Security Engineering Intern
Cyblack Internship
- Conducted a full penetration test on VulnBank, a deliberately vulnerable training application (not a production banking system), using Burp Suite; independently discovered and exploited 7 vulnerabilities (SQL injection, JWT manipulation, mass assignment, race condition, IDOR, XSS, SSRF), mapped to the Cyber Kill Chain
- Authored 8 KQL Scheduled Query Rules in Microsoft Sentinel covering credential stuffing, phishing payloads, WannaCry C2, XWorm persistence, and AsyncRAT communications, each mapped to MITRE ATT&CK with entity mappings for automatic incident enrichment
- Led Team 7's cloud security sprint: deployed Microsoft Defender for Servers with JIT VM access and a Logic App playbook for automated incident escalation
- Authored a Privileged Account Policy (P7S-PAP-01) aligned to ISO/IEC 27002:2022, NYDFS 23 NYCRR 500.07, and PCI-DSS, with MFA enforcement, bastion host access, and a dual-approval Break-Glass procedure
- Profiled three government-sector threat actors in OpenCTI using the Diamond Model; extracted and categorized 60+ IOCs from WannaCry, XWorm, and AsyncRAT malware samples