Associate Software Engineer
Cyble Inc.
Lead Developer for Cyble HAWK, owning backend architecture, feature delivery, AI-assisted intelligence workflows, and customer-facing modules that helped scale the product from 0 to $5M ARR within 2 years. Built AI-assisted threat intelligence pipelines for collecting, enriching, classifying, and summarizing data from dark web sources, leaked forums, screenshots, advisories, stealer logs, and POI-related intelligence feeds. Developed LLM-based enrichment workflows for POI monitoring, enabling automated extraction, summarization, relevance scoring, risk context generation, and customer-ready intelligence outputs. Built backend workflows for dark web and stealer intelligence search, including asynchronous search pipelines, HWID-based stealer lookup, PII exposure discovery, and long-running background processing. Implemented screenshot-based intelligence workflows to capture, process, and analyze visual evidence from cybercrime sources, leaked data posts, and threat actor activity. Built and enhanced POI monitoring, Falcon alert ingestion, domain watchlists, blockchain watchlists and alerts, PII monitoring, and threat report generation modules. Set up Cuckoo3-based live malware analysis, enabling automated malware detonation, behavioral analysis, and enrichment of suspicious files. Implemented ASM OWASP integration, Microsoft Active Directory integration, and ASW report download capabilities to improve enterprise security visibility. Built GitHub Secret Scanner and private repository scanning workflows across GitHub, Bitbucket, and Docker to detect exposed secrets and sensitive assets. Migrated legacy cron workflows to RabbitMQ-based asynchronous processing, improving visibility, retry handling, and reliability of background jobs. Fixed RabbitMQ connection instability affecting global queue processing, improving reliability across async workers and platform services. Worked on PHP and Laravel version upgrades for the API engine, improving maintainability, compatibility, and long-term platform stability.