Cybersecurity portfolio

Hi, I’m Pallavi.

Computer Science graduate student specializing in cybersecurity, with a focus on Application Security and AI Security.

I’m specializing in cybersecurity, with interests in Application Security, AI Security, Vulnerability Management, and Cloud Security. I enjoy understanding how applications work, identifying security weaknesses, and exploring ways to prevent them.

During my Cybersecurity Internship at Toyota Insurance Management Solutions, I configured and tested a pilot Semgrep SAST integration in Bitbucket Pipelines, evaluated security findings, worked with SAST/SCA tools, and trained developers on secure development tooling.

My projects explore AI-assisted vulnerability analysis, SOC alert triage, and AWS threat detection. I continue building my skills through hands-on labs, code review, and security automation.

  • Application Security
  • AI Security
  • Vulnerability Management
  • Cloud Security
Tools and skills I work with

AI-Assisted Security Automation · Secure SDLC · SAST / SCA / DAST · Semgrep · Secure Code Review · CI/CD Security · OWASP Top 10 · AWS Security · AWS Inspector · SOC Alert Triage · Microsoft Defender

Continuous learning

My PentesterLab Journey

21Exercises completed
3%Overall platform progress
43%
3%

Projects

Hands-on work in AI security, application security, cloud detection, and security investigations.

AI Security Lab on AWS: Data Leakage, Guardrails, and Detection

Testing an AI support assistant for data leaks, adding Amazon Bedrock Guardrails, and detecting credential requests with CloudWatch alerts.

View project

AI-Assisted Web Application Penetration Test with Llama

Full web application penetration test against OWASP Juice Shop using Burp Suite, SQL injection exploitation, JWT authentication abuse, and a custom Python AI assistant powered b...

View project

AI-Powered SOC Alert Triage System

AI-powered SOC alert triage pipeline built in Python that enriches simulated SIEM alerts with threat intelligence, applies rule-based severity classification, and uses a local L...

View project

Windows Digital Forensics Investigation Lab (Azure DFIR)

Built a Windows DFIR lab in Azure to analyze forensic artifacts including Amcache, ShimCache, Prefetch, UserAssist, and Windows Event Logs.

View project

Brute Force Attack Detection using Splunk

Splunk detection and dashboard to identify repeated failed SSH login attempts by source IP and user.

View project

SSH Log Monitoring using ELK Stack (macOS + Linux Detection Lab)

Built an end-to-end SSH log monitoring lab using Docker-based ELK on macOS and a Linux host generating authentication logs, focusing on SOC-style log investigation.

View project

Network Vulnerability Scanner using Python + Nmap

Python CLI tool that automates Nmap vulnerability scanning to identify open ports and surface potential CVE-related findings.

View project

CloudTrail Threat Detection (AWS + Python)

Simulated cloud SOC alert triage by analyzing AWS CloudTrail logs to detect and validate high-risk API activity.

View project