Everything you need to know about Aditya, in one screen. No scrolling required.
Add your real Calendly link to activate live booking. Until then, reach out directly and a slot will be confirmed by email within a few hours.
Pick a service and (optionally) a name, a one-page proposal will be ready to print or save as PDF.
Upload your 60-second intro video here. This modal is wired up and ready.
Replace this placeholder with a <video> or YouTube embed.
Recommended: Record a 60-second Loom or screen-recorded video introducing yourself, your skills, and what you bring to a team. Recruiters spend 7s on resumes, give them 60s of you.
Blue Team specialist with 2+ years in enterprise SOC, combining deep cybersecurity expertise with AI-driven automation to detect threats faster, respond smarter, and secure at scale.
You've seen hundreds of cybersecurity profiles that look the same. Here's what's actually different about this one.
I am a dedicated cybersecurity professional with 2+ years of hands-on experience in enterprise Security Operations Centers, specializing in blue team operations, threat detection, and incident response.
At Investis Digital, I leverage both deep security expertise and modern AI tools to monitor, detect, and respond to threats across cloud and on-prem infrastructure, faster than traditional methods allow.
My approach blends human analytical judgment with AI-assisted automation: LLMs for threat report generation, AI-powered SIEM anomaly detection, and scripted workflows to reduce MTTR and eliminate alert fatigue.
I didn't fall into cybersecurity by accident. I went looking for the field where curiosity is actually an asset, not a liability. Every other discipline I studied rewarded following the rules. Security rewards finding where the rules break.
My first real moment came early, watching a live phishing campaign unfold against a college network and realizing how fragile "secure" systems actually are when humans are involved. That gap between what a system promises and what it actually does became the thing I chased for the next several years, through 40+ certifications, a Gold Medal, and now a daily seat in an enterprise SOC.
What keeps me here isn't the alerts or the dashboards, it's the asymmetry. One attacker needs one mistake. I need to be right every time. AI is finally tilting that asymmetry back in the defender's favor, and I want to be one of the people who builds that future, not just reacts to the one we have.
"I don't wait for alerts. I go looking for threats, and I let AI carry the noise so I can focus on the signal."
Every system in front of me is either compromised, about to be, or successfully defended, there is no neutral state in security.
Everyone shows their wins. Here are two things that went wrong early on, and what actually changed because of them.
What "SOC Engineer" actually looks like, hour by hour, for anyone who's never sat behind the glass. A real day touches a dozen tools, three security domains, and AI runs through almost all of it.
Drag to explore, click any milestone for details.
Deep expertise across the full security spectrum, from proactive threat hunting and incident response to cloud security architecture and compliance auditing. AI amplifies every domain.
I don't just use AI tools, I build with them. This section covers how AI fits into actual SOC workflows, the full toolkit I rely on day to day, and the automation I've built on top of it, including agentic workflows that go beyond simple prompting.
Click each tool to see exactly how I use it in real SOC workflows.
I use large language models daily to accelerate incident analysis, generate reports, and summarize threat intelligence in seconds rather than hours.
Gemini's long-context window handles things ChatGPT and Claude conversations sometimes can't hold in one pass, especially when cross-referencing lengthy compliance documents or multiple CVE advisories simultaneously.
I use Copilot as an AI pair programmer to accelerate Python security scripts, detection logic, and automation tooling, turning hours of coding into minutes.
I build agentic automation pipelines in n8n that chain SIEM alerts, threat intel API calls, and LLM reasoning steps together, so routine enrichment and triage runs without me manually touching every alert.
I leverage ML modules in Kibana and Wazuh to baseline normal behaviour across thousands of endpoints, surfacing genuine anomalies that rule-based systems miss.
I use SOCRadar for external threat intelligence enrichment, identifying threat actor infrastructure, tracking campaigns, and enriching IOCs beyond what internal tools surface.
