Gurpreet Singh Ahluwalia

Cyber Security Engineer ยท Vancouver, BC, Canada

lululemon ยท TryHackMe Top 1% ยท MS Information Security

GitHub โ†— LinkedIn โ†—

// experience
Aug 2024 โ€“ now
Cyber Security Analyst
lululemon ยท Vancouver, BC
  • SIEM operations using Splunk, IBM QRadar, and Azure Sentinel โ€” monitoring, alert triage, and incident response
  • Real-time threat detection with AWS GuardDuty and Microsoft Defender; cloud security posture management
  • SAST/DAST vulnerability triage and remediation guidance for development teams across product lifecycle
  • Security tooling development in Python โ€” automated scanners, parsers, SARIF report generators, LLM FP filtering
  • Log analysis and anomaly detection using rule-based engines mapped to MITRE ATT&CK and local Ollama models
  • IAM/PAM administration โ€” Okta, Active Directory, AWS IAM; privilege access reviews and entitlement management
  • Penetration testing of network infrastructure, web applications, and APIs using Nmap, Metasploit, Burp Suite, Wireshark
  • Threat modelling, OWASP Top 10 review, and data security governance (DLP, classification, Microsoft Purview)
// education
2019 โ€“ 2020
Master of Science โ€” Information Networking and Computer Security
New York Institute of Technology (NYIT)
  • Cyber Threat Intelligence, network security architecture, applied cryptography
2014 โ€“ 2018
Bachelor of Technology โ€” Computer Science
Chandigarh Engineering College, Landran
// projects
2026
  • CWE-based cross-scanner deduplication (Semgrep + Bandit + OWASP ZAP)
  • Risk scoring 0โ€“10; LLM false-positive filter via on-prem Ollama hermes3:70b
  • SARIF 2.1.0 export with suppressions block for GitHub Code Scanning
2026
  • STRIDE rule engine across 6 threat categories โ€” component-aware rules for web apps, APIs, databases, caches, auth services
  • MITRE ATT&CK + OWASP 2021 + NIST 800-53 mapping per threat; auto-flags GDPR, PCI-DSS, SOC2, HIPAA violations
  • Multi-input: YAML descriptor, OpenAPI spec, Dockerfile, docker-compose, CLI wizard
  • Executive HTML report with Chart.js visualisations; on-prem LLM narratives via Ollama โ€” no data egress
2026
  • 7 detection rules mapped to MITRE ATT&CK (T1110, T1548, T1136, T1078)
  • Confidence scoring, AbuseIPDB enrichment, email alerts, journalctl support
  • Local LLM threat narrative via Ollama โ€” no data leaves the network
2026
  • Autonomous pipeline: AFL++ coverage-guided fuzzing โ†’ ASan/GDB crash triage โ†’ LLM root cause analysis โ†’ unified diff patch โ†’ recompile + validate
  • Inspired by DARPA AIxCC; correctly identifies CWE-120/122 (buffer overflow) and CWE-134 (format string) with 100% patch verification rate
  • Pluggable LLM backend: Ollama (on-prem), Anthropic Claude, OpenAI, any OpenAI-compatible endpoint
  • Stack hash deduplication, binary-safe ASan output parsing, hunk-header auto-correction for LLM-generated diffs
2025โ€“now
  • HTB/THM machine writeups with custom exploit scripts; commit-on-root discipline
  • TryHackMe top 1% global ranking
// skills
siem / detectionSplunk, IBM QRadar, ELK Stack, Azure Sentinel, AWS GuardDuty, Fortisiem, ArcSight, MISP, STIX/TAXII
offensive / appsecBurp Suite, OWASP ZAP, Nmap, Metasploit, Wireshark, Shodan, Nessus, Hashcat, OpenSSL, GDB/pwndbg
cloud / iamAzure Defender, Azure WAF, Azure Security Center, AWS IAM, Microsoft Defender, Okta, Active Directory, SOAR, IDS/IPS, Cisco ASA
languagesPython 3.11+, Bash, C, SQL
frameworksMITRE ATT&CK, NIST, OWASP Top 10, CWE, SARIF 2.1.0, Zero Trust, NIST CSF
infra / devKali Linux, Proxmox, Docker, Tailscale, GitHub Actions, systemd, Ollama (local LLM), Semgrep, Bandit
// certifications โ€” earned
  • โœ…
    Practical Ethical HackingTCM Security ยท 2024
  • โœ…
    Practical Web HackingTCM Security ยท 2024
  • โœ…
    Practical API HackingTCM Security ยท 2024
  • โœ…
    Practical Bug BountyTCM Security ยท 2024
  • โœ…
    Practical Malware Analysis & TriageTCM Security ยท 2024
  • โœ…
    Practical Windows ForensicsTCM Security ยท 2024
  • โœ…
    Practical Phishing CampaignsTCM Security ยท 2024
  • โœ…
    Detection Engineering for BeginnersTCM Security ยท 2024
  • โœ…
    Open-Source Intelligence (OSINT) FundamentalsTCM Security ยท 2024
  • โœ…
    The Definitive GRC Analyst Master ClassTCM Security ยท 2024
// certifications โ€” roadmap
  • ๐ŸŽฏ
    CompTIA Security+2027
  • โš”๏ธ
    CEH โ€” Certified Ethical Hacker2027
  • ๐Ÿ’€
    OSCP โ€” Offensive Security2028