Sovan Das

Cybersecurity Professional and Researcher

root@kali:~#

Sovan Das

About Me

I am Sovan Das, a motivated B.Sc. Digital Forensics graduate (CGPA 8.70) from Maulana Abul Kalam Azad University of Technology, with hands-on expertise in penetration testing, digital forensics, and SOC monitoring. My practical experience spans CTF challenges, real-world labs, and innovative personal projects, complemented by my current internship as a Penetration Tester at TCR Security, where I focus on offensive security, vulnerability hunting, and live web application testing.

I am deeply fascinated by the intricacies of systems—how they operate and, crucially, how they can be exploited. From tracing digital footprints in forensic investigations to solving complex technical puzzles, I thrive on the intellectual challenge of critical thinking and threat mitigation.

Equally passionate about Blue Teaming, I am actively building skills for SOC Analyst roles, including SIEM tools, threat hunting, log analysis, and incident response to safeguard digital environments effectively.

Beyond my professional pursuits, I founded and run Das InfoSec, a solo EduTech initiative dedicated to democratizing cybersecurity and AI knowledge for beginners. Through my YouTube channel (@DasInfoSec), masterclasses, and community tools like the AI-powered CyberSafe Toolkit, I share insights to empower others in this dynamic field.

I believe in the power of shared learning. Connect with me on LinkedIn, GitHub, or YouTube to explore my projects, walkthroughs, and collaborations.

Currently, I am seeking entry-level opportunities in cybersecurity (SOC, VAPT, or Analyst roles) where I can apply my skills, grow rapidly, and contribute to meaningful missions.

If you share interests in cybercrime, threat intelligence, AI, or technology, let's connect—I'm always eager to learn, build, and collaborate.

Education

Bachelor of Science in Digital Forensic

Maulana Abul Kalam Azad University of Technology, Kolkata

2021 to 2024

CGPA: 8.70/10 (82.65%)

Academic Highlights

  • Specialized in Digital Forensics and Cybercrime Investigation techniques
  • Completed research project on "Advanced Memory Forensics Techniques"
  • Participated in university-level cybersecurity competitions
  • Maintained consistent academic excellence throughout the program

Experience

Founder

Das InfoSec Kolkata (Hybrid)
Feb 2024 - Present
  • Created and managed cybersecurity content for YouTube, focusing on educational tutorials and awareness.
  • Provided cybersecurity consulting services and conducted VAPT assessments.
  • Delivered online cybersecurity training and conducted bug bounty hunting.
  • Performed digital forensics analysis and cybercrime investigations.
  • Organized webinars and seminars for cybersecurity awareness.
  • Offered technical support and guidance in cybersecurity matters.

Penetration Tester Intern

TCR Security Jaipur (Remote)
Oct 2024 - Present
  • Conducted VAPT on web applications and networks using tools like Burp Suite, Nmap, and Nikto.
  • Reported vulnerabilities like SQLi, RCE, XSS and submitted actionable remediation steps.
  • Practiced bug hunting, recon, and privilege escalation in lab environments.

Technical Skills

OSI & TCP/IP Models 90%
  • Layer functions and protocols
  • Protocol encapsulation
  • Data flow and addressing
Network Infrastructure 85%
  • Routing and switching
  • LAN/WLAN configuration
  • Network topologies
Network Security 88%
  • Firewall configuration
  • IDS/IPS implementation
  • Network monitoring
Protocols & Services 85%
  • HTTP/HTTPS, FTP, SSH
  • DNS, DHCP, SMTP
  • VPN and tunneling

Burp Suite
Industry-standard web vulnerability scanner and proxy
Metasploit
Exploitation framework for penetration testing
Nmap
Network discovery and security scanning
Wireshark
Network protocol analyzer and packet capture
OWASP ZAP
Open-source web app security scanner
SQLmap
SQL injection detection and exploitation
Nuclei
Fast vulnerability scanner with templates
ffuf
Modern fast web fuzzer
Gobuster
Directory and file enumeration
Nessus
Enterprise vulnerability scanner

FTK Imager
Disk imaging and analysis
Autopsy
Digital forensics platform
Volatility
Memory forensics framework
Magnet AXIOM
Digital evidence examination
Cellebrite
Mobile device forensics
EnCase
Computer forensics suite
Belkasoft X
Advanced digital forensics solution
X-Ways Forensics
Integrated computer forensics software
Oxygen Forensic Detective
Advanced mobile and cloud forensics platform

