Skip to content
View TharVid's full-sized avatar
πŸ†
Focusing
πŸ†
Focusing

Block or report TharVid

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
TharVid/README.md

Sunil Kumar

πŸ“ž +91-6376486690 Β Β |Β Β  πŸ“ Jaipur, Rajasthan, India Β Β |Β Β  🌐 tharvid.in
LinkedIn β€’ GitHub β€’ βœ‰οΈ [email protected]


πŸ‘‹ About Me

I'm a passionate Security Engineer with 4+ years of hands-on experience securing cloud environments and building scalable security programs. My expertise spans DevSecOps, Incident Response, Cloud Security (AWS, GCP, Azure), Security Automation, and Compliance Alignment.

Currently at Porch Group, I focus on securing CI/CD pipelines, implementing SIEM and SOAR solutions, automating vulnerability triage, and driving proactive threat detection across multi-cloud environments.


πŸ’Ό Experience

πŸ” Security Engineer β€” Porch Group (Remote)

Jun 2024 – Present

  • Built and managed a full-stack DevSecOps pipeline (SAST, DAST, IaC, Secrets, API fuzzing, Container scanning).
  • Automated vulnerability triage for 500+ repos across AWS/GCP/Azure with ASPM + Jira integration.
  • Implemented SIEM from scratch with 50+ sources, custom parsers, correlation rules, and SOAR playbooks.
  • Ensured PCI-DSS compliance through CIS Control implementation across all 18 domains.
  • Automated security workflows using Python, AWS Lambda, and GCP Functions.

πŸ›‘οΈ Security Engineer β€” ACKO General Insurance, Bengaluru

Aug 2021 – Jun 2024

  • Secured AWS workloads using GuardDuty, Config, CloudTrail, Macie, Inspector, and Security Hub.
  • Integrated DevSecOps into CI/CD: SAST, SCA, Secrets, IaC scanning, Container scanning, and DAST.
  • Managed EDR, CASB, MDM, and IAM enforcement (RBAC, SSO, Conditional Access).
  • Built custom security tooling (phishing platform, DNS blocker, risk assessment engines).
  • Ran microservice/API-focused penetration tests and led incident response efforts.

πŸ› οΈ Skills

Technologies: Cloud Security β€’ DevSecOps β€’ Security Automation β€’ SIEM/SOAR β€’ Pen Testing β€’ Incident Response β€’ Threat Detection
Tools: AWS β€’ GCP β€’ Azure β€’ Python β€’ Jenkins β€’ Docker β€’ Kubernetes β€’ Git β€’ OWASP ZAP β€’ Trivy β€’ Semgrep β€’ Checkov β€’ Gitleaks β€’ CrowdStrike β€’ Netskope β€’ Cloudflare β€’ Coralogix β€’ Chronicle β€’ Okta β€’ Azure AD
Frameworks: CIS Controls β€’ PCI-DSS β€’ ISO 27001


πŸš€ Projects

πŸ” DevSecOps Pipeline with Open-Source Tools

Built a full DevSecOps pipeline with Jenkins integrating Semgrep, Checkov, Trivy, Gitleaks, OWASP ZAP, and AWS ECR scanning. Alerts sent to Jira and DefectDojo.

🎣 Phishing Awareness Platform with Gophish

Developed a phishing simulation platform using Gophish on AWS EC2, integrated with Amazon SES. Used for internal security awareness campaigns.


πŸ“š Publications


πŸ“œ Certifications

  • πŸ›‘οΈ CompTIA Security+
  • ☁️ AWS Certified Security – Specialty
  • πŸ” Google Cloud: Professional Cloud Security Engineer
  • ☁️ AWS Certified Cloud Practitioner
  • πŸ›‘οΈ Microsoft 365: Security Administrator Associate

🌐 Languages

  • English
  • Hindi

Let’s connect and build secure things!

Popular repositories Loading

  1. Open-Source-Badge-Generator Open-Source-Badge-Generator Public

    Open Source Badge Generator

    JavaScript 6 22

  2. TharVid.github.io TharVid.github.io Public

    Amazing portfolio website using HTML, CSS, JS.

    HTML 4 4

  3. portfolio portfolio Public

    Portfolio Website

    HTML 3 8

  4. android-root android-root Public

    Root Android Without PC

    2

  5. hacktoberfest-2020 hacktoberfest-2020 Public

    Forked from tasnimzotder/hacktoberfest-2020

    Let's change the world together with Open-Source & tackle Climate-Change

    HTML 1

  6. devfest-india-2020 devfest-india-2020 Public

    Forked from nikiyasimpson/devfest-india-2020

    Vue 1