OM SHAH

Cybersecurity & Automation Engineer

Sydney, NSW contact@omshahinfo.com github.com/0m-5hah omshahinfo.com

Profile

Cybersecurity graduate with three years of experience building production automation and security-focused software. Cut average case-processing time by 34% at Migrate Zone and independently built EightScope, a live external attack surface monitoring platform.

Core Skills

  • SecurityExternal attack surface monitoring, vulnerability assessment, Nmap/NSE, Wireshark, DNS and TLS assessment, HTTP security headers
  • EngineeringPython, REST APIs, PostgreSQL, JSON, OCR and PDF workflows, Excel automation, Git
  • PlatformsLinux, Windows, VMware, AWS IAM, Burp Suite, Postman, Jira

Professional Experience

MIGRATE ZONE

July 2023 - May 2026

Automation Engineer, Part-time

Promoted from Junior Automation Engineer in December 2024

  • Cut average case-processing time from approximately 8.0 hours to 5.3 hours by co-building Python workflows for document validation, file naming, risk flagging and case routing.
  • Combined financial audit checks and Excel prefill into one workflow, reducing duplicate reviews and repetitive data entry.
  • Co-developed a PDF collation and OCR process that identified missing, expired and unreadable documents before lodgement.
  • Created a government policy monitor and internal guides that allowed non-technical staff to use the automation tools independently.

ITONKEY

August 2024 - October 2024

Python Backend Developer Intern, Part-time

  • Developed a Python system that converted structured business data into branded, multi-page PDF invoices.
  • Contributed stock-tracking and reporting features to an inventory-management platform for small businesses.

Selected Product & Projects

EIGHTSCOPE

2026 - Present

Creator & Lead Developer

  • Built and launched a live platform that maps a domain's public attack surface, identifies externally visible security risks and tracks changes between scans.
  • Engineered domain ownership verification, subdomain discovery, hostname-level asset inventories and safeguards against private or reserved scan targets.
  • Created repeatable scan workflows covering DNS, email authentication, TLS, HTTP security headers, exposed services, public files, technologies and CVE signals.
  • Produced structured findings with severity, confidence, technical evidence, remediation guidance and PostgreSQL-backed scan history.

SENTINEL

2025

Automated Network Vulnerability Scanner | UTS Capstone

  • Created a Python vulnerability scanner using Nmap and NSE to discover hosts, identify services and surface possible CVE matches.
  • Improved fingerprinting across SMB, RDP, nested Nmap output and host-level script results.
  • Generated risk-prioritised JSON findings grouped by asset with commands for manual verification.

DNS TUNNELLING DETECTION LAB

2025

Independent Security Lab

  • Created an isolated VMware lab to study DNS tunnelling and capture network evidence using Wireshark.
  • Produced defensive detection logic based on query entropy, subdomain length, burst timing and repeated-domain behaviour.
  • Mapped the behaviour to MITRE ATT&CK T1048.003 and presented the captured PCAP through an interactive browser walkthrough.

Education

BACHELOR OF CYBERSECURITY

2023 - 2026

University of Technology Sydney

Relevant study: Network Security, System Security, Cloud Security, Digital Forensics, Incident Response and Cyber Threat Intelligence