ππ»Hey There, I'm Aqsa Khan
-
π Currently pursuing M.Sc in Information Security and Digital Forensics at the University of East London, United Kingdom
-
π¨βπ» Previously worked at Zscaler as an Associate Software Engineer with a focus on automation and secure software delivery
-
π‘οΈ Hands-on with SOC workflows, SIEM investigations, threat hunting, and packet analysis
-
π This GitHub serves as my portfolio showcasing my cybersecurity labs, incident response exercises, detection logic, and tools
-
π± Currently diving deeper into Splunk, MITRE ATT&CK, Wireshark, and OSINT automation
Iβm a cybersecurity analyst with a background in software engineering and a growing focus on blue team operations, digital forensics, and threat intelligence. Currently pursuing my M.Sc in Information Security and Digital Forensics at the University of East London (United Kingdom), Iβm building hands-on experience across SOC workflows, packet analysis, and real-time incident response.
My goal is to support security teams in detecting, triaging, and responding to threats faster using a mix of practical knowledge, MITRE ATT&CK alignment, and automation wherever possible.
| Skill | Associated Project/Lab |
|---|---|
| SIEM & Alert Triage (Splunk) | SOC Investigation Lab (TryHackMe) |
| Packet Analysis & Network Threat Detection | Wireshark + PCAP Exercises |
| Web App Exploitation & WAF Defense | Web Application Firewall Lab |
| MITRE ATT&CK Mapping & Threat Analysis | IOC Mapping Project |
| OSINT Automation & AI-Driven Alert Enrichment | OSINTIQ: SOC Intelligence Hub |
| Python Scripting for Log Filtering & Alert Handling | SOC Utility Scripts (in progress) |
| Host-Based Detection (Sysmon/ELK) | Windows Threat Hunting Lab (in progress) |
| Security Orchestration (SOAR) & Case Management | SOC Automation Toolkit (in progress) |
Ongoing Learning
- SOC Analyst Learning Path β LetsDefend (In Progress)
Certifications
- Certified in Cybersecurity (CC) β ISC2
- Google Cybersecurity Professional β Coursera
Courses
- Security Operations Center (SOC) β Coursera
- Introduction to Cybersecurity β TryHackMe
- Pre-Security β TryHackMe
Virtual Job Simulations
- Mastercard Cybersecurity β Forage
- Telstra Cybersecurity β Forage
-
Web Application Firewall Lab
Real-world simulation of SQL injection and HTTP flooding against DVWA with hardened SafeLine WAF defenses.
