Skip to content
Security Portfolio · New York, NY

The threat landscape is not slowing down. Neither am I.

Detection engineer and cloud-security builder. I catch what others miss, secure the infrastructure underneath, then write it down so you can trust it.

I build detections that fire in prod.
  • Detection Engineering
  • Cloud Security
  • AppSec
View work Get in touchOpen to roles · 2026
Automated detection & response pipeline
Telemetry sources
  • Log Sources
  • Defender for Endpoint
  • Azure / AVD
SIEM
  • Microsoft Sentinel
Detection
  • KQL Detections
  • Triage & Severity
Enrichment
  • Threat Intelligence
  • Alert Enrichment
Orchestration
  • SOAR Playbooks
Response
  • Containment
  • IR Runbooks
  • Conditional Access
Governance
  • Compliance Evidence
About
01About

Krish Kuchroo

Portrait of Krish Kuchroo

I got into security to understand how systems actually fail, not the sanitized textbook version, but the real vulnerabilities that surface when defenses meet a determined attacker. At NYU Tandon I work across detection engineering, cloud security, and application security: writing KQL that fires in production, architecting AWS where security is structural rather than bolted on, and finding the bug before someone else does. I’m looking for work where the problems are hard, documentation is valued, and the team takes the craft seriously.

Two things pointed me toward security. The work has real consequences for real people, and the field never stays still long enough to get comfortable. For someone wired the way I am, that is not a downside.

Based in
New York, NY
Focus
Detection Engineering · Cloud Security · AppSec
Education
M.S. Cybersecurity
NYU Tandon School of Engineering
15+production detectionsKQL · Microsoft Sentinel
25%faster mean-time-to-detectin production
100%ICS attack detectionacross 5 adversarial types
4+vulnerabilities patchednetworked medical device
3.6GPA/ 4.0
Selected work
02Selected Work

Security work, end to end

Production detection engineering and academic security builds across offensive, defensive, cloud, AppSec, and GRC. Open any project for the full case study: the problem, what I built, and the measured outcome. Every number is a real result, not an estimate.

Expertise
03Expertise

Six domains, one practitioner

The work tags against six canonical security domains: offensive, defensive, cloud, AppSec, GRC, and the foundations underneath. Each card lists the tools and methods I actually use, marked by depth: unlabelled means proficient, otherwise working knowledge or lab. Nothing here is aspirational.

01

Offensive

Recon, exploitation, and post-exploitation across web, network, and Active Directory.

02

Defensive

Detection engineering, log analysis, incident response, and digital forensics.

03

Cloud

Securing AWS, Azure, and GCP: IAM, workload, container, and Kubernetes posture.

04

AppSec

Finding and fixing flaws in code and APIs: SAST/DAST and secure code review.

05

GRC

Risk, audit, and compliance against frameworks such as NIST and ISO 27001.

06

Foundations

Networking, operating-system internals, scripting, and applied cryptography.

Principles
04Principles

How I think about the work

Security only works when the person doing it is accountable to someone real. This is mine, in my words.

  1. 01

    Security works when the person doing it has principles, and principles start with understanding who you are actually accountable to.

  2. 02

    Strong security builds trust. Trust attracts stakeholders. Stakeholders grow the business. A growing business demands stronger security. The cycle only holds if the person in the middle of it never loses sight of who they actually serve.

  3. 03

    Authorized scope. Coordinated disclosure. Access only what the role requires. Not rules someone imposed on me. Just how this should work.

Experience and education
05Path

Experience & education

Teaching cybersecurity at NYU Tandon and shipping production detections at Embee, on top of a master's at NYU and a bachelor's at Manipal.

Experience

  1. NYU Tandon · Center for K12 STEM Education

    Course Instructor, CS4CS

    Summer 2026

    Teach 60+ rising-senior high schoolers (16–17) hands-on cybersecurity: configuring lab environments, designing CTF challenges, and mentoring 20+ student projects split evenly between AI builds and case-study security problems.

    • CTF Design
    • Lab Engineering
    • Cybersecurity Education
  2. Embee

    Detection Engineering & Compliance

    Professional

    Production detection engineering and ISO 27001 compliance work in Microsoft Sentinel: KQL analytics, enrichment pipelines, and incident-response runbooks.

    • Microsoft Sentinel
    • KQL
    • Defender for Endpoint
    • Azure
    • ISO 27001

Education

  1. M.S. Cybersecurity

    NYU Tandon School of Engineering · New York, NY · GPA 3.6 / 4.0

    2024–2026
    • Application Security
    • Network Security
    • Information Security and Privacy
    • Information Systems Security Engineering & Management
    • Applied Cryptography
    • Cloud Computing
    • Machine Learning
    • Operating Systems
  2. B.Tech in Computer Science and Engineering

    Manipal University Jaipur · Jaipur, India · GPA 3.2 / 4.0 · Minor in Cloud Infrastructure

    2020–2024
Writing
06Writing

Published on Medium

Long-form security writing: how generative AI is reshaping both sides of the fight, Zero Trust for financial services, hardening LLM applications against prompt injection, machine-learning defense for industrial control systems, and how everyday browsing quietly maps your digital life.

07Currently building

Independent security work, opening up.

I’m starting a small practice: risk assessments, security reviews, and practical hardening for teams that can’t yet staff a full security function. Less buzzword, more rolled-up sleeves: find what’s exposed, explain it plainly, and leave you with something documented you can act on. Deeper offensive work is on the roadmap as I build it out.

  • Risk assessment
  • Security reviews
  • Cloud & app hardening
  • Compliance evidence
Start a conversation
Contact
08Contact

Say hello

Open to security roles and project work in detection engineering, cloud security, and AppSec. Graduating December 2026. The fastest way to reach me is email.

Prefer a form?