- π Cybersecurity professional with 3+ years across DevSecOps, penetration testing, cloud/container security, SIEM operations, and UAV security research
- π οΈ Architected a zero-downtime CI/CD security pipeline integrating 15+ tools (GitLeaks, TruffleHog, Semgrep, SonarQube, OWASP Dependency-Check, Trivy, SYFT, GRYPE, Hadolint, Checkov, OWASP ZAP, DefectDojo)
- π Currently leading funded research at ICFOSS on ROS 2 DDS vulnerabilities, Wi-Fi swarm attack surfaces, and MAVLink protocol security in UAV/autonomous systems
- βοΈ Skilled in AWS IAM/EC2/VPC security, Docker/Portainer, Wazuh SIEM with CIS benchmark integration, and Prometheus Β· Grafana Β· Loki observability
- π M.Sc. Cyber Forensics & Information Security, Madras University
- π CEH V11 Certified | Pursuing CKS & AWS Security Specialty
- βοΈ I write about DevSecOps, Wazuh/SIEM hardening, and cloud/container security on Medium
- π€ Active in the open-source security community β 500+ professional connections, regularly engaging with the latest AppSec/Cloud/IaC research
- π§© Interested in AI-augmented offensive security β exploring how LLMs (OpenAI, Claude, Grok, local models) can accelerate vulnerability detection and reporting
- π± Constantly experimenting with home-lab setups on Proxmox/KVM to simulate enterprise attack-defense scenarios before applying them in production
Research Assistant β ICFOSS (Mar 2026 β Present) Leading security research on UAV & autonomous systems: ROS 2 DDS attack surfaces (unauthenticated topic subscription, participant spoofing, multicast interception), Wi-Fi de-auth/spoofing on drone swarms, and MAVLink protocol attacks (component ID spoofing, heartbeat hijack, replay). Also performing penetration testing on gateways, web apps, and network infrastructure with CVSS-scored findings.
- π Designed & deployed a full-lifecycle DevSecOps pipeline: Secret Scan β SAST β SCA β IaC Scan β Docker Build β SBOM + Container Scan β Signing β Policy Gate β Blue-Green Deployment (zero downtime) β DAST β Infra Scan β Vuln Management β SIEM β Alerting
- π First in the organization to map ROS 2 DDS and MAVLink attack surfaces to MITRE ATT&CK for Embedded/IoT
- π΅οΈ Performed VAPT on ERPNext across 3 production deployments (ICFOSS, Kerala IT Mission, Frappe Cloud); responsibly disclosed multiple high-severity vulnerabilities
- π Deployed Wazuh SIEM with custom SCA rules org-wide, achieving CIS benchmark compliance with real-time Grafana + Telegram alerting
- πΎ Contributed to India's IoT-Enabled Smart Panchayat initiative β secured rural precision-agriculture infrastructure under PMKSY, a first-of-its-kind government IoT deployment in Kerala
- πΈοΈ Ran full-scope VAPT engagements across 3 production ERPNext deployments spanning government and enterprise cloud environments
I write technical breakdowns on DevSecOps and security engineering over on Medium:
- π DevOps Fundamentals: A Complete Beginner's Guide β CI/CD, IaC, GitOps, Agile & SDLC explained from the ground up
- π How to Change Wazuh Admin, Kibana Server, and API Passwords in Docker β hardening a real Wazuh Docker deployment step by step
| Area | Focus |
|---|---|
| ROS 2 / DDS | Unauthenticated topic subscription, participant spoofing, multicast interception, SROS2 & OMG DDS Security spec mitigations |
| Drone Swarm Wi-Fi | De-authentication, spoofing, MITM on inter-drone control channels |
| MAVLink | Component ID spoofing, heartbeat hijacking, replay attacks, MAVLink 2 signing adoption |
- π Currently working on: UAV/autonomous systems security research at ICFOSS
- π± Currently leveling up: CKS (Kubernetes Security) & AWS Security Specialty
- π€ Open to collaborating on: DevSecOps pipeline design, drone/UAV security, and SIEM/threat detection projects
- π¬ Ask me about: CI/CD security automation, Wazuh, container security, or MAVLink/ROS 2 attack surfaces
- βοΈ Fun fact: I've built one CI/CD pipeline that chains 15+ security tools into a single zero-downtime deployment gate β from secret scanning to SIEM alerting
- Certified Ethical Hacker V11 (CEH V11) β EC-Council
- Certified Penetration Tester β Red Team Hacker Academy
- Learn Ethical Hacking From Scratch β Udemy
- Pursuing: CKS (Kubernetes Security) Β· AWS Security Specialty
"Secure by design, resilient by default."

