Nishant Thakur

Nishant Thakur

Rennes, France

Nishant Thakur

Cybersecurity Engineer | Penetration Tester
Category : Cybersecurity
Cybersecurity Engineer | Penetration Tester | Linux Administrator

With 4+ years of hands-on experience in both offensive and defensive security, I help businesses identify vulnerabilities before attackers do and build resilient systems that stand the test of real-world threats.

On the offensive side, I specialize in network and web application penetration testing, vulnerability assessments, and VAPT reporting. I've uncovered 17 critical flaws in enterprise applications and documented 40+ vulnerabilities in SIEM components, always delivering clear, actionable remediation guidance.

On the defensive side, I've designed and tuned SOC detection rules using SIEM platforms (LogPoint, Wazuh) and SOAR workflows, reducing false positives by 30% and managing 2,500+ security alerts within SLA. I'm also experienced in threat hunting, incident response, OSINT, and threat intelligence integration.

For Linux and systems administration, I hold both RHCE and RHCSA certifications and have deployed, migrated, and hardened Linux environments for 100+ customers. I'm comfortable working with containerization, Ansible automation, VMware/vSphere, and writing Python and Bash scripts for forensic data collection, log enrichment, and IOC extraction.

Certifications: CAPT | RHCE | RHCSA | ISO/IEC 27001

Whether you need a thorough pentest, a hardened Linux environment, a tuned SIEM setup, or a custom security automation script or anything that has to do with linux administration and cybersecurity I bring both the technical depth and the communication skills to deliver results you can trust.

Working hours

  • Monday:08h00 To 18h00
  • Tuesday:08h00 To 18h00
  • Wednesday:08h00 To 18h00
  • Thursday:08h00 To 18h00
  • Friday:08h00 To 18h00
  • Saturday:Not available
  • Sunday:Not available
• Delivered cybersecurity training and mentorship, enabling students to obtain CompTIA Network+, Linux+, and Security+ certifications.
• Developed and maintained controlled exploitation labs using DVWA and OWASP Juice Shop to simulate OWASP Top 10 attack scenarios, strengthening students’ practical web application penetration testing skills.
• Mentored students in solving Capture The Flag (CTF) challenges to develop practical, real-world offensive security skills.
• Identified, documented, and resolved 40+ critical vulnerabilities in SIEM components using Jira workflow management, contributing to product stabilization and reduction of attack surface.
• Performed in-depth VAPT on the HR Management System and LogPoint Licensing application, uncovering 17 critical security flaws and delivering a detailed technical report with evidence, risk ratings, and actionable
remediation recommendations.
• Handled and prioritized 2,500+ security alerts and support tickets within SLAs, maintaining >90% client satisfaction and ensuring timely incident documentation and escalation.
• Designed, implemented, and tuned SOC detection and correlation rules using SIEM platforms (LogPoint, Wazuh), reducing false positives by 30% and enhancing real-time alert triage efficiency.
• Deployed and migrated Linux, SIEM, SOAR, and EDR solutions for 100+ customers and applied security configurations and hardening measures to reduce exploitable attack vectors.
• Participated in Security Awareness initiatives by contributing to internal cybersecurity guidelines and assisting in the development of SOC process documentation and response procedures.
• Developed Python and Bash automation scripts for log enrichment, forensic data collection, and IOCs extraction from threat data, improving SOC analysis efficiency.
• Analyzed OSINT and CTI feeds to identify emerging threats and contributed to internal threat intelligence reports for inclusion in detection playbooks.
• Served as UEBA customer lead, handling server maintenance and seamless on-boarding for 30+ clients
• Improved security posture of 5 enterprise clients by conducting VAPT and OSINT-based reconnaissance to identify and assess adversary behaviors and potential threat campaigns.
• Educated clients on emerging threats through regular vulnerability newsletters, improving their security preparedness.
• Developed and shared detailed VAPT reports with risk analysis and remediation recommendations to clients.
Currently pursuing a Master’s in Cybersecurity at the University of South Brittany via the prestigious Erasmus Mundus program. I specialize in bridging the gap between advanced theoretical security and hands-on system resilience. My focus is on building unshakeable Linux environments from secure boot protocols to automated hardening.

Whether it's auditing network security, implementing secure programming practices, or using Bash to automate complex administration tasks, I deliver high-standard, production-ready security solutions.
  • CAPT 23/02/2026
  • RHCE 10/10/2023
  • RHCSA 30/08/2023
  • 🇬🇧 English
0.0 (0)
0
0
0
0
0
⚠️
Please sign in as a customer to give your feedback