Skip to content
View Yash-Chandrani's full-sized avatar
🎯
Focusing
🎯
Focusing

Highlights

  • Pro

Block or report Yash-Chandrani

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Yash-Chandrani/README.md

Hi there, I'm Yash Chandrani 👋

About Me

  • 🎓 Recently graduated with Master of Computer Science (Security track) at North Carolina State University (August 2023 - May 2025)
  • 💼 Software Developer with experience in web development, security analysis, and cloud computing
  • 🌱 Passionate about technology, security, and innovation

Skills

  • Programming Languages: Java, C#, Python, JavaScript, C++, HTML, CSS
  • Frameworks and Libraries: .NET, Spring Boot, Flask, Bootstrap, React.js, Node.js, Next.js
  • Databases: Microsoft SQL Server, MySQL, PostgreSQL, SQLite, MongoDB
  • Tools and Platforms: Microsoft Azure, Azure DevOps, AWS S3, AWS EC2, Docker, GitHub Actions, Selenium WebDriver
  • Security Tools: OWASP ZAP, SonarQube, Snyk, Gitleaks, Ghidra, Nmap, BurpSuite
  • Operating Systems: Windows, Ubuntu, Fedora, Kali Linux
  • Other Skills: Web Scraping, Object-Oriented Programming, Shell Scripting, Vulnerability Analysis, Threat Modelling

Work Experience

Research Assistant

North Carolina State University (September 2024 - Present)

  • Designing solutions to identify and mitigate potential vulnerabilities and security risks in the software supply chain
  • Leveraging static and dynamic analysis techniques and integrating best practices to enhance code security
  • Conducted automated testing using Google Cloud and Python, improving vulnerability detection in software artifacts

Web Developer

Bombay Engineering Syndicate (May 2024 - July 2024)

  • Developed a dynamic website utilizing Next.js and TypeScript, implementing SEO best practices and improving UI/UX, which boosted online traffic by 25%
  • Developed an Offer Generation System with a C# .NET backend and SQL database, integrated with a responsive frontend, to automate and centralize quotation making on a single platform, reducing sales team workload by 2 hours per day and decreasing manual errors
  • Configured CI/CD pipelines and implemented autoscaling utilizing Azure DevOps and Azure App Service, ensuring a secure production environment with 99.9% uptime
  • Automated build and release workflows through Microsoft Azure DevOps and streamlined container orchestration with Docker and Kubernetes, reducing deployment time
  • Collaborated with cross-functional teams, including designers and stakeholders, to deliver quality software solutions on time

.NET Developer Trainee

SMG Infosolutions (January 2023 - April 2023)

  • Developed and integrated multiple modules for a custom engineering order management system using .NET, HTML, CSS, JavaScript, and MS SQL, streamlining order workflows and reducing handling time
  • Built a real-time chat feature leveraging .NET Web API for RESTful services and SignalR, enhancing in-app communication and collaboration with seamless real-time messaging
  • Optimized SQL Server operations by writing efficient queries and stored procedures, reducing data retrieval time by 30%
  • Streamlined key workflows, such as report generation and data synchronization, in a full-stack web application working with C#, .NET, and JavaScript, cutting manual effort by 10%
  • Created responsive dashboards and user interfaces leveraging modern front-end frameworks, enhancing user experience

Projects

Slash (Python Web Development)

Technologies: Python, Flask, BeautifulSoup, HTML, CSS, JavaScript

  • Augmented an e-commerce web scraping tool with Python and Flask, adding search filters, user profiles, and authentication
  • Established automated testing workflows with GitHub Actions, increasing test coverage by 25%

OpenEMR Security Review (Software Security Testing)

Technologies: OWASP ZAP, SonarQube, PHP

  • Performed Vulnerability Analysis and Penetration Testing (VAPT) of OpenEMR, an open-source PHP based EHR
  • Identified two critical vulnerabilities and proposed security patches, enhancing the application’s security posture
  • Performed static analysis using SonarQube, dynamic analysis with Zaproxy, and secret detection with Snyk and Gitleaks

HackStats (GraphQL/Python Scripting)

Technologies: Python, GraphQL, GitHub, GitLab, Flask, React, TypeScript

  • Devised Python scripts for querying user metrics from GitHub and GitLab through their GraphQL APIs with Python
  • Spearheaded frontend development using React and TypeScript, enabling metric visualization and improving user experience

Get in Touch

Feel free to reach out if you want to collaborate on a project or just want to connect!

Yash's GitHub stats

Pinned Loading

  1. FleetTrack FleetTrack Public

    A modern fleet management system built with React, TypeScript, and .NET Core 8.

    TypeScript

  2. FlowTrace FlowTrace Public

    C++

  3. KeeperOfSecrets KeeperOfSecrets Public

    A lightweight Secrets Management System demonstrating PKI and secrets platform concepts.

    Go

  4. NetBot NetBot Public

    A sophisticated network automation and monitoring system that simulates and manages BGP-based networks using Docker containers, with advanced fault injection and monitoring capabilities.

    Python

  5. SecureVault SecureVault Public

    A secure credential storage system built with Flask and PostgreSQL, featuring role-based access control (RBAC) and Azure integration.

    Python

  6. TrustGate TrustGate Public

    TrustGate is a secure reverse proxy that implements zero trust principles for accessing internal services. It provides OAuth2 authentication, policy-based access control, and comprehensive monitoring.

    Go