Back to Developers
Himanshu Parmar

Himanshu Parmar

Cyber Security Analyst

Mandsaur, Madhya Pradesh, India 7+ yrs exp 95 · Outstanding

About

CEH v13-certified cybersecurity professional with hands-on experience in vulnerability assessment, network security, log analysis, and incident response across web, API, mobile, cloud (AWS), and container environments. Skilled in security monitoring and threat detection using Wazuh (SIEM/XDR), vulnerability scanning with Nessus and OpenVAS, and network traffic analysis with Wireshark. Strong understanding of TCP/IP, DNS, HTTP/HTTPS, VPNs, firewalls, and IDS/IPS. Applies a structured methodology — footprinting through reporting — to identify, investigate, and document security threats including malware, phishing, and insider threats. Builds Python-based automation for security operations and AI/LLM-driven security analysis tools. Currently pursuing OSCP; 50+ HackTheBox machines, 200+ TryHackMe rooms, and full PortSwigger Web Security Academy completion.

Skills & Expertise (45)

Threat Detection Advanced
7.6/10
4
Years Exp
Incident Response Advanced
7.6/10
4
Years Exp
SIEM Monitoring Advanced
7.6/10
4
Years Exp
Vulnerability Assessment Advanced
7.6/10
4
Years Exp
Log Analysis Advanced
7.4/10
4
Years Exp
IDS Intermediate
7.0/10
4
Years Exp
Python Intermediate
7.0/10
4
Years Exp
IPS Intermediate
7.0/10
4
Years Exp
Endpoint Security Intermediate
7.0/10
4
Years Exp
WIRESHARK Intermediate
7.0/10
4
Years Exp
OWASP Top 10 Intermediate
7.0/10
4
Years Exp
Windows Security Administration Intermediate
7.0/10
4
Years Exp
Linux Security Administration Intermediate
7.0/10
4
Years Exp
Bash Intermediate
7.0/10
4
Years Exp
Burp Suite Intermediate
7.0/10
4
Years Exp
Nmap Intermediate
7.0/10
4
Years Exp
Metasploit Intermediate
7.0/10
4
Years Exp
VPN Intermediate
7.0/10
4
Years Exp
HTTPS Intermediate
7.0/10
4
Years Exp
HTTP Intermediate
7.0/10
4
Years Exp
DNS Intermediate
7.0/10
4
Years Exp
Firewalls Intermediate
7.0/10
4
Years Exp
Nessus Intermediate
7.0/10
4
Years Exp
Risk Assessment Intermediate
7.0/10
4
Years Exp
IP Intermediate
7.0/10
4
Years Exp
Remediation recommendations Intermediate
7.0/10
4
Years Exp
HTTP Request Smuggling Intermediate
6.8/10
4
Years Exp
OAuth 2.0 Intermediate
6.8/10
4
Years Exp
Php Intermediate
6.8/10
4
Years Exp
CSRF Intermediate
6.8/10
4
Years Exp
SQLI Intermediate
6.8/10
4
Years Exp
XSS Intermediate
6.8/10
4
Years Exp
SSRF Intermediate
6.8/10
4
Years Exp
XXE Intermediate
6.8/10
4
Years Exp
Kubernetes Security Intermediate
6.8/10
4
Years Exp
Docker Intermediate
6.8/10
4
Years Exp
AWS Pentesting Intermediate
6.8/10
4
Years Exp
API Security Intermediate
6.8/10
4
Years Exp
SCA Intermediate
6.8/10
4
Years Exp
DAST Intermediate
6.8/10
4
Years Exp
SAST Intermediate
6.8/10
4
Years Exp
OpenVAS Intermediate
6.8/10
4
Years Exp
Threat Modeling Intermediate
6.8/10
4
Years Exp
Prompt Injection Intermediate
6.0/10
4
Years Exp
TCP

Work Experience

Content Creator

PentestByHP

Jan 2025 - Present

Produce cybersecurity and threat-analysis tutorials, documenting technical findings clearly for a growing learner community — reinforcing strong documentation and communication skills.

Penetration Tester

Independent Labs & Projects

Jan 2022 - Present

Investigated and exploited 50+ HackTheBox machines and 200+ TryHackMe rooms, documenting findings and remediation steps consistent with incident-reporting practices. Applied structured CEH methodology (footprinting through reporting) and OSCP-style testing on Proving Grounds to identify vulnerabilities and assess risk. Performed vulnerability assessments and analyzed network, application, and system logs to detect exploitable weaknesses and potential threats. Conducted network security testing (TCP/IP, DNS, VPN) and Active Directory security assessments; investigated API vulnerabilities (IDOR/BOLA, JWT, SSRF). Built Python automation for reconnaissance, log analysis, and exploit chaining, reducing manual investigation time. Evaluated cloud-native and container security (Docker, Kubernetes, Vault) from a threat-detection and hardening perspective.

Web Security Researcher

PortSwigger Web Security Academy

Jan 2025 - Jan 2026

Completed all PortSwigger Web Security Academy labs, including Expert-level chained exploitation scenarios, sharpening log-analysis and threat-identification skills. Mastered detection and analysis of SQLi, XSS, SSRF, XXE, CSRF, OAuth 2.0 flaws, and HTTP Request Smuggling using Burp Suite Professional.

Education

Bachelor of Computer Applications (B.C.A) - Amity University Online

- · Afghanistan

Certified Ethical Hacker Training - 3.0 University, Mumbai

- 2025 · Afghanistan

Certifications

Certified Ethical Hacker (CEH v13)

EC-Council · 2025

Junior Penetration Tester & Web Fundamentals

TryHackMe · 2024

Interested in this developer?

Profile Score Breakdown

📷 Photo 10/10
📄 Resume 10/10
💼 Job Title 10/10
✍️ Bio 10/10
🛠️ Skills 20/20
🎓 Education 10/10
⏱️ Experience 15/15
💰 Rate 0/5
🏆 Certs 5/5
Verified 5/5
Total Score 95/100

Profile Overview

Member sinceJul 2026