Skip to main content
SEC_CORE: ACTIVE
AD_HARDENED: TRUE
BGP_RTT: 18.2ms
Firewall Engineering • VAPT & Pentesting • SecOps • Purple Teaming

Aditya Jain

Cybersecurity Engineer specializing in NGFW Architecture (Check Point, Fortinet) and Vulnerability Assessment & Penetration Testing with 3.5+ years of enterprise experience across government infrastructure (NIC/MeitY) and Critical National Infrastructure SOC operations (DAE/NFC). CNI-vetted.

3.5+
Years Cyber
750+
Govt Endpoints
15+
VAPT Assessments
60%
Audit Effort Saved
aditya@secops — terminal
aditya@secops:~# initialising secure session...
SEC_CORE: ACTIVE
AD_HARDENED: TRUE
Type 'help' for available commands.
Try:
aditya@secops:~$
01 /

Professional Summary

Cybersecurity Engineer & Firewall/VAPT Specialist with 3.5+ years of hands-on enterprise experiencein Next-Generation Firewall architecture, Web & Infrastructure Penetration Testing, and SIEM/EDR threat hunting. Currently managing large-scale cybersecurity operations at Ebix Technologies contracted directly to the National Informatics Centre (NIC, MeitY). Vetted for Critical National Infrastructure access (DAE/NFC).

Specializes in Check Point NGFW and Fortinet FortiGate perimeter security design (default-deny policies, NAT/ACL auditing, IPsec VPN tunnels) and conducting periodic VAPT assessments against government web portals, identifying and remediating OWASP Top 10 vulnerabilities with coordinated PoC exploit validation.

Equally adept at defensive SIEM/EDR engineering (SentinelOne, Wazuh, Blu Sapphire), DFIR triage (FTK Imager, Magnet RAM Capture, Disk2vhd), and physical Data Center Infrastructure Management (DCIM) including PACs, server racks, and VESDA fire safety systems.

Proven ability to automate regulatory auditing through custom PowerShell and Python frameworks, reducing overall audit cycles by 60% and successfully responding to national CERT-In security advisories.

🎯Open to Firewall Engineering, VAPT/Pentesting, SOC Leadership, and Purple Team roles — PAN India relocation and international H-1B sponsorship opportunities.

profile.json
{
  "name": "Aditya Jain",
  "title": "Cybersecurity Engineer — Firewall & VAPT",
  "exp": "3.5+ Years Enterprise SecOps & VAPT",
  "focus": "NGFW • Web/Infra VAPT • SIEM/EDR • DFIR",
  "clearance": "CNI Vetted (NIC/MeitY & DAE/NFC)",
  "email": "adityasec32@gmail.com",
  "contact": "+91 740 058 8896",
  "studying": "MBA in Cybersecurity",
  "pursuing": ["eJPT", "CEH v13", "CISSP"]
}
02 /

Core Competencies

NGFW & Firewall Engineering

Check Point NGFW, Fortinet FortiGate (FCAC certified), Sophos, Cisco AnyConnect, Default-Deny rule design, NAT/PAT configuration, ACL auditing, IPsec/SSL VPN tunnels, TACACS+/RADIUS AAA, perimeter traffic inspection.

VAPT & Offensive Security

Web Application VAPT (OWASP Top 10), Infrastructure Pentesting, Active Directory Security Assessments (Kerberoasting, Pass-the-Hash, DCSync, BloodHound, Impacket, Mimikatz), Burp Suite Pro, Metasploit, Nmap, PoC Exploit Development.

SIEM/EDR, DFIR & SOC Operations

Wazuh SIEM, Blu Sapphire, SentinelOne EDR, Trend Micro Deep Security, Kaspersky EDR, Splunk (familiar), Microsoft Sentinel, Snort IDS, 24x7 CNI SOC. DFIR: FTK Imager, Magnet RAM Capture, Disk2vhd, Autopsy, CERT-In IR.

