Available for hire & freelance projects

I'm Avez Khatri.Cybersecurity Pro& Developer.

MSc Cybersecurity graduate specialising in SIEM monitoring, threat detection, penetration testing, and Microsoft 365 security. I also build web apps, automate workflows, and craft Chrome extensions.

MSc
Cybersecurity
ISO 27001
Lead Auditor
3+
Years in IT
Splunk SIEMPenetration TestingMicrosoft 365 SecurityMITRE ATT&CKIncident ResponseISO 27001Active DirectoryPython AutomationChrome ExtensionsNmapBurp SuiteDigital ForensicsWeb DevelopmentDefender for EndpointThreat HuntingWiresharkNIST CSFConditional Access Splunk SIEMPenetration TestingMicrosoft 365 SecurityMITRE ATT&CKIncident ResponseISO 27001Active DirectoryPython AutomationChrome ExtensionsNmapBurp SuiteDigital ForensicsWeb DevelopmentDefender for EndpointThreat HuntingWiresharkNIST CSFConditional Access

Securing systems.
Building solutions.

I'm a cybersecurity and IT professional based in Leicester, UK, with a Master's degree in Cybersecurity from Sheffield Hallam University. My work sits at the intersection of security operations, IT administration, and proactive threat management.

Currently leading a comprehensive security transformation of a Microsoft 365 environment at Kaine Management, covering Conditional Access, MFA enforcement, Defender for Endpoint, and DLP policy design.

Beyond security, I freelance as a developer, building web applications, mobile apps, automation workflows, and Chrome extensions that solve real-world problems.

Avez Khatri - Cybersecurity Professional

Technical Arsenal

Tools, frameworks, and methodologies I work with every day.

🔐
Cybersecurity
Splunk / SPLMicrosoft SentinelNmapBurp SuiteMetasploitWiresharkOWASP ZAPAutopsyVolatilityDefender for EndpointIncident ResponseThreat HuntingDigital ForensicsMITRE ATT&CKNIST CSFISO 27001OWASP Top 10Zero Trust
⚙️
IT Administration
Active DirectoryMicrosoft 365Exchange OnlineEntra IDSharePointIntune / MDMWindows ServerGroup PolicyServiceNowJiraITILPatch ManagementBackup & DR
🌐
Networking & Dev
TCP/IPDNS / DHCPVLANsFirewall ConfigIDS/IPSVPN / SSL/TLSAzureVMwarePythonPowerShellBashLinuxHTML / CSS / JSGit
📜

ISO 27001 Lead Auditor

British Standards Institution, 2024

🛡️

Defender for Endpoint

LinkedIn Learning, 2024

📚

CompTIA Security+

In Progress — Expected 2026

Hands-on Security Work

Real-world projects demonstrating practical cybersecurity skills.

// 01

Web Application Penetration Testing

Penetration tested DVWA and OWASP Juice Shop using Burp Suite, OWASP ZAP, and Metasploit. Identified and exploited 30+ vulnerabilities including SQL Injection, XSS, and Broken Access Control, mapped to MITRE ATT&CK with documented remediation for each finding.

Burp SuiteOWASP ZAPMetasploitMITRE ATT&CK
// 02

SIEM & Network Security Lab

Designed segmented LAN architecture with VLANs, firewall rules, and IDS/IPS. Configured Splunk SIEM with 15+ custom correlation rules for SOC-style monitoring, event correlation, and automated alerting on brute-force attempts and suspicious login patterns.

SplunkVLANsIDS/IPSFirewall
// 03

Network Reconnaissance & Vuln Analysis

Performed network reconnaissance with Nmap across 50+ hosts, analysed malicious traffic patterns using Wireshark packet inspection, and applied CVSS v3.1 scoring for vulnerability prioritisation across simulated enterprise environments.

NmapWiresharkCVSS v3.1
// 04

ISO 27001 Compliance Audit

Full-scale compliance audit covering 40+ assets with comprehensive risk assessment, asset inventories, threat models, and risk treatment plans mapped to NIST CSF and CIS Controls, with executive-level reporting.