CrowdStrike Falcon Cloud Security
Cloud-native security platform with real-time threat detection
AWS Security Hub
Centralized security and compliance management for AWS
Microsoft Defender for Cloud
Cloud security posture management and workload protection
Wiz CNAPP
Cloud-native application protection platform

Splunk Enterprise Security
Leading SIEM platform for advanced threat detection and response
Microsoft Sentinel
Cloud-native SIEM and SOAR solution
CrowdStrike Falcon
AI-powered endpoint protection and threat intelligence
IBM Security QRadar
Enterprise security intelligence and analytics platform
LogRhythm
Next-gen SIEM with advanced analytics and automation

PeStudio
PE file analysis tool
Ghidra
Software reverse engineering framework
Cuckoo Sandbox
Automated malware analysis
VirusTotal
Multi-engine malware analysis service
IDA Pro
Industry-standard disassembler and debugger
REMnux
Linux toolkit for reverse-engineering malware

Maltego
Data mining and link analysis
SpiderFoot
Automated OSINT gathering
Shodan
Internet-connected device search
Recon-ng
Web reconnaissance framework
theHarvester
Email and subdomain gatherer
FOCA
Metadata analyzer and document finder
Google Dorking
Advanced search techniques for information gathering
Intelligence X
Search engine and data archive for OSINT
OSINT Framework
Comprehensive collection of OSINT tools and resources

Python
Automation and security tool development
Bash
Shell scripting and system automation
PowerShell
Windows automation and administration
JavaScript
Web security testing and automation

Soft Skills

Attention to Detail

Thoroughly analyze systems to identify vulnerabilities and anomalies.

Critical Thinking

Evaluate complex security situations to determine effective solutions.

Communication Skills

Translate technical concepts into clear information for diverse audiences.

Teamwork

Work effectively with cross-functional teams on security solutions.

Problem Solving

Approach complex security issues systematically and effectively.

Time Management

Prioritize multiple security tasks and manage deadlines effectively.

Projects

CyberSafe Toolkit

  • An AI-powered cybersecurity toolkit built to help users analyze threats, scan files & URLs, check vulnerabilities, extract metadata, and many more — all in one place.
  • Developed using Firebase, VirusTotal API, and AI models to provide practical tools like phishing analyzers, port scanners, encryption utilities, and password checkers.
  • Built for everyday users, students, and ethical hackers to boost digital safety — for free.
AI Firebase VirusTotal API Cybersecurity Web Development

SovanDrive

  • A personal video streaming platform powered by Google Drive API and low-code tech — built to organize and stream HD movies/series in a clean, responsive UI.
  • Ideal for personal use, private sharing, and experimenting with JavaScript, cloud hosting, and media UX.
JavaScript Google Drive API Video Streaming Cloud Hosting Responsive UI

TryHackMe Labs — Top 5% Global Rank

  • Ranked in the top 5% globally on TryHackMe with 100+ completed labs
  • Specialized in Digital Forensics, Web & Network Pentesting, SOC Monitoring, OSINT.
  • Hands-on with key modules: SOC Level 1, Splunk 101, Linux Forensics, Autopsy, Volatility, OWASP Top 10, Mr. Robot, Blue Team.
  • Produced detailed walkthrough reports: step-by-step commands, screenshots, PoCs, and remediation notes.
TryHackMe Top 5% Global Digital Forensics SOC Monitoring OSINT Web Pentesting

Certifications

Windows Forensics with Belkasoft

Belkasoft

Verify Certificate

Android Forensics with Belkasoft

Belkasoft

Verify Certificate

Digital Forensics Essentials (D|FE)

EC-Council

Verify Certificate

Ethical Hacking Essentials (E|HE)

EC-Council

Verify Certificate

Network Defense Essentials (N|DE)

EC-Council

Verify Certificate

Maltego for Cybercrime Investigations

Maltego Technologies

Verify Certificate

Achievements

Ground Zero Hackathon 2023

Top 30 Rank (150+ Teams)

Organized by: Indian School Ethical Hacking

Kolkata Police Hackathon 2022

Top 50 Rank (250+ Teams)

Organized by: Kolkata Police & IEMLab

Languages

  • Bengali
  • Hindi
  • English

Contact Me

Location

Kolkata, West Bengal, India