Cybersecurity portfolio
Hi, I’m Pallavi.
Computer Science graduate student specializing in cybersecurity, with a focus on Application Security and AI Security.
I’m specializing in cybersecurity, with interests in Application Security, AI Security, Vulnerability Management, and Cloud Security. I enjoy understanding how applications work, identifying security weaknesses, and exploring ways to prevent them.
During my Cybersecurity Internship at Toyota Insurance Management Solutions, I configured and tested a pilot Semgrep SAST integration in Bitbucket Pipelines, evaluated security findings, worked with SAST/SCA tools, and trained developers on secure development tooling.
My projects explore AI-assisted vulnerability analysis, SOC alert triage, and AWS threat detection. I continue building my skills through hands-on labs, code review, and security automation.
- Application Security
- AI Security
- Vulnerability Management
- Cloud Security
Tools and skills I work with
AI-Assisted Security Automation · Secure SDLC · SAST / SCA / DAST · Semgrep · Secure Code Review · CI/CD Security · OWASP Top 10 · AWS Security · AWS Inspector · SOC Alert Triage · Microsoft Defender
Continuous learning
My PentesterLab Journey
Projects
Hands-on work in AI security, application security, cloud detection, and security investigations.
AI Security Lab on AWS: Data Leakage, Guardrails, and Detection
Testing an AI support assistant for data leaks, adding Amazon Bedrock Guardrails, and detecting credential requests with CloudWatch alerts.
View project
AI-Assisted Web Application Penetration Test with Llama
Full web application penetration test against OWASP Juice Shop using Burp Suite, SQL injection exploitation, JWT authentication abuse, and a custom Python AI assistant powered b...
View project
AI-Powered SOC Alert Triage System
AI-powered SOC alert triage pipeline built in Python that enriches simulated SIEM alerts with threat intelligence, applies rule-based severity classification, and uses a local L...
View project
Windows Digital Forensics Investigation Lab (Azure DFIR)
Built a Windows DFIR lab in Azure to analyze forensic artifacts including Amcache, ShimCache, Prefetch, UserAssist, and Windows Event Logs.
View project
Brute Force Attack Detection using Splunk
Splunk detection and dashboard to identify repeated failed SSH login attempts by source IP and user.
View project
SSH Log Monitoring using ELK Stack (macOS + Linux Detection Lab)
Built an end-to-end SSH log monitoring lab using Docker-based ELK on macOS and a Linux host generating authentication logs, focusing on SOC-style log investigation.
View project
Network Vulnerability Scanner using Python + Nmap
Python CLI tool that automates Nmap vulnerability scanning to identify open ports and surface potential CVE-related findings.
View project
CloudTrail Threat Detection (AWS + Python)
Simulated cloud SOC alert triage by analyzing AWS CloudTrail logs to detect and validate high-risk API activity.
View project