Infrastructure, Automation & Compliance

KACE UEM (750+ endpoints), PXE Boot imaging, State Data Centre DCIM (PACs, racks, patch panels, VESDA fire safety, rodent repellers), Python/PowerShell/CMD/Bash automation (120+ checks), WinSCP, Git, Ollama RAG LLM chatbots, CERT-In/CDAC/NIST CSF compliance.

03 /

Professional Experience

Feb 2024 – Present Patna, Bihar, India

Security Administrator

Ebix Technologies (Contracted to National Informatics Centre - NIC, MeitY)
Check Point NGFWWeb & Infra VAPTEDR / 750+ Offices60% Audit AutomatedCERT-In IR
  • Firewall Architecture & Perimeter Hardening: Designed and enforced default-deny security policies on Check Point NGFW across Bihar SDC and NKN offices; configured NAT/PAT rules, audited ACLs, and managed IPsec VPN tunnels for secure inter-district government communications.
  • Web Application & Infrastructure VAPT: Conducted 15+ vulnerability assessments and penetration tests against government-facing web portals; identified and remediated 50+ critical/high OWASP Top 10 vulnerabilities (Open Redirect, XSS, SQLi); validated closures via PoC exploits coordinated with NIC-CERT.
  • Enterprise EDR Deployment: Architected and managed SentinelOne and Trend Micro Deep Security across 750+ regional offices, tuning behavioral detection policies to neutralize emerging ransomware and fileless attack vectors.
  • Enterprise Intranet & AI Portal (10.133.22.8): Independently designed and deployed an AI-assisted organization-wide NOC portal (http://10.133.22.8), integrating an offline RAG LLM Chatbot (Ollama), custom tool hyperlink directory, district router telemetry, and automated outage alerts.
  • DFIR & CERT-In Incident Response: Primary CERT-In responder; performed live memory triage (Magnet RAM Capture, FTK Imager, Disk2vhd), host forensics, and authored PoC exploits to validate vulnerability closures. Achieved 100% closure rate on CERT-In advisories within SLA.
  • Compliance Automation: Built PowerShell and Python frameworks automating 120+ CDAC/CERT-In regulatory checks across 750+ endpoints via KACE UEM — cutting audit effort by 60%.
  • Data Center Infrastructure Management (DCIM): Oversaw State Data Centre (SDC) physical security and environmental controls including Precision Air Conditioning (PACs), server rack optimization, patch panel routing, ultrasonic rodent repeller systems, and VESDA fire safety compliance.
Aug 2023 – Jan 2024 Patna, Bihar, India

Self-Directed Security Research & MBA Prep

Independent Study & Chitkara University Enrollment
Hack The BoxAD LabsMBA PrepOffensive Security Practice
  • Enrolled in MBA in Cybersecurity (Chitkara University) while completing intensive self-directed offensive security lab practice on Hack The Box (Active Directory exploitation, Pro Hacker rank) and VulnLab (multi-forest AD pivots, Domain Controller compromise).
  • Deepened expertise in Active Directory attack chains (Kerberoasting, Pass-the-Hash, DCSync, Unconstrained Delegation) and VAPT methodologies in preparation for eJPT certification.
Dec 2022 – Jul 2023 Kota, Rajasthan, India

SOC Analyst — Threat Hunter

RRG Engineering Technologies (Contracted to Nuclear Fuel Complex - NFC, DAE)
24x7 CNI SOCBlu Sapphire SIEM+35% Detection BoostMalware Sandboxing
  • CNI SOC Operations: SME for threat hunting and incident response in a 24x7 nuclear-sector SOC (Department of Atomic Energy — DOE-equivalent sensitivity), monitoring enterprise telemetry via Blu Sapphire SIEM.
  • Sandbox & Malware Analysis: Reproduced adversary exploit signatures in isolated lab environments; performed behavioral malware analysis with Kaspersky EDR to reverse-engineer TTPs.
  • Detection Engineering: Tuned SIEM correlation rules and EDR behavioral rules, yielding a 35% improvement in true-positive detection rates while eliminating alert fatigue.
Aug 2022 – Oct 2022 Delhi NCR, India (Remote)

