┌──────────────────────────────────────────────────────────────────────────────┐
│ │
│ ██████╗██╗ ██╗██████╗ ███████╗██████╗ ███████╗███████╗ ██████╗ │
│ ██╔════╝╚██╗ ██╔╝██╔══██╗██╔════╝██╔══██╗ ██╔════╝██╔════╝██╔════╝ │
│ ██║ ╚████╔╝ ██████╔╝█████╗ ██████╔╝ ███████╗█████╗ ██║ │
│ ██║ ╚██╔╝ ██╔══██╗██╔══╝ ██╔══██╗ ╚════██║██╔══╝ ██║ │
│ ╚██████╗ ██║ ██████╔╝███████╗██║ ██║ ███████║███████╗╚██████╗ │
│ ╚═════╝ ╚═╝ ╚═════╝ ╚══════╝╚═╝ ╚═╝ ╚══════╝╚══════╝ ╚═════╝ │
│ │
└──────────────────────────────────────────────────────────────────────────────┘
┌─[akshay@cybersec]─[~/profile]
└──╼ $ cat about_me.txt
╔══════════════════════════════════════════════════════════════════════╗
║ OPERATIVE: Akshay Jain ║
║ CLEARANCE: MS Computer Science — Cyber Security Specialization ║
║ STATUS: ACTIVE ║
║ MISSION: Securing the digital frontier ║
╚══════════════════════════════════════════════════════════════════════╝const akshay = {
role: "Cybersecurity Engineer",
focus: ["Detection Engineering", "AI SOC Automation", "Threat Intel", "Digital Forensics", "Incident response", "SOAR Automations"],
languages: ["Python", "SPL", "C++", "PowerShell", "Bash"],
tools: ["Splunk", "ELK", "Wazuh", "CrowdStrike", "LangGraph", "MISP"],
certified: ["CrowdStrike Falcon Responder", "CrowdStrike Falcon Threat Hunter"],
certGoals: ["GCFE", "OSCP", "CRTP", "GCIH"],
motto: ["Automate the noise. Investigate the signal.", "There is no patch for human stupidity"]
};🔴 Currently: Engineering AI-assisted SOC workflows, Sigma detection pipelines, local threat-intel RAG systems, and human-approved agentic automation.
🟢 Always: Turning threat intelligence into detections, reducing alert fatigue, validating coverage with adversary emulation, keeping security tooling auditable and contributing to open source tools.
| 🤖 AI + Automation | 🛡️ Detection + SOC | 📡 Threat Intel + DFIR | ☁️ Cloud + Engineering |
|---|---|---|---|
| LangChain / LangGraph | Detection Engineering | IOC Analysis | AWS S3 / Athena |
| RAG + ChromaDB | SIEM: Splunk / ELK / Wazuh | MISP / STIX / TAXII | CloudTrail / GuardDuty |
| Ollama + Local LLMs | SOAR Playbooks | Digital Forensics | Docker / Kubernetes |
| FastMCP / MCP Tools | Sigma / Detection-as-Code | MITRE ATT&CK / ATLAS | Terraform / GitHub Actions |
| Prompt Engineering | Threat Hunting + IR | VirusTotal Enrichment | Python / SPL / KQL |
areas_of_interest:
- AI-driven SOC automation and analyst augmentation
- Agentic detection engineering with human-in-the-loop approval
- Threat intelligence pipelines, IOC enrichment, and RAG search
- SIEM engineering across Splunk, ELK, Wazuh, and cloud telemetry
- DFIR, phishing triage, endpoint response, and forensic workflows
- AI security, prompt engineering, MITRE ATLAS, and LLM red teaming| Project | Signal |
|---|---|
| ADEPT | Local multi-agent detection engineering platform using LangGraph, Ollama, MCP, Sigma, ELK, Wazuh, Splunk, Atomic Red Team, MITRE Caldera, and human approval gates. |
| ASTRA | Privacy-first threat report analyzer using LangChain, Ollama, Pydantic IOC extraction, ChromaDB retrieval, and analyst-focused natural-language search. |
| AI in Cybersecurity | Living knowledge base for LLM foundations, prompt/context engineering, RAG, LangChain, LangGraph, MCP, agent skills, and AI red teaming. |
| Home Lab SIEM + Detection Lab | ELK/Wazuh lab with Winlogbeat, Filebeat, Syslog, Atomic Red Team, MITRE Caldera, Sigma CI/CD, AWS CloudTrail, and GuardDuty detections. |
| PhishGuard | Python phishing analysis tool for headers, URLs, attachments, QR codes, VirusTotal enrichment, and report generation. |
| Taggart Intel Discord Bot | RSS-to-Discord cyber intel monitor tracking 60+ sources with deduplication, rich embeds, and rate-limit handling. |
| ✅ Achieved / Recognition | 🎯 In Progress + Goals |
|---|---|
| CrowdStrike Certified Falcon Responder | GIAC Certified Forensic Examiner (GCFE) |
| CrowdStrike Certified Falcon Threat Hunter | OSCP |
| SANS "Lethal Forensicator" Coin - FOR500 Capstone Champion | CRTP |
| Google Cloud Security Professional - Accredited Training | GCIH |
| CNWPP - Certified Network & Web App Pen Testing Professional Training | Continued DFIR + Detection Engineering specialization |
| FOSS contributions: MISP + ransomware.live | AI security, MITRE ATLAS, and agentic SOC systems |
🎯 Sharpen the fundamentals — grab a random challenge on LeetCode and keep the engineering reflexes sharp.
┌──────────────────────────────────────────────────────────────────────────────┐
│ │
│ [LOG] Session monitored. All interactions recorded. │
│ [SYS] "The quieter you become, the more you are able to hear." — Kali │
│ [END] Connection terminated. Stay paranoid, stay safe. 🔒 │
│ │
└──────────────────────────────────────────────────────────────────────────────┘



