$ whoami

Chintan Chauhan

Network security analyst with hands-on experience in network monitoring, vulnerability assessment, and IT infrastructure support, including endpoint security solutions. Skilled at troubleshooting across Windows Server, Microsoft 365, and network systems, with a strong understanding of cloud environments such as Microsoft Azure and AWS. Recently completed a Master's degree in Information Systems at Pace University, with a concentration in Security and Information Assurance, focusing on data encryption, network defense, and modern cyber threats. Dedicated to strengthening security protocols, performing risk assessments, and improving operational resilience in fast-paced, security-focused environments.

02skills & certifications

SIEM & Threat Detection

SIEM MonitoringThreat DetectionMalware AnalysisIncident Response

Security Tools

NmapWiresharkVulnerability AssessmentPenetration TestingBitLockerOpenSSLMFA

Network Infrastructure

Cisco CatalystSonicWallFortinet FortiGateUbiquiti EdgeRouter / UniFiNETGEAR ProSAFEVPN & RBAC

Cloud & Platforms

Microsoft AzureAWSOffice 365 / Exchange AdminWindows ServerSQL ServerLinux

Endpoint Management

SentinelOneNinjaOneComodoMicrosoft Endpoint Configuration ManagerWSUSActive DirectoryFileVault

Compliance & Frameworks

CIA TriadGDPRHIPAACCPA

Certifications

  • Information Privacy and Security (IPS)
  • Cryptography Basics
  • Program Management for IT Professionals
  • IT Help Desk for Beginners

03experience

Jr. Network Security Analyst · IT Tec Solutions Inc.

July 2025 — Present

New York, United States

  • Perform real-time monitoring and analysis of SIEM dashboards, overseeing the security posture of 1,600+ endpoints (Windows, macOS, Windows Server, SQL Server, EDI machines) and executing advanced threat detection, malware analysis, and incident response.
  • Troubleshoot and resolve escalated Tier 1/2 network events, supporting 150+ clients across 300+ physical and virtual servers and 48 EDI units, ensuring SLA compliance and infrastructure resilience.
  • Administer VPN solutions (licensing, tunnel configuration, RBAC) for a distributed remote workforce; manage cloud-based Office 365 Exchange administration and license provisioning for 5,000+ global users.
  • Architect and deploy network topologies, including secure segmentation, virtual/terminal server environments, and remote access configurations aligned to compliance mandates.
  • Lead server implementations with UPS redundancy and automated backup strategies, generating audit-ready reports and coordinating with Azure/AWS cloud partners for data retention and business continuity.

Jr. Network Security Specialist · IT Tec Solutions Inc.

July 2024 — May 2025

New York City Metropolitan Area

  • Installed and configured workstation patching solutions through Microsoft Endpoint Configuration Manager to maintain system and security patch compliance.
  • Monitored and maintained endpoint security across Comodo, NinjaOne, and SentinelOne platforms for data protection and secure device network access.
  • Managed network infrastructure for 80+ servers and firewalls across multiple locations using Windows Server, SQL Server, Linux, SonicWall, Cisco, Ubiquiti EdgeRouter, Fortinet FortiGate, Ubiquiti UniFi AP, Cisco Catalyst, and NETGEAR ProSAFE.
  • Performed penetration tests and vulnerability assessments for clients, identifying and eliminating security vulnerabilities through system hardening using Nmap and Wireshark.
  • Deployed security solutions based on Windows BitLocker, OpenSSL, VPN, and MFA to ensure data protection across all network infrastructure.
  • Developed group policies for patching 1,600+ user machines via Microsoft WSUS, Group Policy Enforcement, Active Directory, and Network Access Control, aligned to CIA Triad, GDPR, HIPAA, and CCPA standards.

Information Technology · Air India SATS Airport Services Private Limited (AISATS)

February 2023 — August 2023

Mumbai, Maharashtra, India

  • Configured and maintained network computer systems, including hardware, software, and IP phone setups.
  • Provided technical support to end users and collaborated with the technology team to resolve issues.
  • Troubleshot printers and networking devices, applied driver and firewall firmware updates, and performed preventive laptop maintenance.
  • Monitored bandwidth usage across pan-India locations, producing weekly usage reports for the regional office.
  • Managed IT asset inventory and coordinated with vendors on procurement and issue resolution.

Education

Pace University — Seidenberg School of Computer Science and Information Systems

Master's Degree, Information Systems (Security & Information Assurance)

September 2023 — April 2025

Vidyalankar Institute of Technology

Bachelor of Engineering, Electronics and Telecommunication Engineering

July 2018 — May 2021

Vidyalankar Polytechnic

Diploma in Engineering, Electronics and Telecommunication Engineering

June 2015 — April 2018

04projects & labs

A mix of real builds and home-lab security projects.

Inbound Firewall Manager (macOS)

repo →

Host-based inbound firewall manager for macOS built on Tauri (Rust core) with a static HTML/CSS/JS frontend. Manages macOS's native pf packet filter with rule-based inbound filtering, zone/profile presets (Strict/Standard/Permissive), IP/CIDR blocklists with native rate-limiting, optional GeoIP blocking, and traffic logging — desktop-scale, in the spirit of a SonicWall/FortiGate.

RustTaurimacOS pfSQLiteFirewall

Home SOC Lab — SIEM & Log Monitoring

Self-hosted security operations lab using Wazuh/ELK to centralize log collection from Windows, Linux, and network devices, with custom detection rules for brute-force and lateral-movement patterns.

SIEMWazuhLog AnalysisDetection Engineering

Segmented Home Network with VLANs & Firewall Rules

Designed a segmented network topology (IoT, trusted, guest, DMZ) using VLANs, inter-VLAN firewall policy, and a pfSense/Ubiquiti stack to reduce lateral attack surface.

Network SegmentationpfSenseVLANsUbiquiti

Automated Vulnerability Scan & Reporting Script

Python wrapper around Nmap for scheduled internal scans, diffing results between runs and generating a summarized risk report highlighting newly exposed services.

PythonNmapAutomationVulnerability Management

Endpoint Hardening Baseline

Documented and scripted a Windows/macOS hardening baseline covering BitLocker/FileVault enforcement, MFA, patch policy via WSUS/Group Policy, and CIS-benchmark-aligned configuration checks.

BitLockerFileVaultCIS BenchmarksGroup Policy

05contact

$ echo $STATUS

Open to new opportunities

Based in Jersey City, NJ. Reach out directly, or find me on the platforms below.