Open to opportunities · Vancouver, BC

TANISH RATHORE

Cybersecurity professional — MS Cybersecurity @ SFU, Security+ certified. I work in SIEM, threat detection, and endpoint hardening, currently securing 200+ endpoints at TLC Solutions.

Scroll ↓ SIEM · Threat Detection · Endpoint Hardening · CTF
02

Where I've worked.

Apr 2025 — Now

Systems & Security Technician

TLC Solutions · Langley, BC

Triage network and endpoint security alerts across client fleets, drive patch and configuration compliance, and hardened 200+ endpoints through a fleet-wide refresh — documented in SharePoint/Confluence.

● Current
May 2023 — Jun 2025

Tier 1 Analyst

University of the Fraser Valley · Abbotsford, BC

Resolved 15+ tickets daily within SLA and led OS upgrades for 1,000+ users; managed endpoints via Intune, SCCM, Active Directory, Azure AD, and Exchange.

Sep 2022 — May 2023

Support Analyst

University of the Fraser Valley · Abbotsford, BC

Ran infrastructure risk assessments and led IT training that cut escalations by 30%; implemented maintenance protocols that reduced downtime.

May 2022 — Sep 2022

Analyst Intern

Aviso Wealth · Vancouver, BC

Resolved 80% of Level 1/2 issues without escalation and reduced asset loss by 15% through streamlined tracking.

03

Selected work.

04

The lab.

INTERNETzero inbound ports
CLOUDFLARE TUNNELno exposed surface
● Active flow ● Zone boundary ● Packet
TRAEFIKTLS · Let's Encrypt DNS-01 · CrowdSec IPS

Public zone

JELLYFINmedia streaming
REQUESTSinvite-based · Wizarr

Private zone

TAILSCALEmesh VPN · split-DNS
AUTHELIASSO / 2FA
GRAFANA · VAULTWARDENadmin only
// Flagship — production-grade homelab

A home server built like an enterprise network. Ubuntu 24.04, 25+ containerized services orchestrated with Docker Compose across three isolated networks — with a zero-inbound-ports posture: everything public routes through a Cloudflare Tunnel into Traefik, with CrowdSec intrusion prevention and Authelia SSO/2FA guarding the admin plane.

Full observability pipeline (Prometheus, Grafana, Loki, Alertmanager with Telegram alerting), secrets encrypted with SOPS + age, and encrypted off-site backups via Restic. No credential ever touches the repo in plaintext.

0Inbound ports
25+Services
3Isolated networks
2FAAdmin plane
// Incident log — real recovery, not a tutorial
[ALERT] backup.service failed → host dropped to emergency mode
[TRACE] socket-proxy discovery down → segmentation + routing broken
[FIX] walked the chain: networks → discovery → port conflicts → TLS re-issue
[RESOLVED] full recovery · root cause documented
Cloudflare TunnelTraefikCrowdSecAuthelia TailscaleAdGuard HomeDocker ComposePrometheus GrafanaLokiVaultwardenSOPS + ageRestic Jellyfin + Arr suite
05

Tools of the trade.

Security & Networking

SIEM / SOCKQLThreat DetectionRisk Assessment Firewall ConfigNetwork SegmentationEndpoint Security IoT SecurityNISTISO 27001Nmap

Administration & ITSM

Active DirectoryAzure ADIntuneSCCM Exchange AdminTDxSharePointConfluenceProxmox

Platforms & Practice

Azure SentinelElastic SIEMMicrosoft 365VMware Incident ResponseThreat IntelligenceHack The BoxTryHackMe
06

Education & certs.

MS, Cybersecurity
Simon Fraser University · 2025—2027
BCIS, Major in Cybersecurity
University of the Fraser Valley · 2024
Diploma, Computer & Info Sciences
University of the Fraser Valley · 2022
07

Off the clock.

24
Press the red shutter — every frame is one of a kind
// Not career. Just love.

I also shoot film.

Off the clock I'm hiking BC trails with an analog camera — grain, light leaks, no retakes. This one's loaded with code instead of Kodak: every press of the shutter generates a one-of-a-kind mountain scene and develops it right in front of you.

Let's talk security.

Open to roles, projects, or just a good conversation about threat detection. Drop a message through the form or find me on LinkedIn.