Skip to content
View hiteshus816's full-sized avatar
🫠
Open To Work
🫠
Open To Work

Block or report hiteshus816

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
hiteshus816/README.md

Hi, I'm Hitesh Chowdary Bandaru 👋

Security Operations & Application Security Engineer

🎓 M.S. Cybersecurity & Information Assurance, University of Central Missouri (Expected May 2026) 🛡️ SOC Analyst | Application Security | Cloud Security | DevSecOps

Active Directory Attack Lab — CORP.LOCAL — Domain Admin compromise via BloodHound-guided Kerberoasting (done)


👨‍💻 About Me

Cybersecurity professional with experience across SOC, Application Security, Cloud Security, and DevSecOps — monitoring enterprise environments, investigating incidents, running vulnerability assessments, and securing CI/CD pipelines and cloud workloads across AWS and Azure.


🎯 Career Interests

SOC | Threat Detection & Incident Response | Application Security | Cloud Security | DevSecOps | Detection Engineering | Threat Hunting

🔭 Currently Learning

Advanced Threat Hunting • Detection Engineering • Microsoft Sentinel • Splunk ES • Malware Analysis • Kubernetes Security • HTB CPTS Labs


🛠 Technical Skills

Security Operations: Splunk SIEM/SOAR, CrowdStrike Falcon, Snort IDS/IPS, Proofpoint, ServiceNow Threat Intel & Vuln Mgmt: Qualys, Recorded Future, MITRE ATT&CK, Threat Hunting, Incident Response Application Security: Checkmarx (SAST), Burp Suite Pro (DAST), Snyk (SCA), Threat Modeling, OWASP Top 10/ASVS Cloud Security: AWS (GuardDuty, CloudTrail, Security Hub, IAM) | Azure (Defender for Cloud, Azure AD, Key Vault) DevSecOps: Jenkins, Azure DevOps, Git, Docker, Secure CI/CD Programming: Python, PowerShell, Bash, Java Frameworks: NIST 800-53, PCI-DSS, SOX, MITRE ATT&CK, STRIDE


🚀 Featured Projects

🔹 SOC Detection Lab — Log analysis, alert investigation, and incident triage using Splunk, Sysmon, and Sigma rules against Windows Event Logs.

🔹 Vulnerability Management Lab — Enterprise-style asset discovery, vulnerability prioritization, and remediation validation with Qualys and Nessus.

🔹 Application Security Lab — Hands-on SAST/DAST/SCA testing and OWASP Top 10 coverage using Burp Suite Pro, Checkmarx, and Snyk.

🔹 Cloud Security Lab — AWS & Azure hardening and monitoring: IAM best practices, CloudTrail analysis, GuardDuty findings, Azure Defender, Key Vault security.


📜 Certifications

✅ CompTIA Security+ 🎯 Preparing for: GIAC GCIH, AWS Security Specialty, Microsoft AZ-500

📈 GitHub Goals

Detection Rules • Sigma Rules • SOC Playbooks • Blue Team Labs • Cloud Security Projects • Python Security Automation


🤝 Connect

📧 hiteshmark04@gmail.com | 💼 LinkedIn | 💻 GitHub


"Security isn't about finding vulnerabilities—it's about understanding how systems fail, defending them effectively, and continuously improving resilience."

Pinned Loading

  1. ARP-Cache-Poisoning-MITM-Attack-Lab ARP-Cache-Poisoning-MITM-Attack-Lab Public

    Demonstrated ARP cache poisoning attacks using ARP requests, ARP replies, and gratuitous ARP messages. Performed Man-in-the-Middle (MITM) attacks against Telnet and Netcat communications using Scap…

    Python

  2. DNS-Cache-Poisoning-Local-DNS-Spoofing-Attack-Lab DNS-Cache-Poisoning-Local-DNS-Spoofing-Attack-Lab Public

    Demonstrated DNS spoofing and DNS cache poisoning attacks in a controlled lab environment using Scapy and Python. Manipulated DNS responses, injected forged authority and additional records, poison…

    Python

  3. Firewall-Exploration-Lab-Stateless-Stateful-Firewalls-Load-Balancing Firewall-Exploration-Lab-Stateless-Stateful-Firewalls-Load-Balancing Public

    Implemented and tested Linux iptables firewall rules including stateless filtering, stateful packet inspection, connection tracking, rate limiting, and load balancing using NAT and packet distribut…

  4. Metasploit-SMB-Exploitation-Lab Metasploit-SMB-Exploitation-Lab Public

    Full attack simulation using Metasploit: SMB exploitation, post-exploitation, and reverse shell payload delivery

  5. powershell-post-exploitation-lab powershell-post-exploitation-lab Public

    Hands-on PowerShell post-exploitation lab demonstrating file discovery, credential hunting, ping sweep, and port scanning in a simulated environment.

  6. AD-Attack-Lab-corp-local AD-Attack-Lab-corp-local Public

    Self-built Active Directory attack lab (corp.local) demonstrating enumeration, BloodHound-guided attack path analysis, Kerberoasting, offline password cracking, and WinRM-based privilege escalation…