Roshan Khanal

Cyber security student learning to think like an attacker, so I can defend like a professional.

Aiming for roles as Penetration Tester, SOC Analyst or Cyber Security Analyst.

About me

Portrait of Roshan Khanal

I study BSc (Hons) Ethical Hacking and Cyber Security at Coventry University, through Softwarica College in Nepal.

In my modules I have written a penetration testing report, practised SQL injection and file inclusion in a local lab, designed subnetted networks and carried out a risk assessment. I want to learn how systems break, so I can help protect them.

I am looking for an internship or an entry-level role in cyber security.

Practised in labs
  • SQL injection
  • LFI
  • SSH access
  • Flag hunting
  • XAMPP labs
Studied
  • CVSS 3.1
  • Pentest reporting
  • Subnetting
  • Routing
  • Risk assessment
  • ISO/IEC 27001

Exploring Microsoft certifications: AZ-900, SC-900 and AZ-500.

What I am aiming for

01

Penetration Tester

Find weak points in networks, web apps and systems before real attackers do, and explain the risk clearly.

  • SQL injection
  • LFI
  • CVSS 3.1
02

SOC Analyst

Watch alerts, investigate incidents and help a team respond fast.

  • CIA triad
  • Risk matrix
  • Networking
03

Cyber Security Analyst

Assess risk, improve defences and support security policy.

  • ISO/IEC 27001
  • Risk treatment
  • GDPR

Projects

coursework · penetration testing

Web application penetration test report

Tested a fictional company and wrote a formal report with five findings. Each finding has a CVSS 3.1 score and references.CVSS 3.1 · Reporting · Web security

practice lab

Vulnerable web lab and CTF practice

Built a local XAMPP lab to practise safely, then worked through a multi-phase CTF with SQL injection, file inclusion, SSH access and flag hunting.XAMPP · SQLi · LFI · SSH

coursework · networking

Network design: subnetting and routing

Subnetting with FLSM and VLSM, plus static and dynamic routing, collected in one networking portfolio.FLSM · VLSM · Routing

coursework · ISMS

Information security risk assessment

Audited a fictional company. Found risks with the CIA triad, built a qualitative risk matrix and proposed risk treatment.CIA triad · Risk matrix · Risk treatment

in progress

Cyber security web project

A web project with a Flask API backend, built with free tools only. Details and code will be added here.Flask · API

Let's talk

Open to internships and entry-level roles in cyber security. Write to me or find me on LinkedIn.