Skip to main content
SUBJECT:

Arindam Singh

SCOPE:Cybersecurity | Threat Analysis | Web & Network Security | GRC
CREDENTIAL:CEH v13
EXPERIENCE:DRDO Headquarters — Research InternCRIS — Cybersecurity Analyst Intern
Document · 7 findingsRev. 2026-09-01
F-01Executive Summary
F-01

Executive Summary

Cybersecurity professional with hands-on experience across offensive security, threat analysis, vulnerability assessment, and GRC. Experienced in web and network security testing, reconnaissance, security automation, and risk assessment using industry frameworks.

Proficient in Kali Linux, Burp Suite, Metasploit, Nmap, Wireshark, Python, and Bash, with practical experience in OWASP Top 10, DAST, malware analysis, threat intelligence, and security risk management.

TECHNICAL_STRENGTHS

  • Web Exploitation & Vulnerability Assessment
  • Network Recon & Enumeration
  • Threat Intel & Log Analysis
  • Python & Bash for Automation
  • AI-Assisted Security Analytics
“Focused on thinking like an attacker to build stronger defensive systems.”
F-02

Methodology

Blue Team — SOC & Detection

15

Detection, log analysis, and incident response.

  1. 01Threat Detection
  2. 02Log Analysis
  3. 03Incident Response
  4. 04Incident Triage
  5. 05Network Traffic Analysis
  6. 06IOC Analysis
  7. 07MITRE ATT&CK
  8. 08CVE Prioritization
  9. 09Malware Analysis
  10. 10Wireshark
  11. 11Tshark
  12. 12OpenVAS
  13. 13Nessus
  14. 14OWASP ZAP
  15. 15Splunk

Red Team — Offensive Security

19

Web and network exploitation, tooling, and recon.

  1. 01Web & Network Pentesting
  2. 02OWASP Top 10
  3. 03SQL Injection
  4. 04XSS & CSRF
  5. 05API Security
  6. 06Kali Linux
  7. 07Metasploit
  8. 08Burp Suite
  9. 09Nmap
  10. 10Recon-ng
  11. 11Maltego
  12. 12Hydra
  13. 13Nikto
  14. 14Gobuster
  15. 15SQLMap
  16. 16John the Ripper
  17. 17Hashcat
  18. 18Frida
  19. 19APKTool

Languages, Systems & AI

13

Automation, scripting, and AI-assisted analytics.

  1. 01Python
  2. 02Bash
  3. 03C++
  4. 04Java
  5. 05SQL
  6. 06TCP/IP
  7. 07Linux
  8. 08Windows
  9. 09TF-IDF Analysis
  10. 10Behavior Correlation
  11. 11CVE Severity Prediction
  12. 12Threat Intelligence Mapping
  13. 13Security Automation

GRC & Compliance

09

Risk assessment, control mapping, and compliance frameworks.

  1. 01Risk Assessment
  2. 02Security Policies & Procedures
  3. 03Control Mapping
  4. 04Audit Evidence Collection
  5. 05NIST SP 800-30
  6. 06NIST CSF 2.0
  7. 07ISO 27001:2022 Annex A
  8. 08PCI DSS
  9. 09DPDP Act
F-03

Experience

  1. June 2026 – August 2026
    DRDO emblem

    Research Intern

    — DRDO Headquarters (DRDO Bhawan), Ministry of Defence
    • Contributed to cybersecurity research through literature surveys and comparative analysis of contemporary cybersecurity approaches relevant to the DRDO Directorate of Planning & Coordination.
    • Researched the recovery of legacy glyph-encoded Devanagari text into standard Unicode for cross-lingual access to bilingual defence archives, formulating the problem as a context-aware sequence normalization task.
    • Developed a regression-tested rule-based normalizer and an automatic reverse-rendering pipeline to generate aligned training data without manual annotation.
    • Fine-tuned a compact byte-level neural model and conducted dataset preparation, model development, and experimental evaluation, with particular focus on improving recovery of code-mixed content.
    • Demonstrated the effectiveness of the recovered Unicode text for cross-lingual semantic retrieval over defence archives and documented the findings in a research paper prepared for peer-reviewed publication.
    DRDO Headquarters building
  2. June 2025 – August 2025
    CRIS logo

    Cybersecurity Analyst Intern

    — CRIS — ISG Department
    • Worked on securing large-scale Indian Railways digital platforms, including IRCTC and e-DRISTI, which handle millions of daily transactions and manage sensitive passenger data.
    • Reviewed application, server, and network logs to detect suspicious activity, anomalies, and potential cyber threats across railway IT infrastructure.
    • Assisted in vulnerability assessments and penetration testing of internal and public-facing railway applications such as e-DRISTI, identifying SQL injection, Cross-Site Scripting (XSS), weak authentication, and application misconfigurations.
    • Conducted security reviews of IRCTC services to identify vulnerabilities that could lead to data breaches or disruption of ticketing and payment transactions, including session duplication issues exploited by travel agents.
    • Documented and tracked security incidents, Indicators of Compromise (IOCs), and remediation actions as part of incident response activities.
    • Collaborated with IT and security teams to strengthen firewalls, access controls, and server hardening for critical railway IT systems.
    CRIS office building
F-04

Achievements

OffSec Gauntlet

7 October 2025 – 2 December 2025
0th
of ~9,000participants

Rank achieved

SeverityCritical

Solved hands-on challenges in web application security, reconnaissance, and vulnerability analysis under time constraints, finishing 45th out of roughly 9,000 participants.

F-06

Certifications

Featured

Certified Ethical Hacker (CEH v13)

Validates expertise in ethical hacking methodologies, penetration testing, and security assessment techniques — proficiency in identifying vulnerabilities and securing systems against cyber threats.

EC-Council · 2026ECC8367419502
Verify credential
Featured

Cyber Security 101 (SEC1)

Covers core cyber security concepts across networking, offensive and defensive security, and web fundamentals — validated through TryHackMe's hands-on, exam-based assessment.

TryHackMe · 2026
Verify credential
Featured

Pre Security (SEC0)

Validates foundational security knowledge spanning networking basics, web fundamentals, and core Linux/Windows security concepts — completed through TryHackMe's hands-on, exam-based assessment.

TryHackMe · 2026
Verify credential
CredentialIssuerYearReference
Google2025Verify
IBM2025Verify
Google2025Verify
Codio2024Verify
University of Colorado Boulder2025Verify
University of Colorado Boulder2025Verify