H

Henil Gandhi

About

Detail

Illinois, United States

Timeline


work
Job

Résumé


Jobs verified_user 0% verified
  • AIDS Healthcare Foundation
    Security Intern
    AIDS Healthcare Foundation
    Jun 2025 - Aug 2025 (3 months)
    Performed threat hunting across EDR and SIEM logs using advanced SPL queries, reducing undetected lateral movement risks by 30% & collaborated with executive to translate findings into actionable risk mitigation strategies. Utilized Microsoft Defender's Advanced Hunting queries & Power BI integration to create real-time dashboards for visualizing threat intelligence that enabled proactive monitoring & improve the incident detection by 30%. Assisted in user access reviews and identity & access management (IAM) processes to ensure least privilege and reduce insider threats. Investigated alerts triggered by MITRE ATT&CK techniques and implemented custom detection rules in SIEM.
  • H
    Cyber Security Intern
    Hackveda LTD
    Jan 2024 - Apr 2024 (4 months)
    Monitored SIEM dashboards & logs to detect, investigate escalate suspicious activity; assisted with risk assessments, compliance documentation, and security reviews aligned with NIST CSF, ISO 27001, PCI DSS, and HIPAA frameworks. Conducted a gap assessment of network infrastructure to identify visibility gaps before SIEM integration. Helped manage exceptions in antivirus, firewall, and endpoint policies, improving audit readiness. Deployed and configured wazuh SIEM from scratch, including server setup, agent deployment, log onboarding, and dashboard creation.
  • Bugcrowd
    Security Researcher
    Bugcrowd
    Jan 2022 - Jul 2024 (2 years 7 months)
    Conducted in-depth vulnerability assessments and penetration testing on production systems to evaluate security controls and identify risks like XSS, CSRF, SQLI and DoS across web apps, APIs, and networks. Mastered the OWASP Top 10 vulnerabilities through extensive hands-on labs, significantly improving practical cybersecurity skills by learning SSH, SMB, DNS, HTTP & other protocols & its services. Employed industry-standard tools and methodologies like Burp Suite, Nmap, OWASP ZAP, Wireshark, Shodan and custom scripts to identify and exploit security vulnerabilities.
Education verified_user 0% verified
  • Illinois Institute of Technology
    MAS, Cyber Forensics & Security
    Illinois Institute of Technology
    GPA 4.0
  • L
    Bachelor of Engineering, Computer Engineering
    L D College of Engineering
    GPA 3.7
Projects (professional or personal) verified_user 0% verified
  • C
    CYBERHUNT
    Developed a tool in shell scripting tailored for Bug Bounty Hunters that automates subdomain enumeration, HTTP/HTTPS service discovery, vulnerability scanning, providing critical endpoints for vulnerability detection.
  • H
    Home SOC & EDR Automation Lab
    Designed and deployed a complete home SOC setup using SIEM tools, network monitoring, log aggregation, and attack simulations to practice threat detection, incident response, and automation.
Awards verified_user 0% verified
  • M
    Microsoft Hall of Fame
  • A
    Acknowledgement by NCIIPC (Indian Govt.)
  • W
    Winner of IISF CTF Competition
  • C
    Certificate of Appreciation by Lenovo
  • L
    Letter of Appreciation from LG
  • A
    Apple Hall of Fame