CS @ Nirma University · Ahmedabad, India
Incoming MSc Computer Security · EPITA Paris '26
Building systems that are secure by design, not by accident.
I'm Tanish Patel — a Computer Science engineer with a singular trajectory: Cloud Security Architect. I'm drawn to the intersection of offensive security thinking and hardened cloud infrastructure — building systems resilient by design.
The last two years have been spent studying how real-world cloud environments fail — misconfigured IAM, exposed storage buckets, lateral movement through compromised workloads. That attacker's perspective shapes every architecture decision I make.
September 2026: departing for EPITA Paris, MSc Computer Security. Long-term destination: Cloud Security Architect at Amazon, Palantir, or Thales. The mission is clear.
Zero-trust AWS environments — IAM least-privilege, VPC segmentation, automated compliance guardrails. Threat modelling from the first line of Terraform.
Recon, enumeration, privilege escalation, post-exploitation in controlled lab environments. Applying attacker TTPs to harden real infrastructure.
Detection pipelines and alert logic surfacing anomalous behaviour across cloud workloads. Log correlation at scale using open-source SIEM tooling.
Security baked into deployment pipelines — SAST, secrets scanning, container image signing, OPA policy enforcement before code reaches production.
Intelligent security tooling using LLMs and RAG pipelines — automated vulnerability triage, AI-assisted cloud architecture analysis. Security meets the AI era.
Solid grounding in TCP/IP, TLS internals, PKI, and applied cryptography. Understanding protocol layers is non-negotiable for serious infrastructure security.
RAG-based AI system ingesting AWS architecture diagrams to automatically surface security misconfigurations, IAM over-permissioning, and compliance gaps. Qdrant vector search + Qwen3 embeddings + Streamlit. Live semester capstone.
Personal AWS lab simulating real-world attack scenarios — credential theft, S3 exfiltration, EC2 privilege escalation — instrumented with CloudTrail + ELK to detect and alert on each attack path. Documented as a personal threat intel playbook.
Fully hardened GitHub Actions pipeline with SAST integration, dependency auditing, Trivy container scanning, and OPA policy gates blocking non-compliant deployments. Zero secrets in code — all via AWS Secrets Manager.
Low-level packet capture and protocol dissection tool written in C using raw sockets. Dissects TCP, UDP, ICMP, DNS, and HTTP at the byte level — the kind of understanding that makes Wireshark feel redundant.
Multi-modal AI application on Gemini 2.0 Flash + Groq LLaMA 4 Scout pipeline with Streamlit frontend. Demonstrates practical LLM integration and real-world product delivery on free-tier architecture.
Consistent offensive security practice on TryHackMe and HackTheBox. Completed challenges covering web exploitation, Linux privesc, Active Directory attacks, and buffer overflows. Building the attacker mindset to architect real defences.
Kampala, Uganda — INTL_SCHOOLING
Completed schooling at one of Uganda's premier international institutions. Grew up across three continents — the global mindset that shapes how I think about systems, people, and threat landscapes.
Nirma University, Ahmedabad — ACTIVE
Final-semester student with self-directed focus on cloud infrastructure and security. Capstone: AI-powered AWS Security Copilot using RAG and LLM pipelines. Independently pursued offensive security alongside core curriculum.
EPITA Paris, France 🇫🇷 — INCOMING
18-month specialist programme — applied cryptography, network security, reverse engineering, cloud defence. Target post-graduation: Cloud Security Engineer at Amazon, Palantir, or Thales. Long-term destination: Cloud Security Architect.
INCOMING_2026Whether it's a security tool, an AI pipeline, or a cloud lab — I build things to understand them. Shipping real projects is the only education that compounds.
Music is the one domain where logic doesn't rule. Playing guitar resets the mind — essential maintenance for anyone who thinks in attack vectors all day.
Football, chess, MMA, swimming, badminton. Competitive sport sharpens the same things security does — pattern recognition, composure, and knowing when to strike.
I think in systems and long time horizons. Defense tech, cyber warfare geopolitics, and infrastructure economics — the macro context behind every line of security code.
Open to security research collaborations, internship opportunities, and conversations about cloud architecture. If you're building something serious — reach out.