Om Shah

Cybersecurity Graduate | Security Automation | Vulnerability Assessment

Cybersecurity graduate with hands-on experience in Python automation, vulnerability scanning, security labs, and document workflow automation. Open to junior roles in SOC analysis, cyber security, vulnerability management, GRC, IT security support, and security automation.

  • Sydney, Australia
  • Bachelor of Cybersecurity, UTS
  • Open to junior cyber roles
Featured Sentinel: Vulnerability Scanner
om@uts:~
$ whoami
om_shah
$ cat skills.txt
[+] Vulnerability Management
[+] Security Automation
[+] Python Scripting
[+] Nmap / Wireshark
$
Scroll Down

Open to Roles

  • SOC Analyst Level 1
  • Junior Cybersecurity Analyst
  • Vulnerability Analyst
  • GRC Analyst
  • IT Security Support
  • NOC Analyst
  • Security Automation Analyst

Why Hire Me

  • Cybersecurity graduate with practical security projects across vulnerability scanning, detection labs, and automation.
  • Strong Python automation and workflow improvement experience in a production environment.
  • Able to investigate, document, and explain technical findings clearly for technical and non-technical audiences.
  • Open to junior SOC, GRC, vulnerability management, and IT security roles.

01. About Me

At a glance

Cybersecurity graduate with 3+ years in quality assurance, automation, and Python scripting.

I build security automation and API-driven tooling for vulnerability scanning, workflow improvement, and repeatable checks.

Interested in SOC detection, alert investigation, vulnerability assessment, and GRC-style documentation.

Comfortable investigating issues, documenting findings, and turning lab work into clear technical write-ups.

Python scripting, Nmap, Wireshark, security automation, vulnerability management

35% 35% faster case handling
3+ years quality assurance + automation
UTS Bachelor of Cybersecurity

My professional journey

02. Experience

Automation Engineer

Migrate Zone

Jul 2023 to present · Part-time · Dec 2024 to present in current role

  • Merged financial audit checks into one workflow, cutting duplicate checks and manual cross-referencing.
  • Co-led modular automations for file naming, risk flagging, and routing; cut average case time from ~8h to ~5.3h (~35%).
  • Built a prefill tool mapping validated case data into Excel lodgement templates, speeding prep and reducing repeat checks.
  • Built a lightweight scraper for policy update pages, replacing repeated manual checks.

03. Featured Projects

Filter by
DNS tunnel PCAP visualization showing network topology and packet timeline
Detection lab Demo video coming soon

DNS Tunneling Detection Lab

Built an isolated defensive lab to understand DNS tunneling behaviour, capture PCAP evidence in Wireshark, analyse query patterns, and create detection logic using entropy, query length, timing, and repeated domain behaviour. Mapped techniques to MITRE ATT&CK (T1048.003). Lab-only environment for defensive learning.

  • Python
  • Wireshark
  • DNS analysis
  • MITRE ATT&CK
  • Detection logic
Immigration Case Workflow Automation Toolkit preview
Production

Immigration Case Workflow Automation Toolkit

Production Python automation at Migrate Zone. Staff upload case documents; the toolkit merges, OCR-reads, and validates them against visa-specific checklists, flags missing or outdated items, and bundles review-ready packages. Demonstrates workflow automation and document validation at scale.

  • Python
  • Adobe PDF Services
  • OCR
  • JSON
SMS bulk-style classifier demo UI
Applied ML API status: checking

SMS Bulk-Style Classifier (Machine Learning)

Applied ML project: neural network trained on SMS text to score bulk or automated wording patterns. Deployed as a live API with an interactive demo for incident triage-style classification workflows.

  • Python
  • TensorFlow
  • GloVe
Production

Document Completeness Check & Form Pre-fill Tool

Production Python scripting tool at Migrate Zone. OCR-reads case documents, validates against visa-specific checklists, flags missing or expired items, then auto-fills verified data into Excel lodgement templates.

  • Python
  • OCR
  • Excel
  • JSON schemas
IDS

Intrusion Detection System (IDS)

Multi-class intrusion detection pipeline using Random Forest and MLP models on network flow data. Includes train/test splits, scaling, confusion matrices, and per-class evaluation. Benchmark scope for alert investigation and detection research, not a live SIEM deployment.

  • Python
  • Pandas
  • Network traffic analysis
Production

PDF Invoicing & Document Tools

ITonKey internship. Converts structured business data into branded, multi-page PDF invoices. Also built inventory tracking and reporting features.

  • Python
  • PDF Generation
  • Excel
TLS interception lab with mitmproxy preview
Security lab

TLS Interception Lab (mitmproxy)

Isolated lab exercise using mitmproxy on Kali Linux and a Windows 10 VM to study TLS interception behaviour, certificate trust, and HTTPS traffic analysis. Lab environment only, with documented findings and defensive takeaways.

  • Kali Linux
  • mitmproxy
  • Wireshark
  • Windows 10 VM
Notification listener Android demo (Wellness Pulse) preview
Education

Android Notification Listener Risk Demo

Android app demonstrating notification listener permission risk: what the permission exposes and why user consent matters. Tested on personal device/emulator only. Relevant to IAM and mobile privacy awareness.

  • Android
  • Kotlin
  • Privacy
  • Notification listener

04. Papers & reports

Technical writing: assessments, lab reports, and research-style submissions from my degree.

05. Education & technical foundations

Formal study and subject depth from my UTS degree: these are coursework topics, not separate industry certifications.

Cybersecurity

description: |

Built STRIDE-style threat models for sample applications and documented mitigations for each threat class in written assessments.

UTS program

System security

description: |

Hardened Linux VMs (services, permissions, updates) and compared access-control models in practical lab submissions.

UTS program

Cloud security (AWS)

description: |

Deployed small workloads using IAM roles, security groups, and least-privilege reviews in AWS console lab exercises.

UTS program

Digital forensics

description: |

Imaged virtual disks, extracted timelines and artefacts with forensic tools, and wrote short reports with documented handling steps.

UTS program

Formal qualification

description: |

Bachelor of Cybersecurity

University of Technology Sydney

2023 to 2026

06. Skills & Tools

Security Testing

description: |
  • Network scanning (Nmap / NSE)
  • Vulnerability assessment & management
  • Web application testing
  • MITRE ATT&CK mapping (labs)
  • Offensive security labs (university)

Defensive Security

description: |
  • Threat modeling (STRIDE)
  • Incident triage & alert investigation (labs)
  • SIEM concepts (Splunk, Microsoft Sentinel)
  • Windows Event Logs & Sysmon (labs)
  • Information security management & GRC

Tools & technologies

description: |
  • Wireshark
  • Nmap / NSE scripts
  • Linux (lab environments)
  • Postman / Chrome DevTools / Jira
  • VMware / VirtualBox / Cisco Packet Tracer

Programming & Scripting

description: |
  • Python scripting
  • Security automation
  • JSON / CSV / Excel
  • Git / GitHub
  • HTML / CSS

07. Get In Touch

Open to opportunities

availability: |

Open to junior cybersecurity, SOC, GRC, and security automation roles. Download resume for full experience and project detail. Based in Sydney, Australia.