- Owned backend, infrastructure, and security delivery for a production AI voice-coaching platform with tested API, deployment, database, and realtime service integrations.
- Designed defense-in-depth authorization around least privilege, tenant ownership, runtime role isolation, and database access boundaries.
- Established cryptographic and privacy controls for sensitive health and transcript data, including authenticated encryption, consent enforcement, portable export, and deletion workflows.
- Hardened production delivery with CI-gated releases, non-root containers, health checks, and fail-closed configuration validation.
- Built lifecycle reconciliation, stale-session cleanup, and recovery paths for webhook and session failures.
- Established vendor cost governance with durable usage accounting, per-user quotas, runtime caps, and emergency shutoff controls.
Infrastructure & Security Engineering Intern
Cybersecurity Researcher
- Developed CTF challenges across crypto, reverse engineering, network defense, web exploitation, and forensics with clear documentation and technical walkthroughs.
- Integrated and tested challenges within competition platforms to ensure functionality, balance, and engagement.
Security Analyst Intern
- Performed frontline alert triage and investigations for clients across Windows, Linux, and multi-cloud infrastructures (AWS, Azure, GCP).
- Investigated endpoint compromise, lateral movement, suspicious PowerShell activity, credential access attempts, persistence mechanisms, and anomalous cloud identity/API behavior using SIEM, SOAR, and EDR.
- Coordinated with analysts to document and improve response workflows, contributing to playbook standardization and detection-as-code initiatives.
- Collaborated with detection engineers to design and tune detections across multiple telemetry sources to reduce false positives and increase coverage against evolving threat techniques.
Junior Security Analyst
- Enhanced scalable logging and detection capabilities by optimizing Elastic Stack SIEM for diverse data sources.
- Built and implemented automated detection mechanisms leveraging threat intelligence and MITRE ATT&CK TTP-based modeling in SIEM and XDR.
- Automated Microsoft Sentinel and Defender XDR playbooks using Azure Logic Apps and integrated dynamic Teams Message Cards for multi-alert summarization and evidence toggling.
- Developed a multi-metric scoring system (CVSS, SSVC, EPSS, CKEV) to prioritize vulnerability management strategies.