{
  "header": {
    "name": "Swaraj Singh",
    "subtitle": [],
    "contact": {
      "email": "swarajsingh211@gmail.com",
      "links": [
        {
          "url": "tel:+919372434984",
          "label": "+91 93724 34984"
        },
        {
          "url": "https://dedsec-terminal.vercel.app/",
          "label": "Portfolio"
        },
        {
          "url": "https://github.com/dedsec-terminal",
          "label": "GitHub"
        },
        {
          "url": "https://www.linkedin.com/in/swarajsingh211in/",
          "label": "LinkedIn"
        }
      ]
    }
  },
  "sections": [
    {
      "kind": "experiences",
      "label": "Experience",
      "entries": [
        {
          "title": "SOC Analyst",
          "organization": "Knowledge Mine Info Media",
          "dateRange": "Jun-Aug 2026",
          "bullets": [
            "Conducted proactive threat hunts by correlating external OSINT indicators with internal firewall logs; investigated IAM anomalies and phishing campaigns and documented findings using MITRE ATT&CK for Tier 2 escalation.",
            "Supported enterprise GRC initiatives and NIST SP 800-53 compliance audits, prepared risk-management documentation, and ran automated VAPT scans to prioritize remediation.",
            "Executed malware tabletop simulations and incident-response playbooks for host isolation, helping formalize end-to-end security-event workflows."
          ]
        },
        {
          "title": "Product Development Intern",
          "organization": "SYNIRIS Technologies",
          "dateRange": "Jun-Aug 2025",
          "bullets": [
            "Developed centralized role-based authentication workflows, reducing administrative onboarding and configuration time by 35%.",
            "Led PASTA threat-modeling sessions that surfaced 12+ potential attack vectors early in design and reduced post-deployment application-security defects by 40%."
          ]
        },
        {
          "title": "Project Trainee Intern",
          "organization": "ARC SOLUTIONS",
          "dateRange": "Jun-Aug 2024",
          "summary": "Melbourne, Australia · Remote",
          "bullets": [
            "Built Sentinel-1 SAR data-processing workflows in Google Earth Engine for large-scale environmental mapping and produced technical implementation reports."
          ]
        }
      ]
    },
    {
      "kind": "projects",
      "label": "Projects",
      "entries": [
        {
          "title": "Faultplane",
          "metadata": "Python · Groq API · GitHub Actions · NVD 2.0 · CISA KEV",
          "link": {
            "url": "https://dedsec-terminal.github.io/Faultplane/",
            "label": "Live"
          },
          "bullets": [
            "Built an automated threat-intelligence platform that aggregates 10+ authoritative security sources, enriches vulnerabilities through NVD and CISA KEV, generates executive summaries, and publishes daily through GitHub Actions."
          ]
        },
        {
          "title": "LedgerCast",
          "metadata": "Python · ITGC / SOX · ISO 27001 · NIST CSF 2.0 · COBIT 2019",
          "link": {
            "url": "https://dedsec-terminal.github.io/LedgerCast/",
            "label": "Live"
          },
          "bullets": [
            "Developed a packaged CLI and client-side dashboard for testing access management, change management, backup and recovery, and segregation-of-duties controls, with findings management and framework crosswalking.",
            "Added client-side CSV re-testing and DOCX audit-report generation for repeatable control reviews."
          ]
        },
        {
          "title": "PolicyForge",
          "metadata": "Security Governance · ISO 27001 · NIST CSF 2.0 · DPDP Act 2023",
          "link": {
            "url": "https://dedsec-terminal.github.io/PolicyForge/",
            "label": "Live"
          },
          "bullets": [
            "Created a portfolio GRC programme for a fictional fintech with eight security policies, numbered safeguards, a control-traceability matrix, and exception and review-cadence registers mapped to major security and privacy frameworks.",
            "Defined evidence expectations and review cycles while keeping the suite clearly illustrative."
          ]
        },
        {
          "title": "Agentic IaC Vulnerability Detection & Remediation",
          "metadata": "Python · Terraform · Docker · Checkov · LLM Workflows · Streamlit",
          "link": {
            "url": "https://github.com/dedsec-terminal/IaC-Vulnerability-Detection-Remediation",
            "label": "Project"
          },
          "bullets": [
            "Built an automated DevSecOps workflow that detects Infrastructure-as-Code security misconfigurations, generates remediated configurations, and validates proposed fixes with Checkov before presenting results.",
            "Supports Terraform and Dockerfile inputs with severity classification and original-versus-remediated comparison."
          ]
        }
      ]
    },
    {
      "kind": "skills",
      "label": "Skills",
      "bullets": [
        "**SOC, Detection & GRC:** Threat Hunting, Alert Triage, Incident Response, MITRE ATT&CK, Microsoft Sentinel, SentinelOne, Splunk, NIST SP 800-53, NIST CSF 2.0, ISO 27001/27701, ITGC / SOX, ServiceNow GRC / IRM",
        "**Security Engineering & Automation:** Python, Bash, PowerShell, Terraform, Docker, Checkov, GitHub Actions, IAM / RBAC, PASTA Threat Modeling, VAPT, OSINT, CVE Analysis, NVD 2.0, CISA KEV"
      ]
    },
    {
      "kind": "education",
      "label": "Education & Credentials",
      "entries": [
        {
          "title": "B.Tech in Computer Science & IT - Cyber Security",
          "dateRange": "2023-2027",
          "summary": "Symbiosis Skills and Professional University"
        },
        {
          "title": "CREST CTF - Top 10 · CSCSO · Cisco Ethical Hacker"
        },
        {
          "title": "ISO 27701 Lead Auditor · SC-200 expected Nov 2026"
        }
      ]
    }
  ]
}