Cybersecurity Professional
CYBERSECURITY STUDENT · PENN STATE

Atharv Mittal

Security Engineer · Builder · CTF Competitor

Cybersecurity student at Penn State with CompTIA Security+ and hands-on experience in SOC operations, threat detection, vulnerability analysis, Python-based security tooling, and full-stack software development. Building practical security skills across enterprise environments, detection engineering labs, and real-world product work.

Work Experience

Founder / Full-Stack Web Developer

Independent Web Development Business · Oct 2025 – Present · Remote
  • Built and deployed production-ready applications for approximately 50 local business clients using React, Next.js, TypeScript, Node.js, Supabase, and Stripe — managing the full delivery lifecycle end-to-end
  • Implemented frontend, backend, database design, authentication, and payment workflows for real customer-facing systems, applying secure coding practices throughout
  • Generated approximately $5,000/month in revenue through recurring and project-based web development services while operating fully remotely

Cyber Security Intern

Centrient Pharma · Oct 2025 – Dec 2025 · Gurugram, India
  • Supported SOC operations across 5,000+ enterprise endpoints using Microsoft Defender and Mimecast, monitoring and triaging 200+ daily security alerts to identify and escalate threats
  • Investigated security events to assess severity, identify indicators of suspicious or malicious behavior, and escalate confirmed threats for response and containment
  • Performed log analysis across Active Directory and cloud-connected environments to support incident investigations and improve operational security visibility
  • Learned enterprise ticketing and escalation workflows end-to-end — following incidents from alert generation through analyst handling, triage, and coordinated response
  • Collaborated with IT teams to enforce 3 key security policies, strengthening baseline mitigations and security hygiene across enterprise systems

CompTIA Security+ (SY0-701)

Certified January 2026

Projects

Adversary Emulation & Detection Lab

January 2026 · MITRE ATT&CK | Wazuh, Elastic, Sigma
  • Designed and executed a full adversary emulation environment simulating 10+ MITRE ATT&CK techniques across Discovery, Persistence, Lateral Movement, and Collection on Windows and Linux hosts
  • Deployed Wazuh and Elastic SIEM to ingest and correlate endpoint telemetry, enabling end-to-end behavioral visibility of simulated attacker activity
  • Authored 10+ custom Sigma detection rules mapped to specific ATT&CK technique IDs, building a reusable detection content library and strengthening detection engineering skills

TinyVulnScanner

Sep 2025 – Nov 2025 · Python Security Automation
  • Engineered a multi-threaded Python scanner capable of probing 500+ ports concurrently (~70% faster than sequential), automating detection of reflected XSS and SQL injection vulnerabilities
  • Implemented detection across critical OWASP Top 10 categories and generated structured HTML and JSON reports with per-vulnerability severity ratings for clear remediation workflows

Prompt Optimiser

2026 · Chrome/Edge Extension | Llama 3.3 70B, Groq
  • Built and shipped a production browser extension running user prompts through a 6-stage AI optimization pipeline powered by Llama 3.3 70B via Groq API
  • Designed the full browser-side architecture including real-time DOM injection, API integration, and state management — compatible across ChatGPT, Claude, and Gemini
  • Strengthened hands-on experience in browser-side engineering, applied LLM tooling, and user-focused software design

Proto Paper

January 2026 · Hackathon | React, Python
  • Built a full-stack tool that converts uploaded research PDFs into actionable experiment guides — including required materials lists and runnable Python simulation code
  • Led frontend development and contributed to backend implementation, delivering a working product under hackathon time constraints
  • Reduced research operationalization time from hours to under 2 minutes by automating the translation of dense technical content into reproducible workflows

EDUAI – AI-Powered Study Scheduler

Jan 2025 – Apr 2025 · Python, ML, Canvas LMS
  • Built an AI-assisted scheduling system ingesting data from 5+ courses and 30+ tasks via Canvas LMS, applying ML techniques to estimate assignment effort and optimize study allocation
  • Evaluated real-world limitations of predictive modeling on subjective workload data, developing practical intuition for data quality, model reliability, and applied ML challenges

AI Outfit Recommender

2025 · Python, Machine Learning
  • Developed an AI-powered outfit recommender generating top-N clothing combinations using item attributes and user preferences across occasion and seasonal context
  • Identified key system limitations related to data sparsity and personalization depth, informing future ML-driven improvements in preference modeling

Skills & Technologies

SIEM & Detection Engineering

Wazuh, Elastic, Sigma Rules, Custom Detection Rules, Log Analysis, Threat Hunting, MITRE ATT&CK Mapping

Endpoint & Email Security

Microsoft Defender, Mimecast, EDR/XDR Platforms, Alert Triage, Incident Escalation, Enterprise SOC Operations

Application & Web Security

OWASP Top 10, Vulnerability Scanning, Reflected XSS, SQL Injection, Web App Pen Testing, Security Automation

Programming & Scripting

Python, JavaScript, TypeScript, Bash, PowerShell, SQL — security tooling, automation, and full-stack development

Full-Stack Development

React, Next.js, Vite, Tailwind CSS, Node.js, Supabase, Stripe — production-grade client-facing systems

Systems & Networking

Windows, Linux, Active Directory, DNS, DHCP, TCP/IP, TLS/SSL, Routing Fundamentals, Cloud Environments

AI & LLM Tooling

Groq API, Llama 3.3 70B, Browser Extension Development, Prompt Engineering, AI-powered Automation, API Integration

Offensive Security

CTF Competitions, Hack The Box, Adversary Emulation, Reverse Engineering, OSINT, Pwn, Cryptography Challenges

Technical Activities

CTF Competitions

2026 · Solo Competitor
  • LACTF 2026 — Solo · Top 100 · Feb 7–9, 2026 · Solved challenges across web, crypto, reverse engineering, pwn, and miscellaneous categories; published writeups on GitHub
  • 0xFun CTF 2026 — Solo · Top 110+ · Feb 12–14, 2026 · Completed challenges spanning web, pwn, crypto, forensics, and OSINT-oriented problem solving
  • BSides CTF — Solo · Mar 20, 2026 · Participated primarily in web-focused security challenges

Hack The Box

Ongoing · Hands-On Offensive Security
  • Completed the WingData machine, strengthening practical skills in offensive security analysis, enumeration, and system investigation
  • Practiced across challenge categories including web exploitation, binary exploitation, cryptography, forensics, and OSINT

Leadership

Head of Cybersecurity Club

KBDAV · Jan 2022 – Mar 2023 · Chandigarh, India
  • Led cybersecurity awareness initiatives for students and teachers, covering phishing, hacking techniques, and core security fundamentals
  • Organized workshops and events to promote practical security knowledge and digital safety across the school community

Volunteer

Local NGO · Jun 2024 – Aug 2024 · Chandigarh, India
  • Supported community outreach programs focused on digital literacy and online safety education

Let's Connect