Cybersecurity Engineer

Hi, I'm Anmol Kumar.
I break systems before the bad guys do —
Penetration Testing, Red Teaming, Bug Bounty & OSINT.

Preparing: eJPT → CEH → OSCP
Building security tools
90+
THM Rooms
Top 7%
TryHackMe
10+
Events Led
100+
Participants
Top 7%
TryHackMe Global
Anmol Kumar, Cybersecurity Engineer
Anmol Kumar
Cybersecurity Engineer
Open to Opportunities
90+
THM Rooms Done
About

Curiosity first.
Security second.

Anmol Kumar
Anmol Kumar
Cybersecurity Engineer
Haldia, West Bengal, India

My journey into cybersecurity didn't start with a course — it started with curiosity. I wanted to know how systems break before I could understand how to defend them.

From free resources to building my own tools, I evolved into Penetration Testing, Red Teaming, Bug Bounty, and offensive security research. Every project exists because I wanted to own the attack surface, not just defend it.

At IEEE HIT SB, leading 10+ technical events showed me that great security work isn't just technical — it's about communication and making complexity accessible.

Currently Preparing the eJPT → CEH → OSCP track while building security tools and contributing to open-source security projects.

Malware Analysis CTF Competitions Penetration Testing Red Teaming Open Source Security Threat Modeling
o
TryHackMe
@whiteghost99
Top
7%
Global Rank
90+
Rooms Done
#1
Bronze League
View Profile ↗
Certifications
Skills

Technical Proficiency

● Advanced  ◐ Proficient  ○ Familiar — honest self-assessment, not percentages.

Offensive
Offensive Security
Web App Security
Proficient
Network Pentesting
Familiar
Red Teaming
Familiar
Bug Bounty
Familiar
NmapBurp SuiteMetasploitSQLmapffuf
Intelligence
Reconnaissance
Subdomain Recon
Advanced
Passive Recon
Proficient
Asset Discovery
Proficient
Sublist3rcrt.shShodanOSINT
Development
Languages
Python
Advanced
SQL
Familiar
PythonJavaBashHTML/CSS/JS
Cryptography
Security Concepts
Cryptography
Familiar
Threat Modeling
Familiar
OWASP Top 10
Familiar
AES-GCMPBKDF2OWASPCVE/CVSS
Tooling
Security Tools
Burp Suite
Proficient
Nmap
Familiar
John the Ripper
Familiar
Hydra
Familiar
WPScan
Familiar
WiresharkMetasploitSQLMapGobuster
Systems
Operating System
Kali Linux
Proficient
Windows
Proficient
LinuxWindowsTCP/IPCisco
Projects

What I've Built

Real tools built to understand attack surfaces — not just portfolio pieces.

SOC Lab · SIEM & Threat Detection
Home SOC Lab
Centralized log monitoring · MITRE ATT&CK threat mapping
Built a Home Security Operations Center using Wazuh, Sysmon, and VirtualBox to simulate enterprise-grade security monitoring. Configured centralized log collection from Windows and Linux endpoints, investigated security alerts, performed alert triage, and mapped detected techniques to the MITRE ATT&CK Framework.
Wazuh Sysmon VirtualBox SIEM MITRE ATT&CK Incident Response Log Analysis
Security Tool · Java
Secure Password Vault
AES-128-GCM + PBKDF2 — zero external dependencies
A fully encrypted password manager using Java's standard libraries. CLI and GUI interfaces, rate limiting, memory safety, and automatic backup. Built to understand how cryptography and software engineering blend in practice.
JavaAES-GCMPBKDF2GUI
OSINT Tool · Python
Subdomain Enumeration Tool
500+ subdomains/hour · 40% faster with threading
Integrates crt.sh and Sublist3r APIs for high-speed recon. Multi-threaded architecture with CSV export. Built to understand OSINT, API integration, and automation in real reconnaissance workflows.
PythonThreadingcrt.shSublist3r
Web · Design
Personal Portfolio
Live at ianmol13.me — vanilla HTML/CSS/JS
Mobile-first portfolio built with no frameworks. Clean typography, smooth animations, full responsive layout. Demonstrates front-end design and engineering capability without a single dependency.
HTMLCSSJavaScriptUI/UX
Experience

In the Field

Hands-on exposure to real-world threat analysis, phishing detection, and security awareness design.

