDB threat feed ingestion to enforce real-time perimeter firewall IP blocklisting.
- Telemetry Analysis: Analyzed bandwidth and network traffic logs to identify routing loops and anomalies.
Technical Support Executive
- Delivered Tier-2 Microsoft enterprise support via the Rave ticketing platform, maintaining SLA compliance and documenting security knowledge bases.
Key Security Projects
CDAC/CERT-In Compliance Engine
Engineered a PowerShell & Python framework executing 120+ automated system configuration checks mapped to NIST standards across 750+ government nodes via KACE UEM.
Government NOC Admin Portal
A dashboard monitoring 38 district-level router nodes with real-time traceroute telemetry and a voice-input enabled RAG cybersecurity chatbot running locally (Ollama/LLM).
Real-Time Network Alert Dashboard
Automated ping monitoring and packet loss analysis dashboard for enterprise core routing units. Integrates custom outage alerting, noise filters, and live telemetry log feeds.
Cyber Free Rice Initiative
Interactive education platform featuring a stunning macOS-inspired UI. User quiz scores are simulated to feed directly into food charity initiatives (FreeRice concept).
Certifications & Training
Completed Credentials
Targeted Roadmap
Education
Master of Business Administration (MBA) in Cybersecurity
Chitkara University, India
B.Tech in Computer Science & Engineering
Manipal University Jaipur, India
Establish Connection
Get in Touch
Open to enterprise SecOps, Purple Teaming, Detection Engineering, or Red Team roles — worldwide remote and relocation opportunities.
Secure Communications
To securely share logs, endpoints, or project briefs, import my PGP public key directly: