Skip to content
View raja045's full-sized avatar

Highlights

  • Pro

Block or report raja045

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
raja045/README.md
Typing SVG banner

LinkedIn Email Portfolio Blog TryHackMe HackerOne


profile views STEM OPT Open to roles Location

πŸ” About Me

πŸ‘€  name:          Raja Shekar Reddy Seelam
πŸŽ“  education:     M.S. Cybersecurity @ Florida International University (GPA 3.9, Dec 2025)
πŸ’Ό  focus:         Security Operations Β· IT Support Β· Offensive Security Β· AI Security
🎯  targeting:     SOC Analyst | Cybersecurity Analyst | IT Support Engineer | Junior Pentester
🌎  location:      Miami, FL  β†’  Open to Relocation (CONUS)
πŸ›‚  work_auth:     STEM OPT Β· 3 yrs authorized Β· No sponsorship required
πŸ’¬  ask_me_about:  SIEM/SOAR Β· Endpoint Support Β· Threat Hunting Β· LLM Red Teaming Β· Vulnerability Research
⚑  differentiator: Offensive security depth paired with hands-on blue-team and endpoint operations

I'm a defense-first security engineer with an offensive backbone β€” the kind of analyst who reads detection rules from both sides of the wire. My day-to-day spans SOC operations, threat hunting, incident response, penetration testing, and AI/LLM security research.

My experience is anchored in three areas:

  • πŸ›‘οΈ A HomeLab SOC (OPNsense + Suricata + Wazuh + Active Directory) used for hands-on red/blue exercises
  • πŸ”¬ FIU cybersecurity research spanning adversarial AI, LLM jailbreak testing, and behavioral ML
  • πŸ› Responsible vulnerability disclosure β€” 150+ findings reported through NCIIPC, HackerOne, Bugcrowd, and OpenBugBounty

I care about measurable security outcomes, not security theater. Every project below has hard numbers behind it.

GitHub Stats

πŸ† Career Highlights

🎯 Metric πŸ“ˆ Result
πŸ› Vulnerabilities Responsibly Disclosed 150+ (NCIIPC Β· HackerOne Β· Bugcrowd Β· OpenBugBounty)
πŸ›‘οΈ Penetration Tests Executed 50+ web Β· API Β· mobile engagements
πŸ–₯️ Enterprise Users Supported 300+ with ~92% first-contact resolution
🎫 Helpdesk Operations 200+ tickets/month with 95%+ SLA compliance
πŸŽ“ FIU M.S. Cybersecurity GPA 3.9 / 4.0
πŸ₯· TryHackMe Global Rank Top 6% ([0x9][MAGE] Β· 39 rooms Β· 7 badges)
πŸ“œ Active Certifications SC-200 Β· Security+ Β· CEPT Β· ITIL 4
πŸ€– LLM Red-Team Efficiency +45% jailbreak detection Β· βˆ’60% test time

πŸ’Ό Experience

🏒 EduRun Group β€” IT Support / Desktop Engineer Β· Jan 2022 – Dec 2023

Stack: Windows 10/11 Β· Active Directory Β· Microsoft 365 Β· Intune Β· Jira Β· Azure Key Vault Β· Splunk

  • 🎫 Delivered Tier 1/2 support for 300+ employees, handling 200+ tickets/month at ~92% first-contact resolution and 95%+ SLA compliance
  • πŸ–₯️ Provisioned and supported 300+ Windows endpoints; reduced new-hire device turnaround to under 4 hours
  • πŸ” Administered Active Directory, GPO, RBAC, MFA, and Conditional Access β†’ 55% fewer unauthorized-access incidents
  • ☁️ Supported Microsoft 365, Exchange Online, Teams, SharePoint, OneDrive, and Intune-managed devices
  • πŸ€– Automated PKI certificate issuance (600+/month) through Azure Key Vault + REST β†’ 65% faster turnaround
  • πŸ›‘οΈ Supported Splunk alert triage, Nessus remediation, patching, and phishing-awareness training for 300+ employees
πŸ•΅οΈ White-Hat Security Researcher (Freelance) Β· HackerOne Β· Bugcrowd Β· NCIIPC Β· OpenBugBounty Β· Jun 2023 – Dec 2023

