OM SHAH
Cybersecurity & Automation Engineer
Sydney, NSW contact@omshahinfo.com github.com/0m-5hah omshahinfo.com
Profile
Cybersecurity graduate with three years of experience building production automation and security-focused software. Cut average case-processing time by 34% at Migrate Zone and independently built EightScope, a live external attack surface monitoring platform.
Core Skills
- SecurityExternal attack surface monitoring, vulnerability assessment, Nmap/NSE, Wireshark, DNS and TLS assessment, HTTP security headers
- EngineeringPython, REST APIs, PostgreSQL, JSON, OCR and PDF workflows, Excel automation, Git
- PlatformsLinux, Windows, VMware, AWS IAM, Burp Suite, Postman, Jira
Professional Experience
MIGRATE ZONE
July 2023 - May 2026
Automation Engineer, Part-time
Promoted from Junior Automation Engineer in December 2024
- Cut average case-processing time from approximately 8.0 hours to 5.3 hours by co-building Python workflows for document validation, file naming, risk flagging and case routing.
- Combined financial audit checks and Excel prefill into one workflow, reducing duplicate reviews and repetitive data entry.
- Co-developed a PDF collation and OCR process that identified missing, expired and unreadable documents before lodgement.
- Created a government policy monitor and internal guides that allowed non-technical staff to use the automation tools independently.
ITONKEY
August 2024 - October 2024
Python Backend Developer Intern, Part-time
- Developed a Python system that converted structured business data into branded, multi-page PDF invoices.
- Contributed stock-tracking and reporting features to an inventory-management platform for small businesses.
Selected Product & Projects
EIGHTSCOPE
2026 - Present
Creator & Lead Developer
- Built and launched a live platform that maps a domain's public attack surface, identifies externally visible security risks and tracks changes between scans.
- Engineered domain ownership verification, subdomain discovery, hostname-level asset inventories and safeguards against private or reserved scan targets.
- Created repeatable scan workflows covering DNS, email authentication, TLS, HTTP security headers, exposed services, public files, technologies and CVE signals.
- Produced structured findings with severity, confidence, technical evidence, remediation guidance and PostgreSQL-backed scan history.
SENTINEL
2025
- Created a Python vulnerability scanner using Nmap and NSE to discover hosts, identify services and surface possible CVE matches.
- Improved fingerprinting across SMB, RDP, nested Nmap output and host-level script results.
- Generated risk-prioritised JSON findings grouped by asset with commands for manual verification.
DNS TUNNELLING DETECTION LAB
2025
- Created an isolated VMware lab to study DNS tunnelling and capture network evidence using Wireshark.
- Produced defensive detection logic based on query entropy, subdomain length, burst timing and repeated-domain behaviour.
- Mapped the behaviour to MITRE ATT&CK T1048.003 and presented the captured PCAP through an interactive browser walkthrough.
Education
BACHELOR OF CYBERSECURITY
2023 - 2026
University of Technology Sydney
Relevant study: Network Security, System Security, Cloud Security, Digital Forensics, Incident Response and Cyber Threat Intelligence