main options → prefer the terminal? techie mode →

operator // status: seeking full-time security & GRC roles

ANMOL VATS

Cybersecurity engineer and researcher spanning threat intelligence, detection engineering, GRC automation, cloud security and network security. I've published 4 CVEs across production tools, cut a company's manual access-review process by 98%, and I'm currently an MS Cybersecurity candidate at NYU Tandon (4.0 GPA).

01 STATUS

the short version

4
CVEs ASSIGNED
17
VULNS DISCLOSED
39
CERTIFICATES
27
CTFS & HACKATHONS
98%
REDUCTION IN GRC OPS TIME
19
WAZUH INTEGRATIONS MODERNIZED
02 PROJECTS

what I've built

A sample of security tooling. Full list, tech stacks, and links on the projects page.

01

caddy-detection-rules

Wazuh · Suricata · Snort · Zeek

Production-ready XDR/SIEM ruleset for the Caddy web server: 29 MITRE ATT&CK-mapped detection rules across three engines, validated at a 26/26 pass rate with zero false negatives.

02

Serverless Cloud Threat Detection

AWS Lambda · CloudTrail · CloudWatch · SNS

Serverless AWS monitoring pipeline detecting audit tampering, unauthorized API calls, failed logins, and security-group changes, with severity-classified Slack alerting.

03

snipe

Tree-sitter · FastAPI · VSCode API · Claude API

Real-time AI-augmented static analysis engine: a VSCode extension that flags insecure patterns and cross-file bugs on unsaved code, ahead of commit-time SAST tools.

03 RESEARCH & SECURITY

the paper trail and the disclosures

Research & Publications

LLM-assisted smart contract vulnerability detection (published, Springer LNCS METAVERSE 2026), and a privacy-preserving VANET authentication scheme I assisted on the technical side.

Vulnerability Disclosures

4 CVEs and 13 additional reported vulnerabilities across open-source projects (Caddy, dagu, picoclaw, Trail of Bits tooling) and enterprise/government bug bounty programs.

Achievements

27 CTF and hackathon results, conference talks, positions of responsibility, and letters of recommendation.

Certificates

39 verified certificates across security skills, competitions, and work experience, each independently verifiable.

04 CONTACT

let's talk

root@grid:~$ ./open_channel.sh

Let's talk about an opportunity.

Open to full-time security engineering, GRC, threat intelligence, and detection engineering roles. Reach out directly, or see the full contact page.