ISO 27001NIST CSFCIS Controls
// 05

Digital Forensics Investigation

Forensic analysis on NTFS file systems and memory images using Autopsy and Volatility. Recovered browser artifacts, deleted files, and registry keys linked to insider threat scenarios, maintaining chain-of-custody documentation throughout.

AutopsyVolatilityNTFSMemory Forensics
// 06

M365 Security Transformation

Leading end-to-end security hardening of a Microsoft 365 environment for 50+ users. Conditional Access, MFA, Defender for Endpoint, DLP policies, and 20+ priority hardening actions for Secure Score improvement.

M365Entra IDDefenderConditional Access

Things I've shipped.

Products built from scratch, solving real problems.

Web Development, App Development & More

Freelance developer based in Leicester, UK. I build custom websites, mobile apps, automation tools, and Chrome extensions for businesses and startups worldwide.

🌐

Web Development Services

Custom responsive websites, business landing pages, e-commerce sites, dashboards, and full-stack web applications. Modern HTML, CSS, JavaScript, and React development tailored to your needs.

📱

App Development Services

Cross-platform mobile app development for iOS and Android. From concept and UI/UX design through to development, testing, and deployment on app stores.

Automation & Scripting

Workflow automation using Python, n8n, and custom API integrations. Automate repetitive tasks, build data pipelines, and create bots that save your business hours every week.

🧩

Chrome Extension Development

Custom Chrome extensions for productivity, data extraction, workflow enhancement, and business tools. Built with Manifest V3 and published to the Chrome Web Store.

Got a project in mind?

Ping me up and let's build something great together.
Ping Me Up

Career Timeline

From development to IT support to cybersecurity.

Feb 2026 - Present
IT Security Specialist
Kaine Management, Leicester
  • Comprehensive security assessment of the M365 environment for 50+ users across Exchange Online, SharePoint, Entra ID, Teams, and Intune, identifying 20+ priority hardening actions
  • Auditing user accounts, shared mailboxes, and licence assignments, identifying 15+ access control gaps including dormant accounts and over-provisioned permissions
  • Designing and implementing Conditional Access policies and MFA enforcement, with documented exemption policies aligned to least-privilege principles
  • Configuring Microsoft Defender for Endpoint, Safe Links, and Safe Attachments; tightening anti-spam policies to reduce phishing exposure
  • Developing 10+ IT security policies, onboarding/offboarding runbooks, and user-facing documentation to improve security awareness
  • Delivering strategic recommendations for DLP policies, SharePoint governance, cloud backup, and Microsoft Secure Score improvement
Sep 2022 - Sep 2023
IT Support Engineer
English & Foreign Language Institute
  • Managed end-to-end IT infrastructure and service desk for 200+ users across Windows 10/11, maintaining 99%+ system uptime within SLA targets
  • Administered Active Directory for 200+ accounts including provisioning, GPO management, and role-based access control enforcement
  • Implemented security protocols for 150+ devices including system imaging, IT asset management, and endpoint configuration
  • Monitored network health with TCP/IP, DNS, DHCP, and VPN diagnostics, reducing average resolution time
  • Oversaw patch management cycles, data backup schedules, and disaster recovery processes across the IT estate
Jun 2021 - Aug 2022
Front-End Developer
Sahal Infotech
  • Developed secure web applications using HTML, CSS, and JavaScript, applying input validation and secure coding practices against OWASP Top 10
  • Delivered 5+ client projects on schedule, contributing to planning, code review, and cross-functional delivery

Academic Background

MSc Cybersecurity
Sheffield Hallam University
Sep 2023 - Sep 2024
Penetration Testing, Digital Forensics, Network Security, Security Risk Management
B.Eng. Information Technology
Vadodara Institute of Engineering
2021
Foundation in networking, system administration, and software development

Let's Connect

Open to SOC Analyst, Security Analyst, and IT Support roles. Also available for freelance projects.