Nithin Kumar M

Cybersecurity Analyst & Penetration Tester

Summary

Cybersecurity Analyst and Penetration Tester with 2+ years of experience securing web applications, cloud infrastructure, and enterprise networks. Identify real attack paths, exploit misconfigurations, and validate fixes across the full stack. Passionate about building security into products from the ground up — from threat modeling and secure code review to hardening production environments. Translate compliance requirements into practical, developer-friendly controls that scale with the product.

Experience

Cybersecurity Analyst

TiQHUB, LLC - Remote

  • Perform penetration testing and vulnerability assessments across cloud, network, web, and AI environments to identify security gaps before incidents
  • Harden environments and reduce attack surface by applying CIS, CISA, DISA STIG, and NCSC benchmarks
  • Automate security checks, monitoring, and remediation across Windows and macOS using PowerShell and Bash
  • Conduct user access reviews to minimize insider risk and enforce least privilege
  • Lead security projects end-to-end, from scoping and planning through execution and reporting
  • Collaborate with cross-functional teams to integrate security into day-to-day workflows
  • Lead cybersecurity awareness training on phishing, social engineering, and threat recognition

Cybersecurity Analyst - Trainee

TiQHUB, LLC - Remote

5 mos
  • Created security playbooks aligned with NIST 800-171 r2 using CIS and CISA benchmarks
  • Hardened M365 tenant configurations by researching and applying Microsoft security best practices
  • Configured and secured Windows and macOS endpoints via Microsoft Intune

Technical Skills

Offensive Security Web, Cloud, Network & AD Penetration Testing / Red Teaming, Vulnerability Assessment
Cloud & Infrastructure AWS, Azure & M365 Security
Frameworks NIST 800-171, ISO 27001, ISO 42001, CMMC, CIS Benchmarks, CSA, DISA STIGs & OWASP
Tools BloodHound, Certipy, Maester, Prowler, Impacket, Caido, Nmap, FFUF, Sliver C2, NetExec & Metasploit
Scripting Python, Bash, PowerShell & Rust
Soft Skills Leadership, Cross-functional Collaboration, Technical Writing, Security Awareness Training, Problem Solving & Analytical Thinking

Certifications

Certified Web Exploitation Specialist (CWES) HTB Academy - 2025
Certified Red Team Professional (CRTP) Altered Security - 2025
Multi-Cloud Red Team Analyst (MCRTA) CyberWarFare Labs - 2025
Practical Junior Penetration Tester (PJPT) TCM Security - Mar 2025
Google Cybersecurity Professional Certificate Google / Coursera - Oct 2023

Education

Master of Computer Applications - Computer Science

SRM Institute of Technology & Science, Chennai

GPA: 9.0/10

Bachelor of Science - Computer Technology

DR. SNS Rajalakshmi College of Arts and Sciences, Coimbatore

GPA: 8.4/10

Projects & Community

nithin0x.space

Personal technical blog - nithin0x.space

Lab notes and detailed technical write-ups covering Active Directory attacks, cloud security, and CTF walkthroughs.

Home Lab Environment

Self-hosted attack/defense lab for testing real attack paths, exploiting misconfigurations, and validating remediation - covering AD, AWS, and web app scenarios.

Community Contributions

Actively help security professionals on Reddit and Discord by solving problems and sharing detailed walkthroughs and methodology breakdowns.