Stack: Burp Suite Β· Metasploit Β· Subfinder Β· Amass Β· Shodan Β· ffuf Β· Python Β· Bash

  • 🎯 50+ pentests across web apps, APIs, mobile β†’ 80+ critical/high vulnerabilities discovered
  • πŸ“€ 150+ vulnerabilities responsibly disclosed through NCIIPC and public bug-bounty platforms
  • πŸ“‘ CVSS-scored, MITRE ATT&CK-mapped reports with PoCs + remediation guidance
  • ⚑ Python+Bash recon pipelines β†’ 40% faster assessments at 95%+ detection accuracy
πŸ”¬ Florida International University β€” Graduate Student Assistant Β· Feb 2024 – Dec 2025

Stack: Garak Β· PAIR Β· GCG Β· JailbreakBench Β· Stable Diffusion Β· PyTorch Β· CUDA

  • πŸ€– Automated AI red-teaming β†’ 45% jailbreak detection efficiency ↑, 60% manual testing ↓
  • 🎨 Engineered reproducible adversarial pipelines against Stable Diffusion text-to-image models
  • πŸ§ͺ Proposed novel cryptographic prompt-injection attack class + defensive mechanisms
  • πŸ“Š Engineered + annotated a 10,000-entry ML behavior-analysis dataset β†’ +18% model accuracy
  • 🐍 Built Python analytical pipelines β†’ accelerated team decisions by ~25%
  • πŸŽ“ Supported course operations through weekly student sessions, lab troubleshooting, slide updates, and rubric-based grading

πŸ› οΈ Tech Arsenal

πŸ›‘οΈ SIEM Β· SOAR Β· SOC Tooling

🎯 Frameworks · Methodologies · Standards

πŸ” Offensive Security Β· Pentesting

πŸ€– AI Β· LLM Security Β· Red-Teaming

☁️ Cloud · Infrastructure · DevSecOps

πŸ–₯️ Endpoint Β· ITSM Β· Systems Administration

πŸ’» Languages Β· Automation


πŸ… Certifications

SC-200
Security Operations Associate
Sentinel Β· Defender XDR Β· KQL
Apr 2026
Security+
SY0-701
Threats Β· Architecture Β· IR
Feb 2026
CEPT
Certified Expert Penetration Tester
Mile2 Β· Offensive Sec
Oct 2023
ITIL 4
ITIL 4 Foundation
Service Management
2024

πŸ₯· TryHackMe: Top 6% Globally Β· Rank #115050 Β· [0x9][MAGE] Β· 39 rooms cleared Β· 7 badges earned


πŸš€ Featured Projects

πŸ›‘οΈ HomeLab Security Operations Center

HomeLab Stack

End-to-end enterprise SOC built from scratch β€” segmented VLANs (DMZ/LAN/Mgmt), Suricata IDS/IPS, Wazuh SIEM with custom alert rules, Active Directory with GPO + RBAC, and red/blue exercises from an isolated Kali VM.

πŸ” CyberWatch β€” Threat Intel & IoC Pipeline

CyberWatch Stack

SOAR-adjacent threat intelligence aggregator β€” RSS scraping, web scraping, VirusTotal IoC enrichment (hashes, IPs, domains, URLs), MongoDB persistence, scheduled weekly digest delivery. Hardened with Helmet.js, CORS, rate-limiting, RBAC, HTTPS.

🎯 Direct application of SOC analyst IoC workflow at scale.

πŸ€– Cryptographic Adversarial Attacks on Stable Diffusion

Repo Stack

Novel offensive AI research introducing cryptographic prompt injection as a new jailbreak class against text-to-image diffusion models.

