Summary
Overview
Work History
Education
Skills
Certification
Areas Of Focus
Projects
Languages
Timeline
Generic

MUHAMMED SAHAL TP

calicut

Summary

Skilled SOC Analyst with a background in cyber threat detection, vulnerability assessment, and risk mitigation. Experienced in implementing security measures for networks and systems, ensuring data integrity and confidentiality. Strengths include deep understanding of cybersecurity frameworks, incident response protocols, and forensic investigation techniques. Previous roles have resulted improved system resilience against cyber threats.

Overview

1
1
Certification
4
4
years of professional experience

Work History

Cybersecurity Researcher & Tool Developer

Self-Employed
01.2023 - Current
  • Engineered AegisAI Lite, an AI-based intrusion detection system using Random Forest on NSL-KDD data, achieving 97%+ classification accuracy and cutting threat detection time by 40%.
  • Reduced incident response time by 35% by architecting a SOC Client Agent that streams CPU, RAM, disk, and process telemetry to a centralized web dashboard in real time.
  • Automated a full bug bounty reconnaissance pipeline (Subfinder, Httpx, Nuclei, Waybackurls), reducing manual recon time by 60% per engagement.
  • Attained a Top 20% global ranking on TryHackMe across SOC Operations, SIEM, OSINT, Digital Forensics, and adversarial challenge categories.
  • Competed in a 2025 CTF event, resolving challenges spanning web exploitation, network forensics, and cryptography to demonstrate real-world offensive and defensive skills.
  • Deepened expertise in threat intelligence and vulnerability management through LinkedIn Learning
  • Conducted AI red teaming and prompt injection research, successfully bypassing content restrictions on large language models (LLMs) to extract restricted information - demonstrating practical knowledge of AI security vulnerabilities and LLM attack surfaces.

Education

Bachelor of Technology -

AARUPADAI VEEDU INSTITUTE OF TECHNOLOGY
Chennai
08-2025

Advanced Diploma in Cyber Defence -

Red Team Hacker Academy
02-2026

Skills

SOC & Security:
Log Analysis, Security Monitoring, Alert Triage, Threat Detection, Incident Response, Threat Intelligence, IOC Analysis, MITRE ATT&CK, Vulnerability Management

SIEM & Monitoring:
Splunk, Wazuh, Windows Event Logs, Linux Logs, Syslog, Authentication Log Analysis

  • Security Knowledge:OWASP Top 10, Vulnerability Assessment, Penetration Testing, OSINT, Phishing Analysis, Brute-Force Detection
  • Networking & Systems:
    TCP/IP, DNS, SSH, Network Scanning, Firewall Monitoring, Packet Analysis, Linux Administration, Windows Security, AWS Fundamentals

Programming:
Python (Security Automation), Bash/Shell Scripting, JavaScript, Git & GitHub

Security Tools:
Nmap, Wireshark, Burp Suite, Nessus, Metasploit, Scapy, Nuclei, Subfinder, VirusTotal

Security Knowledge:
OWASP Top 10, Vulnerability Assessment, Penetration Testing, OSINT, Phishing Analysis, Brute-Force Detection

Certification

  • Certified Ethical Hacker (CEH), EC-Council, In Progress, 2026
  • Google Cybersecurity Professional Certificate, Google
  • CISCO - Introduction to Cybersecurity

Areas Of Focus

Ethical Hacking & Penetration Testing, Bug Bounty Hunting, Web Application Security, Network Exploitation & Enumeration, Social Engineering, AI Red Teaming & LLM Security, Red Team Operations, SOC Analysis & Incident Response, Threat Detection & Threat Hunting, SIEM & Log Analysis (Wazuh, Splunk), Digital Forensics & DFIR, Cloud Security, Alert Triage & Security Operations

Projects

  • TerminalMonitor - Real-Time Network Monitoring Tool, Python, Scapy, Linux, Improved endpoint threat visibility by 40% with a Scapy-based packet capture utility that surfaces source/destination IPs, protocols, and abnormal traffic alerts in real time., Reduced manual log review time by 40% through a modular alert-rule architecture supporting plug-and-play detection signatures.
  • SOC Client Agent - Lightweight System Monitoring Agent, Python, psutil, requests, systemd, Cut mean time to detect simulated incidents by 35% via continuous CPU, RAM, disk, and process metric streaming to a centralized SOC dashboard with threshold-based alerts., Deployed with systemd auto-start to ensure zero-downtime metric collection across reboots and system restarts.
  • Virtual Cybersecurity Lab & Log Monitoring Tool, Kali Linux, Debian, VirtualBox, SSH, Python, Bash, Provisioned a multi-VM isolated lab environment supporting hands-on practice of privilege escalation, lateral movement, and network-based attack and defense scenarios., Reduced false-positive alert rates by 25% with an automated log monitoring script that detects unauthorized access and suspicious system events.

Languages

  • Malayalam, Native
  • English, Professional Proficiency
  • Tamil, Conversational
  • Hindi, Basic - Reading & Speaking

Timeline

Cybersecurity Researcher & Tool Developer

Self-Employed
01.2023 - Current

Bachelor of Technology -

AARUPADAI VEEDU INSTITUTE OF TECHNOLOGY

Advanced Diploma in Cyber Defence -

Red Team Hacker Academy
MUHAMMED SAHAL TP