Hi, I am

Shlok

Masters 📚 @ University of Washington 🎓

Follow me here

Services

icon-1
icon-2
icon-3
icon-4
icon-5

Vulnerability Assessment and Penetration Testing

I identify and address vulnerabilities in your systems through comprehensive assessments and ethical hacking techniques. By simulating real-world attacks, I ensure your applications, networks, and infrastructure remain secure against evolving threats. Build resilience with detailed security insights and risk mitigation strategies.

icon-1
icon-2
icon-3
icon-4
icon-5

Compliance & Audit

I ensure your organization adheres to industry regulations and frameworks such as GDPR, HIPAA, ISO 27001, and NIST. Through thorough audits and gap assessments, I identify compliance issues, recommend corrective actions, and help you achieve certification, reducing legal and operational risks.

Experiences

Jun 2023 - Dec 2023

Intern - Cybersecurity Advisory Services

@AUJAS CYBERSECURITY LTD

Accomplished a 30% reduction in compliance gaps by aligning the company’s ISMS with updated ISO 27001:2022 controls through framework enhancement.

Achieved a 25% decrease in vulnerabilities and identified 50+ risks by building and managing a detailed risk register, and by assessing over 15 systems for security weaknesses.

Improved data protection success rate to 95% by helping design the SOA and implement 10+ security controls, collaborating with cross-functional teams to strengthen controls and align with best practices.

Collaborated with cross-functional teams to enhance security controls and ensure adherence to industry best practices.

Jun 2022 - Jul 2022

Cybersecurity Intern

@CYBER VIDYAPEETH FOUNDATION

Accomplished bridging theoretical concepts with practical IoT implementation by creating and deploying 5+ Arduino-based projects, leading to hands-on operational experience.

Enhanced awareness of IoT security risks by researching and identifying common vulnerabilities and possible exploitation methods.

Contributed to improving IoT security posture by documenting findings and suggesting countermeasures, enriching internal knowledge bases.

Aug 2021 - Sept 2022

Summer Intern

@ERNST & YOUNG LLP

Accomplished a 20% boost in incident response efficiency and a 30% rise in cybersecurity readiness by researching and refining Incident Response (IR) frameworks.

Improved adherence to global security standards by 25% by delivering actionable research findings on IR frameworks.

Achieved a 15% reduction in simulated incident response times by developing IR best practices, reinforcing structured response approaches for national cybersecurity.

Skills

Programming Languages

logo-Python

Python

logo-HTML

HTML

logo-CSS

CSS

logo-ShellScript

ShellScript

Technological Skills

logo-Linux

Linux

logo-VAPT

VAPT

logo-Identity and Access Management

Identity and Access Management

logo-Cryptography

Cryptography

logo-Network Security

Network Security

logo-DLP

DLP

logo-ISO Standards

ISO Standards

logo-NIST Standards

NIST Standards

Tools

logo-Burpsuite

Burpsuite

logo-Postman

Postman

logo-Nmap

Nmap

logo-Wireshark

Wireshark

logo-Nuclei

Nuclei

logo-J Meter

J Meter

logo-Nessus

Nessus

Security Platforms

logo-Bugcrowd

Bugcrowd

logo-Hackerone

Hackerone

logo-TryHackMe

TryHackMe

Operating System

logo-Windows

Windows

logo-MacOS

MacOS

logo-Kali Linux

Kali Linux

IDE

logo-Pycharm

Pycharm

logo-VS Code

VS Code

logo-Google Collab

Google Collab

logo-Jupyter

Jupyter

Projects

InboxGuard

InboxGuard

Public

InboxGuard is an AI-powered web application that detects phishing emails using Google’s Gemini API with function calling. It analyzes sender details, links, and manipulative language to generate a detailed risk assessment.

HTMLCSSPythonJavascriptGoogle Gemini APITailwindCSS
Malware Analysis Sandbox

Malware Analysis Sandbox

Public

Malware Analysis Sandbox: A secure, isolated environment for cybersecurity professionals to analyze malware using static and dynamic techniques, gaining insights into behavior without risking system integrity.

HTMLCSSVirustTotalCuckoo SandboxJavascript
DeCap

DeCap

Public

Decentralized Capital is a blockchain-based app for banking, allowing users to securely manage deposits, request loans, and pay debts through a seamless, user-friendly interface for transparent finances.

JavascriptSolidityHTMLCSSMongoDB
Cocktail.exe

Cocktail.exe

Public

A C++ proof-of-concept malware project created for educational purposes, demonstrating persistence, obfuscation, packing, and advanced anti-debugging techniques to showcase key concepts in malware development, evasion techniques, and comprehensive security.

C++UPXEncryptionSHA256
Railway Reservation System

Railway Reservation System

Public

A user-friendly and efficient Railway Reservation System that automates ticket booking, seat availability management, and secure payment processing, ensuring seamless and hassle-free travel reservations for all users.

HTMLCSSPHPSQL