init renderer ............. ok

load security profile ...... ok

assemble portfolio ......... ok

systems nominal

Available for security engineering

Hi, I'm Rohit_

Rohit Sah

NASHVILLE, TENNESSEE · UNITED STATES

I build and test security systems that make attacks harder, detections sharper, and engineering teams safer.

Scroll to explore

CYBERSECURITY · OFFENSIVE SECURITY · DETECTION ENGINEERING · INCIDENT RESPONSE · CYBERSECURITY · OFFENSIVE SECURITY · DETECTION ENGINEERING · INCIDENT RESPONSE ·

Break it, understand it, secure it.

I am a cybersecurity-focused computer science student who works across offensive security, detection engineering, and incident response.

My approach starts with the attacker: map the surface, validate the weakness, and translate the result into controls that engineering teams can actually maintain. I have monitored real alerts, tuned detections, tested web applications, and built secure development practices for student teams.

At Tennessee State University, I lead Google Developers Group and help other students grow as a peer tutor. I recently completed a Security Engineering internship at Amazon.

See my experience
1,200+

Alerts investigated

40%

Misconfiguration reduction

Top 1%

TryHackMe and NCL

3.9

GPA at TSU

Where I've been on call.

MAY 2026 → JUL 2026 · SAN DIEGO, CA
AM

Security Engineer Intern

Amazon

  • Conducted a hardware-security assessment of a proposed AWS EC2 feature flag affecting AMD processors used in cloud instances.
  • Analyzed six CPU performance-monitoring events for side-channel vulnerabilities that could allow cross-customer observation.
  • Applied Prime + Probe and Flush + Reload academic attack techniques to evaluate practical hardware-level risk.
  • Delivered a formal security recommendation to the Nitro Hypervisor team, including safe-deployment conditions.
AWS EC2Hardware SecuritySide-Channel AnalysisThreat Modeling
NOV 2025 → PRESENT · NASHVILLE, TN
GD

President

Google Developers Group, Tennessee State University

  • Lead secure-coding workshops covering OWASP Top 10, GitHub Advanced Security, and Snyk, improving vulnerability detection across student projects.
  • Executed branch protections, secret scanning, and CI security checks, reducing misconfigurations by 40%.
  • Conduct lightweight penetration testing using Burp Suite, Nmap, and ZAP to identify common web vulnerabilities.
  • Built Python-based automation templates to enforce secure development practices across GDG repositories.
OWASPGitHub SecuritySnykPython
MAY 2025 → AUG 2025 · BRENTWOOD, TN
IX

IT Security Intern

IVX Healthcare

  • Monitored, triaged, and investigated 1,200+ endpoint, network, and SaaS security alerts.
  • Built, tuned, and validated detections in SentinelOne, Zscaler, Snort, and Splunk.
  • Correlated IOCs during incident response and recommended containment and remediation actions.
  • Identified endpoint, identity, and cloud control gaps to strengthen zero-trust enforcement.
SplunkSentinelOneSnortZscaler
FEB 2024 → JUN 2024 · WAYNE, NJ
WP

Cybersecurity Research Assistant

William Paterson University

  • Researched AI-driven attacks and defenses, with focus on offensive tooling and mitigation strategy.
  • Evaluated attacker techniques and translated findings into practical recommendations for stronger detection and resilience.
Threat ModelingAI SecurityResearch
2024 → PRESENT · NASHVILLE, TN
TS

Diversity & Inclusion Member

Student Government Association, Tennessee State University

  • Contribute to Diversity & Inclusion initiatives supporting the TSU student community.
  • Represent Tennessee State University through technical leadership, cybersecurity competition, and professional-development activities.
LeadershipCommunityStudent Advocacy

Where I study.

2022 → DEC 2026 · NASHVILLE, TN
TS

Tennessee State University

B.S. Computer Science · Cybersecurity Concentration

Relevant coursework: Operating Systems, Cryptography & Network Security, Data Structures & Algorithms, and Assembly Language.

3.9 / 4.0 GPA
CybersecurityComputer Science2026

The security stack I reach for.

Languages

07
PythonBashCC++JavaSQLHTML/CSS

Security Operations & Detection

08
SplunkSnortSentinelOneIDS/IPSEDR/XDRWiresharkMISPZscaler

Offensive & AppSec

04
NmapBurp SuiteMetasploitNessus

Frameworks & Concepts

04
NISTZero TrustMITRE ATT&CKOWASP Top 10

Things I've built.

01 / 03

Network Intrusion Detection System Dashboard

A real-time security telemetry dashboard for inspecting network traffic, protocol usage, suspicious activity, and timestamped threat indicators.

Tailwind CSSJavaScriptTelemetry
View on GitHub
02 / 03

Incident Response Simulation

A hands-on incident response workflow using log analysis, IOC correlation, threat intelligence enrichment, and post-incident reviews to improve detection readiness.

WiresharkSnortSplunkMISP
03 / 03

Compromised Password Detection Tool

A privacy-conscious security automation tool that uses Have I Been Pwned's k-anonymity API to flag breached passwords without exposing plaintext data.

Pythonk-AnonymitySecurity Automation
View on GitHub

Credentials and recognition.

Certifications

Security foundations, validated.

eJPT (2025) · ISC2 Certified in Cybersecurity (2024) · Cisco Ethical Hacker · Google Cybersecurity Professional Certificate · Microsoft SC-900 · Certified AppSec Practitioner (CPEN)

Publication

AI-driven Attacks and Defenses in Cybersecurity

Published at ICCSS 2024. A review of AI exploitation techniques and practical defense strategies.

Recognition

Compete, learn, lead.

Top 1% globally in TryHackMe and National Cyber League · Ancestry History Makers Scholarship recipient (2024) · President's List (2022–2024) · AfroTech 2024 participant

Let's build systems that hold up.