Skip to content
View mabdullahkhan-sec's full-sized avatar

Block or report mabdullahkhan-sec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mabdullahkhan-sec/README.md

Muhammad Abdullah Khan

MS Cyber Security · SOC Analyst · GRC & Compliance


About Me

I am an MS Cyber Security candidate at PNEC NUST (GPA: 3.55) with a background in SOC operations, security research, and GRC compliance frameworks. My internship at ITSOLERA gave me hands-on experience operating a real SOC toolchain from SIEM alert triage and firewall integration to malware analysis and workflow automation.

I am actively building toward GRC and information security roles, with focused study on ISO 27001, NIST CSF 2.0, PCI DSS, and risk management. I approach security from both the technical and governance side.


Featured Projects

🔐 SOC Internship Lab Booklet

View Repository →

A compiled documentation booklet of all SOC lab work completed during my internship at ITSOLERA. Covers end-to-end deployment and configuration of a SOC toolchain including real-world use cases and findings.

Tools covered: Wazuh SIEM · pfSense Firewall · ClamAV · Squid Proxy · REMnux · Ghidra · n8n
Topics: File Integrity Monitoring · Alert Triage Automation · Malware Analysis · MITRE ATT&CK Mapping · Network Traffic Visibility


☁️ Data Privacy & Compliance in Cloud Systems

View Repository →

An IEEE-formatted research paper written as part of my MS Cloud Computing and Cloud Security coursework. Proposes a multi-layer encoding framework for data privacy in cloud environments and includes comparative analysis of existing approaches and compliance-as-code coverage.

Frameworks referenced: GDPR · ISO 27001 · NIST · Cloud compliance standards
Topics: Data privacy · Encryption · Compliance automation · Cloud security architecture


📡 IoT Edge Anomaly Detection

View Repository →

A research project evaluating two unsupervised machine learning models for anomaly detection in resource-constrained IoT edge environments, using the CIC IoT – DIAD 2024 Dataset.

Models compared: Isolation Forest vs Robust Random Cut Forest (RRCF)
Topics: Anomaly detection · F1-score stability · Edge computing · IoT security · Machine learning


🎓 Bachelor's Thesis - Computer Science

View Repository →

Thesis chapters from my BS Computer Science degree at Iqra University (2020–2024).


Technical Skills

Security & SOC      │ Log Analysis · Incident Response · SIEM (Wazuh) · MITRE ATT&CK
                    │ Malware Analysis (REMnux · Ghidra) · Threat Detection
                    │
GRC & Compliance    │ ISO 27001 · PCI DSS · NIST CSF 2.0 · Risk Assessment · Auditing
                    │
Networking          │ TCP/IP · DNS · Ports & Protocols · pfSense · Wireshark · VPN
                    │
Cloud Security      │ AWS Fundamentals · Azure Fundamentals · Cloud Architecture
                    │
Systems             │ Windows Administration · Linux · Active Directory · Access Control
                    │
Programming         │ Python · Bash · SQL · C#

Certifications

  • ISC2 CC - Certified in Cybersecurity
  • TryHackMe - Pre Security Path

Education

Degree Institution Year Grade
MS Cyber Security PNEC NUST 2025 – Present GPA: 3.55
BS Computer Science Iqra University 2020 – 2024 CGPA: 3.24

Experience

SOC Analyst Intern - ITSOLERA (Remote · Jan 2026 – Apr 2026)

  • Conducted malware analysis using REMnux and Ghidra, mapping findings to MITRE ATT&CK
  • Implemented File Integrity Monitoring (FIM) in Wazuh for real-time unauthorized change alerts
  • Integrated pfSense firewall with Wazuh SIEM for centralized network traffic visibility
  • Automated SOC alert triage and real-time classification using n8n workflows
  • Deployed ClamAV antivirus with Squid Proxy on pfSense for malware download blocking

Open to GRC Analyst, Information Security Analyst, and SOC Analyst opportunities.
khanmabdullah2k@gmail.com · Karachi, Pakistan

Pinned Loading

  1. bachelor-thesis bachelor-thesis Public

  2. data-privacy-cloud-compliance data-privacy-cloud-compliance Public

  3. iot-edge-anomaly-detection iot-edge-anomaly-detection Public

  4. soc-internship-lab-booklet soc-internship-lab-booklet Public