Available for opportunities

Vency Khunt

Cyber Security Graduate, aspiring DFIR / SOC Analyst

I investigate, assess, and report on security problems. Through three client-based projects, I've gained hands- on experience across incident response, vulnerability assessment, and cyber risk, taking technical findings through to clear, board-level reporting.

Melbourne, VIC  ·  vencykhunt@gmail.com

01

About

I'm a Cyber Security graduate (RMIT, Bachelor of Computer Science) aiming for DFIR and SOC analyst roles. My project work spans incident response, vulnerability assessment and cyber risk for client organisations under industry mentors, from network investigation and vulnerability reporting through to risk assessment and security policy development. My coursework covered disk imaging and mobile forensics (FTK Imager, Autopsy) and proactive threat hunting.

I run a multi-VM home lab across Kali Linux, Ubuntu, and Windows for scanning, forensics, and attack simulation practice.

DFIR SOC Analysis Incident Response Digital Forensics OSINT Vulnerability Assessment Home Lab
02

Skills

Tools

  • Wireshark
  • Suricata (custom IDS rules, EVE log hunting)
  • Nmap / Zenmap
  • Nessus Essentials & OpenVAS
  • OWASP ZAP
  • FTK Imager & Autopsy
  • Kali Linux, Ubuntu, Windows (home lab)

Security Domains

  • Incident response & forensics
  • Vulnerability assessment
  • OSINT & external footprinting
  • PCAP / log analysis, C2 detection
  • Risk assessment & IR playbooks
  • Security policy drafting
  • Threat Hunting

Frameworks & Standards

  • NIST Cybersecurity Framework
  • ASD Essential Eight
  • OWASP Top 10
  • Australian Privacy Act 1988
03

Write-ups & Projects

Three consecutive projects completed through Harness, an industry-mentored practicum program run alongside my degree, each delivered for a real external client under a named mentor.

CASE-001 · Apr to Jun 2026
Cyber Risk Assessment: Head Start Homes
Harness Project · Mentor: Antonio Deliseo
Risk Assessment OSINT Privacy Act Policy
+

Goal: Assess the cyber risk of an Australian not-for-profit that helps vulnerable people into home ownership, and hold some of the most sensitive client data an organisation can.

Approach:

  • Used OSINT and external research to understand the organisation's public-facing security exposure.
  • Spoke with stakeholders about areas including access control, backups, endpoint security and third-party risks.
  • Assessed the identified risks based on their likelihood and potential impact, then created a prioritised action plan.

Result: Delivered findings directly to the founder and board chair level stakeholder. I authored the Information Security Policy, covering areas such as incident reporting, remote work, BYOD, vendors and data security..

Communicating a critical finding clearly to non-technical stakeholders, without either alarming or underselling it, is its own skill, separate from finding the risk in the first place.
CASE-002 · Jan to Mar 2026
Vulnerability Assessment: My1Health
Harness Project · Mentor: Simona Dimovski
Vulnerability Assessment OWASP Top 10 Web App Scanning
+

Goal: Assess My1Health's environment for exploitable vulnerabilities and deliver a prioritised remediation plan for the engineering team.

Approach:

  • Scanned 5 web applications and 3 public IP addresses using Nmap, Shodan, Nessus and OWASP ZAP.
  • Ran OWASP ZAP against the web application to test for common vulnerability classes.
  • Analysed findings against the OWASP Top 10 and rated their severity.

Result: Identified 3 Medium-rated weaknesses across 2 servers (missing clickjacking protection, an untrusted self-signed SSL certificate and a missing Content Security Policy) and delivered a report with a specific fix for each.

A structured assessment methodology matters more than any single tool. When tooling introduces operational risk, the right call is to substitute and keep moving, your methodology keeps you on track regardless of what breaks.
CASE-003 · Oct 2025 to Jan 2026
Incident Response: Neutopia
Harness Project · Mentor: Michael Choeng
Incident Response Ransomware PCAP Analysis Forensics
+

Goal: Manage a simulated ransomware incident and trace the initial point of compromise.

Approach:

  • Analysed network traffic using Wireshark, Zeek and tcpdump to follow the attack from the initial phishing email through to internal scanning, SMB activity and ransomware.
  • Investigated DNS traffic to find suspicious communication with the attacker's infrastructure.
  • Collected and organised indicators such as domains, IP addresses, ports and malicious files to help identify the affected systems.

Result: Identified "patient zero" via phishing indicators, authored a full IR and Forensic Analysis Report, and developed enterprise-ready playbooks for Ransomware, Phishing, and Insider Threat scenarios.

Understanding how attackers leverage DNS for stealthy C2 communication and data exfiltration is foundational for rapid containment. Tracing those patterns in network captures is where the investigation becomes a story you can actually act on.
04

Education & Certifications

🏅
In Progress
CompTIA Security+
Secure architecture, encryption, access control, governance & compliance frameworks.
🎓
Bachelor of Computer Science
RMIT University, Melbourne
July 2024 to July 2026
Relevant Coursework
Cyber Forensics (Jul to Oct 2025): Disk imaging and analysis (FTK Imager, Autopsy), memory forensics (Volatility 3), Android acquisition (ADB, SQLite), network forensics (Wireshark) and web server log analysis; forensic reporting with chain-of-custody and evidence-integrity practices.
Cyberattack Analysis & Incident Response (Mar to Jun 2026): Analysis of phishing, network attacks and malware (static and dynamic); wrote and tested custom Suricata IDS rules; proactive threat hunting on Suricata alert data; incident response planning aligned to NIST SP 800-61.
🎓
Bachelor of Technology, Computer Engineering
Marwadi University, Rajkot, India
2022 to 2024
05

Contact

Open to entry-level DFIR, SOC analyst, and cyber security graduate roles. Happy to walk through any of the engagements above in more detail.