SECURE
Entry-Level Cybersecurity Analyst
Uttarakhand, India · 2026

Anshul
Mehta

Built a foundation in incident response, network analysis, compliance auditing, and security automation through the Google Cybersecurity Professional Certificate and hands-on lab projects. Looking to break into the industry as a SOC analyst.

Scroll
01 —

About

Who I am

I'm looking to start my career in cybersecurity — specifically in blue team and SOC roles.

I've built a working knowledge of the security operations lifecycle through structured lab projects — alert triage, incident response, network traffic analysis, compliance auditing, and Python automation. I know I'm entry-level. I'm not here to oversell that. What I can offer is genuine interest in the work, a solid technical foundation, and a willingness to learn fast on the job.

My project work is all simulated lab environment work from the Google Cybersecurity Professional Certificate — but it's hands-on, it's documented, and it covers the kind of work a Tier 1 SOC analyst actually does.

Name Anshul Mehta
Role Entry-Level SOC Analyst
Degree BCA — Tulas Institute, Dehradun
Location Uttarakhand, India
GitHub Anshul-debug
Open to opportunities
02 —

Skills

Lab-based · Coursework
01
Security Operations
Incident Response Alert Triage IOC Identification SIEM Concepts Log Analysis Forensic Collection
02
Network Security
Wireshark tcpdump PCAP Analysis Traffic Analysis DDoS / ICMP Firewall Rules
03
Compliance & Frameworks
NIST CSF NIST SP 800-30 MITRE ATT&CK PCI DSS GDPR SOC 1 / SOC 2
04
Programming & Tools
Python SQL / MySQL Bash VirusTotal SHA-256 Analysis
05
Systems
Linux (Ubuntu / Kali) chmod / Permissions Access Control Least Privilege Windows
06
Risk & Assessment
Risk Assessment Controls Auditing Vulnerability Scoring Incident Reporting
03 —

Projects

All simulated lab environments
01
Incident Handler's Journal
Incident Response SIEM IOC Analysis Forensics
→

Worked through a simulated credential stuffing incident from initial SIEM alert to full containment. Identified attacker IPs as IOCs, disabled the compromised account, and isolated the affected server in under 20 minutes. Collected forensic evidence (memory dump, disk image, 72 hours of logs) and produced a 7-step remediation report.

View on GitHub ↗
02
DDoS Incident Report
NIST CSF DDoS / ICMP Network Security
→

Investigated a simulated ICMP flood DDoS attack that took all network services offline. Identified root cause and designed a response plan using all 5 NIST CSF functions — detection, firewall controls, staged isolation, and staged service recovery.

View on GitHub ↗
03
Network Analysis Portfolio
Wireshark tcpdump VirusTotal PCAP
→

Four lab activities: ransomware IR kill-chain analysis, Wireshark PCAP inspection (protocol headers, display filters), live tcpdump capture from Linux CLI, and a VirusTotal SHA-256 investigation that confirmed a malicious attachment across 70+ AV engines.

View on GitHub ↗
04
Botium Toys — Security Audit
PCI DSS GDPR SOC 1/2 NIST CSF
→

Full internal controls and compliance audit for a simulated retail business. Risk Score 8/10 HIGH. Found 9 critical gaps including no IDS, unencrypted cardholder data, and no DRP. Mapped findings to PCI DSS, GDPR, SOC 1/2 with 8 prioritised recommendations.

View on GitHub ↗
05
Vulnerability Assessment — MySQL Server
NIST SP 800-30 Risk Scoring Linux / MySQL
→

Assessed a simulated Linux MySQL server under NIST SP 800-30. Scored 3 risk scenarios — hacker exfiltration at 9/9 CRITICAL. Recommended RBAC, MFA, TLS upgrade, and IP allow-listing, reducing projected risk from 9 to 3.

View on GitHub ↗
06
File Permissions in Linux
chmod Access Control Least Privilege
→

Audited a research team's directory using ls -la. Applied three targeted chmod fixes — removing world-write on a shared file, locking an archived file to read-only, and restricting directory access to the owner only.

View on GitHub ↗
07
SQL Filters & Python Automation
Python MySQL File I/O
→

Wrote 6 SQL security queries (AND/OR/NOT/LIKE) to filter login and employee data for active investigations. Built a Python script automating IP allow-list maintenance — reads, filters revoked entries, and rewrites the file cleanly.

View on GitHub ↗
04 —

Certifications

Verified credentials
Cybersecurity Certificate
RCPL Centre of Excellence · Tulas Institute, Dehradun · EC-Council Accredited · ID: RCPL-2024/7801
Completed
05 —

Contact

Let's talk
Looking for
entry-level
opportunities.

SOC analyst positions, security internships, junior blue team roles. If you have something that needs someone who'll work hard and learn fast — reach out.