πŸ“ˆ +35% attack success rate Β· +45% detection efficiency Β· βˆ’60% testing time.

πŸ’³ SecurePaw β€” PCI DSS SAQ D Platform

Repo Stack

Full PCI DSS SAQ D compliance implementation β€” Azure Key Vault secrets management, enforced HTTPS, firewall rules for CDE, GitHub Actions CI/CD with secret scanning.

βœ… Audit-ready under structured regulatory framework.

πŸ› Web Application Penetration Testing

Repo Stack

50+ web/API assessments mapped to OWASP Top 10 with full kill-chain documentation, CVSS scoring, and remediation guidance.

πŸ“€ Methodology behind 150+ responsibly disclosed vulnerabilities.

πŸ–ΌοΈ Image Forensics Using Metadata

Repo Stack

Digital forensics tooling β€” EXIF metadata extraction + Isolation Forest anomaly detection to surface tampered or AI-generated imagery.

πŸ”Ž Bridges classical forensics with ML-driven anomaly detection.

☁️ Cloud Security with AWS IAM

Repo Stack

Dual-environment IAM architecture with dev/prod isolation, least-privilege policies, group-based RBAC, and end-to-end permission-boundary validation.

πŸ”§ Endpoint & Identity Operations

Stack

Hands-on administration across Active Directory, Group Policy, MFA/Conditional Access, Intune MDM, Microsoft 365, Exchange Online, endpoint imaging, patching, and SLA-driven Tier 1/2 support.

🎯 Supported 300+ users and endpoints while sustaining ~92% first-contact resolution.


πŸ“Š GitHub Analytics

streak top langs



trophies



activity graph

✍️ Latest from the Blog

πŸ“ Read more security write-ups, CVE disclosures, and lab walk-throughs at rajareddy.site/blog


🌱 Currently Exploring

+ πŸ” OSCP preparation        β€” offensive deep dive (HTB + PWK labs)
+ ☸️ Kubernetes Security    β€” Falco + OPA Gatekeeper + admission controllers
+ πŸ—οΈ Terraform / IaC Sec    β€” tfsec, Checkov, policy-as-code pipelines
+ πŸŒͺ️ CrowdStrike Falcon     β€” EDR engineering + Real-Time Response workflows
+ πŸ›« Intune + ServiceNow    β€” endpoint management at enterprise scale
+ πŸ“€ CVE-numbered research   β€” progressing from responsible disclosure to assigned CVEs

🀝 Let's Connect

I'm actively looking for SOC Analyst, Cybersecurity Analyst, IT Support Engineer, and Junior Penetration Tester roles in the US. STEM OPT authorized β€” no sponsorship required for 3 years.


LinkedIn

Email

Portfolio

Blog

TryHackMe

HackerOne

footer

"The best detection rule is the one written by someone who's lived on the other side of it."

Pinned Loading

  1. Email-Spam-Detection-Using-Logistic-Regression Email-Spam-Detection-Using-Logistic-Regression Public

    This project demonstrates the effective use of logistic regression combined with feature engineering and NTLK to build a high-accuracy email spam detection system.

    Jupyter Notebook

  2. Machine-Learning Machine-Learning Public

    This repository contains each and every machine Learning model that I built

    Jupyter Notebook

  3. HomeLab-Security-Operations-Center HomeLab-Security-Operations-Center Public

    The Homelab Security Operations Center (HSOC) provides a robust, virtualized environment for aspiring cybersecurity professionals. It combines multiple security tools and network elements to mimic …

    1

  4. SecurePaw SecurePaw Public

    SecurePaw is a PCI DSS-compliant pet adoption web application featuring secure payment integration and robust user authentication, showcasing expertise in secure web development and cloud services.

    TypeScript 1

  5. WebApplicationPenetrationProject WebApplicationPenetrationProject Public

    This repository contains a comprehensive penetration testing and security assessment report for the 'Online Book Catalog' web application, identifying vulnerabilities and providing remediation stra…

    1