Daily use for rapid IOC enrichment, scanning suspicious files, URLs, IPs and domains against 70+ AV engines and AI-assisted code analysis during triage.
The same models I use for threat analysis show up everywhere else too: drafting and tightening writing, planning workouts, summarizing long articles I don't have time to read in full, and learning new technical topics faster by asking Claude or Gemini to explain something three different ways until it clicks. Treating AI as one consistent skill rather than a job-specific tool is, I think, exactly why I stay comfortable picking up new AI tools quickly, the underlying habit of delegating well and verifying critically transfers everywhere.
An AI assistant trained on my background, and a set of genuinely hard technical questions for anyone who wants to test my knowledge directly.
Ask anything about skills, certifications, experience, or how to get in touch. Try one of the suggestions below.
This isn't a generic chatbot demo, it's a bank of genuinely hard SOC, DFIR, and cloud security questions with real answers. Pick one and judge for yourself.
A walk-through of a real enterprise threat I detected, investigated, and resolved, anonymized for confidentiality.
After this attack, the existing WAF rule was too broad and generated noisy false positives. Here's the actual before/after.
A real-time simulation of the kind of threat intelligence environment I operate in daily, tracking IOCs, MITRE ATT&CK TTPs, and global attack vectors.
Hands-on offensive security practice, sharpening red team skills to build a stronger blue team mindset.
A scannable snapshot of the milestones that took years to earn, compressed into one wall.
A single shareable card, built for LinkedIn, not a filing cabinet. Download it as an image.
Freelance security work, mentorship, and training, drawn directly from real SOC and offensive research experience.
Tell me a bit about what you need. I'll respond within 24 hours with a scoped quote.
Every certification listed below is verifiable. Click the 🔗 verify link on any card to confirm authenticity on the issuer's platform.
Original research, case studies, and practical guides from the frontlines of enterprise security operations. Follow on LinkedIn for new posts, with a dedicated Medium publication launching soon for longer-form technical deep-dives.
Zero Trust shifts security from the traditional perimeter-based model to an identity-centric "never trust, always verify" framework. After implementing Zero Trust principles at Investis Digital, here's what the data showed after 90 days:
Most SOC teams are purely reactive, they wait for alerts. This piece documents my transition to proactive threat hunting using AI-generated hypotheses and ML-driven anomaly baselining. Two real discoveries from production environments:
After analyzing 200+ cloud security incidents, the pattern is consistent: most breaches aren't zero-days, they're misconfigurations that existed for months. Here are the five I see repeatedly in the wild, and exactly how to prevent each:
There's a lot of hype and very little specificity about AI in security operations. This piece breaks down exactly where LLMs help, where they don't, and what changed measurably after a year of using them daily:
Passing an ISO 27001 audit and actually running a secure organization are two different things. After supporting a full audit cycle, here's where the framework's checklist nature creates blind spots:
My first long-form Medium piece, currently in progress: a real walkthrough of the n8n agent pipelines I run for alert enrichment and triage, including the parts that didn't work the first time and what I changed.
This challenge provided a partially corrupted disk image and asked for the exact sequence of attacker actions. The MFT was damaged in several sectors, which ruled out a straightforward timeline tool run.
A REST API exposed user records via sequential numeric IDs (classic IDOR), but read-only data wasn't enough for full compromise, privilege escalation needed a second bug.
Given only a single malicious domain, the challenge asked for the actor's other active infrastructure, a real-world attribution exercise rather than a typical flag hunt.
A weekly briefing and a couple of interactive ways to test yourself, built for anyone curious about cybersecurity, not just recruiters.
M.S. Cybersecurity is complete. Here are the six directions I'm actively evaluating and building toward next, each with real progress already underway.
Endorsements from managers and peers, the human side of the résumé.
Real, anonymized traffic sources, refreshed each time this page loads. No fabricated logos, just honest numbers.
Looking to hire, collaborate, or discuss cybersecurity and AI? I'd love to hear from you.