Portfolio

Kshitij Raut (0x0z0n)

Professional Summary

Cybersecurity Analyst and Penetration Tester (HackTheBox "Pro Hacker") with 2+ years across SOC Incident Response and Offensive Security. Builds Python automation that cuts false-positive alert volume and runs red team simulations mapped to MITRE ATT&CK and OWASP. Now pursuing dedicated offensive security roles, with hands-on depth in Windows Internals, Kernel Debugging, Active Directory exploitation, and C2 infrastructure across AWS/Azure environments.

Technical Skills

Offensive Security & Red Teaming: Penetration Testing, Vulnerability Assessments (VAPT), C2 Frameworks, Active Directory Exploitation, Kernel Debugging, Windows Internals, Burp Suite, Metasploit, Kali Linux.
Defensive Security & SOC: L2 SOC Operations, Incident Response (IR), Microsoft Sentinel, Splunk, Chronicle SIEM, XDR (SentinelOne, Cortex, Defender), KQL, Malware Analysis, Digital Forensics.
Engineering & Cloud: Python, Rust, C, JavaScript, Bash, Assembly, Docker, Kubernetes, DevSecOps, AWS, Azure, Git, REST APIs.
AI & Frameworks: Machine Learning, Convolutional Neural Networks (CNN), TensorFlow, Pandas, Flask, MITRE ATT&CK, NIST, OWASP.

Professional Experience

Cybersecurity Analyst | Tata Consultancy Services (TCS) March 2024 – Present
  • Maintain 100% SLA compliance across L2 SOC Incident Response for P1 enterprise threats, with zero missed critical escalations.
  • Triage 50+ alerts weekly via Microsoft Sentinel, Splunk, and multi-platform XDR (SentinelOne, Cortex), mapping adversary behavior to MITRE ATT&CK to cut Mean Time to Triage.
  • Run penetration tests and red team simulations against AWS/Azure infrastructure, closing critical gaps that lifted network compliance by 15%.
  • Built Python automation for log parsing and Threat Intel integration, removing manual IOC extraction and cutting false-positive alert volume by 20%.
  • Lead endpoint forensics and malware analysis engagements to isolate root cause and neutralize Advanced Persistent Threats (APTs) in hybrid environments.

Cybersecurity & Forensics Intern | Cyber Secured India View Docs
December 2023 – March 2024
  • Ran digital forensic investigations combining memory forensics, log review, and chain-of-custody evidence recovery.
  • Authored vulnerability assessment reports and mitigation strategies presented directly to senior technical stakeholders.
  • Completed intensive hands-on training in proactive security monitoring and defensive SOC workflows.

Projects

Cloud Security Championship - Wiz CTF Attack Chains | AWS, Kubernetes, CI/CD, IAM View Cert View Documentation
2026
OVERRIDE PROTOCOL (z0n GPU Profiler) | Rust, Tauri, Linux View Code
January 2026 – March 2026
Automated Threat Intelligence Scanner | Python, REST APIs View Code
August 2025 – November 2025
Security Knowledge Base | Jekyll, Markdown, JS View Site
June 2025 – Present
CropVision AI & Application Security | TensorFlow, Flask View Code View Paper
January 2025 – May 2025

Education & Certifications

Bachelor of Engineering in Computer Science & Data Science August 2019 – May 2023
Sant Gadge Baba Amravati University | CGPA: 9.16