Shresth Paul

Senior Cybersecurity Analyst | Linux Expert | Open-Source Advocate

For detailed work experience, please check my LinkedIn Profile.

View Projects Get In Touch
7+
Years Experience
20+
Projects
100%
Secure

About

I am a cybersecurity professional who thrives at the intersection of hands-on defense and strategic innovation. Over the past six years, I've evolved from an IT Analyst to a Senior Analyst specializing in threat hunting, SIEM/EDR engineering, and security automation.

I don't just monitor logs — I actively search for adversaries, design tools to detect and mitigate threats, and build systems that strengthen enterprise security from the ground up. From developing a production-ready CTI dashboard to automating complex forensic processes, my work is driven by a single principle: true security is a product of relentless innovation and proactive action.

Recognized with the Torchbearer Award for outstanding contributions, I'm passionate about creating solutions that not only address today's threats but anticipate tomorrow's challenges. My mission is simple: to make digital environments resilient, adaptive, and secure — and to continuously push the boundaries of what's possible in cybersecurity.

Cybersecurity Linux Administration Python Automation SIEM Management Threat Hunting Incident Response Digital Forensics Vulnerability Assessment

Career Snapshot

Senior Cybersecurity Analyst

2023 - Present

Leading enterprise security operations, advanced threat hunting, and incident response coordination. Implementing security automation frameworks and mentoring junior analysts.

Cybersecurity Analyst

2022 - 2023

Managed SIEM operations, conducted vulnerability assessments, and developed custom security tools. Specialized in Linux-based security hardening and threat detection.

IT Analyst L2

2020 - 2022

Provided advanced technical support, system administration, and security monitoring. Transitioned focus towards cybersecurity and threat analysis.

System Support Specialist

2018 - 2020

Delivered comprehensive system support, user assistance, and infrastructure maintenance. Built foundation in enterprise IT operations and security practices.

Personal Contributions

Arch Linux AUR Maintainer

Ongoing

Maintaining and updating community packages in the Arch User Repository, ensuring compatibility and security for open-source users worldwide. Contributing to the Linux ecosystem.

Linux Open Source Community

Threat Hunting Use Cases

Ongoing

Building Sigma rules, detection logic, and hunting playbooks for modern cybersecurity threats and advanced persistent threat patterns. Enhancing enterprise security posture.

Cybersecurity Threat Hunting SIEM

Python Security Tools

Ongoing

Developing automation scripts and vulnerability scanners using Python to enhance security operations and streamline incident response workflows. Open-source contributions.

Python Automation Security

Latest Articles

Building a One-Click Windows Event Log Monitoring Stack with ELK + Grafana

Published September 2025

Guide to building a one-click Windows Event Log monitoring stack with ELK and Grafana, including Winlogbeat setup.

Maintaining AUR Packages: Updating python-simple-term-menu

Published September 2025

Updated the python-simple-term-menu package on Arch Linux AUR with the latest release, refreshed PKGBUILD & checksums, and tested for smooth installation.

A Small Contribution to the Arch Community: Updating the cleanpy AUR Package

Published September 2025

Shared insights on maintaining AUR packages and contributing to the Arch Linux ecosystem.

How I Updated an Arch Linux AUR Package (PySpread Example)

Published September 2025

I recently updated the Pyspread AUR package to version 2.4, walking through the process of modifying the PKGBUILD, refreshing checksums, testing locally, and pushing changes upstream. While simple, this type of maintenance is vital — it keeps the Arch Linux ecosystem reliable, secure, and up to date for end users.

Installed Arch Linux — Next Stop: Contributing Back

Published September 2025

Documented my first full Arch Linux installation from scratch, highlighting lessons on partitions, systemd, networking, and pacman. Beyond the setup, I'm now exploring ways to contribute back to the Arch community through docs, scripts, and tooling — turning the learning curve into an opportunity to give back.

Building an Ephemeral Email Header & Attachment Analyzer (Open Source Project)

Published August 2025

Developed an Ephemeral Email Analyzer to help security teams detect phishing attempts. It parses headers (SPF, DKIM, DMARC), checks domains and IPs against threat intel, scans attachments with YARA, and streams results in real time — all stored ephemerally for privacy. Built with FastAPI, React, and YARA, it's designed for practical use in modern email security operations.

Introducing Threat Intelligence Enrichment — A Powerful Web-Based Threat Intelligence Tool

Published August 2025

Threat Intelligence Enrichment – A streamlined, open-source dashboard for security analysts, incident responders, and IT admins to analyze IPs and domains instantly. Features WHOIS lookups, geolocation, DNS & SSL checks, and threat reputation scoring via AbuseIPDB & VirusTotal. Real-time processing, executive-ready UI, and secure design make threat analysis faster, cleaner, and more reliable.

Let's Connect

Interested in cybersecurity collaboration, Linux expertise, or open-source security projects? Let's discuss opportunities.

Or, if you prefer the dev way: feel free to raise a pull request at my GitHub 😉