Available for security opportunities

Hello, I’m

Sugam
Dangal.

$ SOC & Cyber Threat Intelligence Analyst

I detect threats, investigate incidents, and turn complex security signals into decisive action. My work spans security operations, threat intelligence, penetration testing, and hands-on cybersecurity education.

SUBJECT_01IDENTITY VERIFIED
Sugam Dangal in professional attire
0Years across security
0SIEM & security platforms
0Professional certifications
0Core security disciplines

01 / Profile

Security is not a product.
It’s a continuous practice.

I’m a passionate, detail-oriented cybersecurity professional with hands-on experience in vulnerability assessment, penetration testing, and security operations.

Currently working in a Security Operations Center, I combine automated and manual testing methods to identify security issues, investigate threats, and provide clear, actionable remediation. My foundation in security principles is reinforced by professional certifications and applied work across real environments.

I’m driven by curiosity, thoughtful collaboration, and a simple goal: help teams understand risk clearly and respond effectively.

Let’s solve a security challenge
01

Detect early

Find the signal in the noise through disciplined monitoring and threat-aware analysis.

02

Investigate deeply

Trace indicators to root causes and translate technical evidence into clear findings.

03

Respond decisively

Coordinate timely action, reduce impact, and turn every incident into stronger defenses.

02 / Field log

Professional
experience.

From frontline monitoring to offensive research and mentorship—building security through multiple lenses.

2026.05Present

Skillshikshya · Kathmandu, Nepal

Cybersecurity Mentor

Designing and delivering practical cybersecurity education—from fundamentals and offensive security to cloud, forensics, and governance.

View curriculum & impact +
  • Designed and delivered curriculum on cybersecurity fundamentals, the threat landscape, and attack vectors.
  • Led practical sessions in network security, firewall management, VPNs, IDS/IPS, and network monitoring.
  • Conducted hands-on ethical hacking, penetration testing, and vulnerability assessment labs using industry-standard tools.
  • Taught Kali Linux, Windows and Linux security tooling including Nmap, Wireshark, Metasploit, and Burp Suite.
  • Led web application security labs covering OWASP Top 10, SQL injection, XSS, and secure coding.
  • Delivered instruction on cryptography, data encryption, SSL/TLS, and secure communication.
  • Conducted digital forensics and incident response labs covering evidence collection, data recovery, and case studies.
  • Taught AWS and Azure cloud security, IAM, Principle of Least Privilege, and Zero Trust Architecture.
  • Delivered content on social engineering, phishing, security awareness, and human-centric attack mitigation.
  • Taught governance, risk, and compliance using ISO/IEC 27001, NIST CSF, and GDPR.
  • Mentored students in portfolio building, CV preparation, interviews, and cybersecurity career planning.
2024.012025.06

Intigriti · Independent research

Security Researcher

Assessed web applications, APIs, and networks; validated impact; and delivered proof-driven remediation guidance.

View responsibilities +
  • Conducted independent vulnerability assessments across web applications, APIs, and networks.
  • Exploited identified vulnerabilities, including OWASP Top 10 issues, to demonstrate potential impact.
  • Collaborated with development teams through detailed reports, proof-of-concepts, and remediation recommendations.
  • Used Burp Suite, OWASP ZAP, Wireshark, custom scripts, and diverse manual techniques.
  • Continuously studied emerging vulnerability trends, attack vectors, and security best practices.
2022.092023.01

Vairav Technologies · Kathmandu, Nepal

Security Operations Center Analyst Intern

Built a practical foundation in SIEM deployment, alert investigation, incident response, and threat intelligence.

View responsibilities +
  • Installed and configured Wazuh SIEM for event log monitoring.
  • Installed and configured the ELK stack for log analytics and security information and event management.
  • Monitored and analyzed alerts and incidents to identify potential threats and vulnerabilities.
  • Assisted with investigation and response for malware infections, phishing attempts, and unauthorized access.
  • Participated in threat intelligence gathering and analysis to track the latest cyber threats.
2022.10Contract

Madan Bhandari Memorial College · Kathmandu, Nepal

IT Officer

Strengthened day-to-day technology operations with secure access, system hardening, and proactive network support.

View responsibilities +
  • Managed and updated hardware and software systems for performance and compatibility.
  • Troubleshot LAN issues, identified root causes, and recommended effective remediation.
  • Implemented access controls to protect network and system resources.
  • Performed system hardening to mitigate vulnerabilities and improve overall security.
  • Monitored network performance and security, taking proactive preventive action.

03 / Capability matrix

Technical
expertise.

Defense-minded, adversary-aware, and fluent across the security lifecycle.

01

Security Monitoring

Monitoring and detection across endpoints, identity, networks, and critical services.

  • Firewalls & WAF
  • Active Directory
  • Web & database servers
  • Email servers
  • CrowdStrike
02

Threat Hunting & CTI

Proactive research and intelligence that connects external threats with internal risk.

  • IOC investigation
  • Exposed credentials
  • Dark web & forum monitoring
  • MISP intelligence feeds
  • Security advisories
03

Application Security

Manual and automated assessment focused on demonstrable risk and practical remediation.

  • Web application assessment
  • OWASP Top 10
  • API security testing
  • Proof-of-concept reporting
  • Remediation guidance
04

Incident Response

Evidence-led triage and coordinated response designed to reduce impact and recurrence.

  • Incident investigation
  • Root cause analysis
  • Alert triage
  • Response coordination
  • Reporting & recommendations
05

Network Security

Assessment and traffic analysis across enterprise networks and security controls.

  • Security assessment
  • Traffic analysis
  • IDS / IPS
  • VPNs & firewalls
  • Hardening & access control
06

Security Education

Practical instruction that connects principles, tools, frameworks, and career readiness.

  • Cloud & Zero Trust
  • Digital forensics
  • ISO 27001 & NIST CSF
  • Cryptography & SSL/TLS
  • Security awareness

Operational toolkit

Platforms & tools

Microsoft SentinelMicrosoft DefenderIBM QRadarLogpointGoogle Cloud SecurityWazuhELK StackVairav CTMSMISPBurp SuiteOWASP ZAPNmapWiresharkMetasploitKali LinuxAWSMicrosoft Azure

04 / Verified foundation

Education &
credentials.

Academic depth and industry certifications supporting an applied security practice.

Education

2024 — 2026

MSc IT in Cybersecurity

London Metropolitan University

Islington College · Kathmandu, Nepal
2021 — 2023

BSc (Hons) Networking & IT Security

London Metropolitan University

Islington College · Kathmandu, Nepal
2018 — 2020

10+2, Computer Science

United Academy

Lalitpur, Nepal

Certifications

eJPTv2

Junior Penetration Tester

Network and web application penetration testing

01
ISC2

Certified in Cybersecurity

Cybersecurity fundamentals and best practices

02
ISO

ISO/IEC 27001:2022 Lead Auditor

Mastermind

03
CISCO

CyberOps Associate

Security operations

04
AWS

AWS Academy Graduate

Cloud computing and security

05

Recognition

AAA Scholarship

Academics, Attendance & Attitude Scholarship · Islington College, 2024

3rd Year ScholarshipBSc (Hons) Computer Networking & IT Security

05 / Establish a secure connection

Let’s build something
more secure.

Whether you’re strengthening a security program, responding to evolving threats, or looking for a cybersecurity collaborator—I’d be glad to hear from you.

sugamdangal32@gmail.com

Professional references are available upon request.