just a cybersecurity geek and a grad at nyu. i am currently an ambassador and contributor @wazuh; and a network audio engineer (@hsrn)
"Understand the break, then build the tooling that closes it."
I'm a cybersecurity engineer and researcher working across detection engineering, threat intelligence, GRC automation, and cloud/network security. I'm currently an MS Cybersecurity candidate at NYU Tandon (4.0 GPA), a Wazuh Community Ambassador, and previously spent two years as a Threat Research / GRC Engineer at Safe Security.
My work spans open-source detection engineering (Wazuh, Suricata, Snort, Zeek rulesets that ship upstream), vulnerability research (4 CVEs, 17+ disclosures), GRC automation that cut manual review time by 98%, and applied LLM security research published at Springer LNCS.
Full picture → projects, research, disclosures & certifications at anmol-vats-portfolio.vercel.app
| 4 CVEs assigned | 17+ vulnerabilities disclosed |
| RITSEC CTF 2026, Global Rank 14, US Rank 1 | 98% reduction in GRC ops time (5 weeks to 15 hrs) |
| 19 Wazuh integrations modernized | Published @ Springer LNCS METAVERSE 2026 |
- Community Ambassador & Contributor, Wazuh (Jun 2026, present)
- Threat Research / GRC Engineer, Safe Security (May 2023, Jul 2025)
- Course Assistant, Network Security, NYU Tandon (Prof. Damon McCoy)
- VP, Cybersecurity Club, NYU Tandon
- Member, OSIRIS Lab & High Speed Research Network (HSRN)
Languages
Detection engineering & SIEM/SOC
GRC & threat intelligence
Cloud & infrastructure
Web & ML tooling
Certifications · AWS Certified Solutions Architect - Associate · CompTIA Security+ · ISO 27001 · PEH · CNSP · MITRE ATT&CK Defender
Focus areas · detection engineering · threat intelligence · GRC & vendor risk automation · cloud & network security · AI/LLM security · vulnerability research
caddy-detection-rules · Wazuh · Suricata · Snort · Zeek 29 MITRE ATT&CK-mapped detection rules for the Caddy web server across four engines, merged upstream into Wazuh v4.14.6 and v5.0.0, validated at a 26/26 unit test pass rate.
snipe · Tree-sitter · FastAPI · VSCode API · Claude API Real-time SAST VSCode extension that flags insecure patterns and cross-file vulnerabilities on unsaved code in under 100ms, using AST analysis and LLM review.
Serverless Cloud Threat Detection & Alerting · AWS Lambda · CloudTrail · CloudWatch · SNS Serverless pipeline detecting CloudTrail tampering, unauthorized API calls, failed logins, and security group changes, with severity-classified Slack/email alerting.
i4cu - Deepfake Detection · TypeScript · Python · Cloudflare Workers Multimodal deepfake detection across image, video, and audio, tested on 300+ media files with 80% accuracy in initial benchmarking.
See all projects → anmol-vats-portfolio.vercel.app/recruiter/projects.html · All repos → github.com/NucleiAv?tab=repositories
Securing Metaverse Blockchain Infrastructure. LLM-Assisted Vulnerability Detection on Solana and Algorand Smart Contracts Springer LNCS, METAVERSE 2026 · DOI 10.1007/978-3-032-36773-0_3 216 experiments evaluating zero-shot, CoT, and RAG prompting strategies for automated smart contract vulnerability detection using GPT-4o, Claude 3.5 Sonnet, and Llama 3.3.
Vulnerability disclosures · CVE-2026-36045 (CVSS 8.8, picoclaw) · CVE-2026-36044 (CVSS 8.8, Pensar AI apex) · CVE-2026-31886 (CVSS 9.1, dagu) · CVE-2026-30851 (CVSS 8.1, Caddy), plus 13 additional reported vulnerabilities across open-source and enterprise bug bounty programs.
Open to full-time detection engineering, threat intelligence, GRC, cloud sec and network sec roles.
anmol-vats-portfolio.vercel.app · LinkedIn · anmol.vats.cyber@gmail.com



