SYS // PORTFOLIO_v2.5 LOC // AHM-IND → PAR-FRA SEC // CLEARANCE_ACTIVE
INITIALIZING SECURITY ARCHITECT PROFILE...

TANISH PATEL

CLOUD SECURITY ARCHITECT · OFFENSIVE RESEARCHER
ZERO TRUST CLOUD DEFENSE THREAT INTEL DEVSECOPS

CS @ Nirma University · Ahmedabad, India
Incoming MSc Computer Security · EPITA Paris '26
Building systems that are secure by design, not by accident.

LAT 23.0225° N LNG 72.5714° E TZ UTC+5:30
scroll
Tanish Patel
B.Tech CSE 2022 → 2026

ABOUT
_ME

I'm Tanish Patel — a Computer Science engineer with a singular trajectory: Cloud Security Architect. I'm drawn to the intersection of offensive security thinking and hardened cloud infrastructure — building systems resilient by design.

The last two years have been spent studying how real-world cloud environments fail — misconfigured IAM, exposed storage buckets, lateral movement through compromised workloads. That attacker's perspective shapes every architecture decision I make.

September 2026: departing for EPITA Paris, MSc Computer Security. Long-term destination: Cloud Security Architect at Amazon, Palantir, or Thales. The mission is clear.

5+
SEC_PROJECTS
3
CLOUD_PLATF
2yr
RESEARCH

EXPERTISE
_DOMAINS

Cloud Security Architecture

Zero-trust AWS environments — IAM least-privilege, VPC segmentation, automated compliance guardrails. Threat modelling from the first line of Terraform.

AWS IAMVPCCloudTrailGuardDutyTerraform
Offensive Security

Recon, enumeration, privilege escalation, post-exploitation in controlled lab environments. Applying attacker TTPs to harden real infrastructure.

Kali LinuxMetasploitBurp SuiteNmapMITRE ATT&CK
SIEM & Threat Detection

Detection pipelines and alert logic surfacing anomalous behaviour across cloud workloads. Log correlation at scale using open-source SIEM tooling.

ELK StackSplunkCloudWatchYARA
DevSecOps & Secure CI/CD

Security baked into deployment pipelines — SAST, secrets scanning, container image signing, OPA policy enforcement before code reaches production.

DockerGitHub ActionsTrivyOPASonarQube
AI-Augmented Security

Intelligent security tooling using LLMs and RAG pipelines — automated vulnerability triage, AI-assisted cloud architecture analysis. Security meets the AI era.

RAGQdrantLangChainPythonGroq
🔐
Network & Cryptography

Solid grounding in TCP/IP, TLS internals, PKI, and applied cryptography. Understanding protocol layers is non-negotiable for serious infrastructure security.

TLS/SSLWiresharkPKIOpenSSLDNS Sec
PythonBashAWS LinuxDockerTerraform GitKaliWireshark KubernatesC / C++Java

WHAT I'VE
_BUILT

01
AWS Architecture Security Copilot

RAG-based AI system ingesting AWS architecture diagrams to automatically surface security misconfigurations, IAM over-permissioning, and compliance gaps. Qdrant vector search + Qwen3 embeddings + Streamlit. Live semester capstone.

02
Cloud Threat Detection Lab

Personal AWS lab simulating real-world attack scenarios — credential theft, S3 exfiltration, EC2 privilege escalation — instrumented with CloudTrail + ELK to detect and alert on each attack path. Documented as a personal threat intel playbook.

03
Hardened CI/CD Pipeline

Fully hardened GitHub Actions pipeline with SAST integration, dependency auditing, Trivy container scanning, and OPA policy gates blocking non-compliant deployments. Zero secrets in code — all via AWS Secrets Manager.

04
Network Packet Analyser — C

Low-level packet capture and protocol dissection tool written in C using raw sockets. Dissects TCP, UDP, ICMP, DNS, and HTTP at the byte level — the kind of understanding that makes Wireshark feel redundant.

05
AI-Powered Design Fusion App

Multi-modal AI application on Gemini 2.0 Flash + Groq LLaMA 4 Scout pipeline with Streamlit frontend. Demonstrates practical LLM integration and real-world product delivery on free-tier architecture.

06
CTF & Vulnerability Research

Consistent offensive security practice on TryHackMe and HackTheBox. Completed challenges covering web exploitation, Linux privesc, Active Directory attacks, and buffer overflows. Building the attacker mindset to architect real defences.

MISSION
_TIMELINE

// 2022

Delhi Public School International

Kampala, Uganda — INTL_SCHOOLING

Completed schooling at one of Uganda's premier international institutions. Grew up across three continents — the global mindset that shapes how I think about systems, people, and threat landscapes.

// 2022 → 2026

B.Tech — Computer Science

Nirma University, Ahmedabad — ACTIVE

Final-semester student with self-directed focus on cloud infrastructure and security. Capstone: AI-powered AWS Security Copilot using RAG and LLM pipelines. Independently pursued offensive security alongside core curriculum.

// Sep 2026 → 2028

MSc — Computer Security

EPITA Paris, France 🇫🇷 — INCOMING

18-month specialist programme — applied cryptography, network security, reverse engineering, cloud defence. Target post-graduation: Cloud Security Engineer at Amazon, Palantir, or Thales. Long-term destination: Cloud Security Architect.

INCOMING_2026

BEYOND THE
_TERMINAL

Builder

Whether it's a security tool, an AI pipeline, or a cloud lab — I build things to understand them. Shipping real projects is the only education that compounds.

Guitarist

Music is the one domain where logic doesn't rule. Playing guitar resets the mind — essential maintenance for anyone who thinks in attack vectors all day.

Sports

Football, chess, MMA, swimming, badminton. Competitive sport sharpens the same things security does — pattern recognition, composure, and knowing when to strike.

Strategist

I think in systems and long time horizons. Defense tech, cyber warfare geopolitics, and infrastructure economics — the macro context behind every line of security code.

ESTABLISH
_CONTACT

Open to security research collaborations, internship opportunities, and conversations about cloud architecture. If you're building something serious — reach out.

// LOCATION
Ahmedabad, India
→ Paris, Sep 2026
// FOCUS_AREA
Cloud Security Architecture
Offensive Security Research