Cybersecurity Job Simulation
Mastercard
Aug 2024
  • Identified and reported 15+ phishing attacks through log inspection and anomaly detection
  • Designed security awareness modules that reduced simulated incident frequency by 25%
  • Gained deep exposure to PCI DSS compliance for financial data handling organisations
  • Learned how security education and technical controls work together as a layered defence
SIEMIDSPhishing AnalysisPCI DSSLog Analysis
Education

Academic Background

Built on cybersecurity fundamentals — sharpened by labs, CTFs, and real tools.

2022 – 2026
B.Tech — CSE (Cyber Security) — 7.01 CGPA
Haldia Institute of Technology · Haldia, West Bengal
Management Head at IEEE HIT SB. Active CTF player. Core coursework in offensive security, cryptography, and network security.
IEEE HIT SBManagement HeadCTF PlayerSWC MemberCricket Team Manager
2019 – 2021
Intermediate (12th) — 62.4%
Jamunilal College · Hajipur, Vaishali
Science stream, strong grades, participated in academic competitions.
2018 – 2019
Matriculation (10th) — 71.8%
Janta High School · Musepur, Siwan
Active in extracurriculars. Cricket Team Manager.
Reports

Research & Write-ups

CTF write-ups, bug bounty disclosures, and security research — documented and shared with the community.

CTF Write-up · TryHackMe
Cheese CTF - TryHackMe
50+ rooms · Top 9% global · Bronze League #1
Documented techniques and tooling used across the TryHackMe Pre Security learning path — covering Linux fundamentals, networking, web hacking, and cryptography. Each room documented with approach, tooling, and key takeaways.
TryHackMeLinuxNetworkingWeb Hacking
CTF Write-up · TryHackMe
Room 404 - TryHackMe
50+ rooms · Top 9% global · Bronze League #1
Documented techniques and tooling used across the TryHackMe Pre Security learning path — covering Linux fundamentals, networking, web hacking, and cryptography. Each room documented with approach, tooling, and key takeaways.
TryHackMeLinuxNetworkingWeb Hacking
CTF Write-up · TryHackMe
Packed Light - TryHackMe
50+ rooms · Top 9% global · Bronze League #1
Documented techniques and tooling used across the TryHackMe Pre Security learning path — covering Linux fundamentals, networking, web hacking, and cryptography. Each room documented with approach, tooling, and key takeaways.
TryHackMeLinuxNetworkingWeb Hacking
CTF Write-up · TryHackMe
Complimentary - TryHackMe
50+ rooms · Top 9% global · Bronze League #1
Documented techniques and tooling used across the TryHackMe Pre Security learning path — covering Linux fundamentals, networking, web hacking, and cryptography. Each room documented with approach, tooling, and key takeaways.
TryHackMeLinuxNetworkingWeb Hacking
CTF Write-up · KPMG
KPMG Hackathon CTF
Hackathon CTF · 2025 · Certificate issued
Write-up covering challenges solved during the KPMG Hackathon CTF 2025. Documented flag capture methodology including reconnaissance, exploitation techniques, and post-exploitation steps for each challenge category.
CTFReconExploitationWeb
Lab Report · SOC / SIEM
Home SOC Lab — Threat Detection Report
Wazuh · Sysmon · MITRE ATT&CK mapping
Detailed documentation of the Home SOC Lab setup and threat investigation findings. Covers log pipeline configuration, alert triage methodology, and MITRE ATT&CK technique mapping for detected events across Windows and Linux endpoints.
WazuhSIEMMITRE ATT&CKLog Analysis
Bug Bounty · Disclosure
Bug Bounty Findings
Responsible disclosure · Multiple platforms
Ongoing bug bounty research across public programs. Hunting for IDOR, XSS, SSRF, and authentication bypass vulnerabilities on web applications. All findings follow responsible disclosure guidelines and are reported directly to affected vendors.
IDORXSSSSRFAuth BypassBurp Suite
Leadership

Beyond the Terminal

Security isn't just technical — it's about communication and making complex ideas accessible.

10+
Technical Events
100+
Participants

Event & Management Head at IEEE HIT SB — led 10+ technical events with 100+ participants, overseeing end-to-end planning, coordination and execution. Demonstrated strong leadership and organisational skills across workshops, hackathons, and seminars.

Student Coordinator, Fashion Show at RIVIERA — led end-to-end planning and execution of the fest's flagship fashion show, coordinating volunteers and performers, and delivering a fully themed production under tight timelines.

Student Welfare Committee Member for RIVIERA — supported student welfare initiatives and cross-team coordination throughout the fest, ensuring smooth communication between organizing teams and participants.

Contact

Let's Work
Together.

Open to internships, freelance engagements, and full-time opportunities. Response within 24 hrs.

Download Resume →