SOC Analyst — IDS & Signature Development

E2E Networks Limited
Snort IDSWazuh SIEMPerimeter Blocklist
  • IDS Engineering: Authored and deployed custom Snort and Wazuh IDS signatures to capture novel attack patterns in a 24x7 SOC environment.
  • Threat Intelligence: Automated AbuseIPDB threat feed ingestion for real-time perimeter firewall IP blocklisting.
  • Telemetry Analysis: Analyzed bandwidth and network traffic logs to identify routing loops and anomalies.
Dec 2021 – May 2022 Jaipur, Rajasthan, India

Technical Support Executive (Microsoft Account)

Teleperformance
Earlier Career
  • Delivered Tier-2 Microsoft enterprise support; maintained SLA compliance and documented internal security knowledge bases.
04 /

Key Security Projects

NIC Production (Classified)Enterprise

CDAC/CERT-In Compliance Engine

Engineered a PowerShell & Python framework executing 120+ automated system configuration checks mapped to NIST standards across 750+ government nodes via KACE UEM.

PowerShellPythonKACE UEMNIST CSF
Internal Infrastructure Only
Live Intranet ProductionGovt Intranet

Enterprise AI & NOC Portal (10.133.22.8)

Sole architect of a full-stack intranet portal deployed at 10.133.22.8 for the organization. Features an integrated AI-assisted RAG Cybersecurity Chatbot (Ollama LLM), custom tool hyperlink directory, 38-district live router telemetry, and automated outage alerting.

10.133.22.8 IntranetSole ArchitectAI RAG ChatbotOllama LLMPHP API
Live DeploymentLive Gateway

Real-Time Network Alert Dashboard (10.133.22.8/alert/)

Solely engineered real-time ping monitoring and packet loss analysis dashboard for enterprise core routing units. Integrates custom outage alerting, noise filters, and live telemetry log feeds.

JavaScriptCSS GridFetch APIWebSockets
Charity QuizCommunity

Cyber Free Rice Initiative

Interactive education platform featuring a stunning macOS-inspired UI. User quiz scores are simulated to feed directly into food charity initiatives (FreeRice concept).

Next.jsFramer MotionSupabaseTailwind CSS
ProductionEnterprise

JumpStreet Trading Infrastructure

Engineered low-latency algorithmic trading infrastructure providing sub-millisecond cloud VMs and high-availability 5G redundancy nodes for quantitative traders.

Cloud InfraLow Latency5G RedundancyWindows Server
05 /

Certifications & Training

Completed Credentials

Fortinet Certified Associate in Cybersecurity (FCAC)
Red Hat Certified System Administrator (RHCSA)
In the Trenches: SOC - EC-Council
Autopsy Basics (Digital Forensics) - BasisTech
Fundamental AI Concepts - Microsoft
Ethical Hacking Expert - Star Certification
Security Management & Governance - Royal Holloway
TCM Security Live Training & Certifications

Targeted Roadmap

eJPT (eLearnSecurity)Target Q4 2026
CEH v13 / CompTIA Security+Target 2026
CISSP (ISC2)Roadmap Q3 2027
OSCP / PEN-200 (Offensive Security)Post-CISSP
Offensive Labs Active Practice: Hack The Box (Active Directory, Pro Hacker rank), Vulnlab (AD multi-forest pivots, Domain Controller compromise).
06 /

Education

Expected Jul 2027 (In Progress)

Master of Business Administration (MBA) in Cybersecurity

Chitkara University, India

Graduated 2022

B.Tech in Computer Science & Engineering

Manipal University Jaipur, India

2013 – 2018

Diploma in Computer Science & Engineering

Hindu College of Engineering, India

07 /

Establish Connection

Get in Touch

Open to Firewall Engineering, VAPT/Pentesting, SOC Leadership, and Purple Team roles — PAN India relocation and international opportunities.

Secure Communications

To securely share logs, endpoints, or project briefs, import my PGP public key directly:

curl -s https://adityasec32.systems/pgp.asc | gpg --import

Relocation Interests (U.S. Sponsorship)

Washington D.C. Metro Area, Northern Virginia (NOVA), Austin TX, Dallas TX, or Chicago IL.