Summary
Work history
Education
Skills
Projects (Security-Relevant)
Activities & Interests
Volunteer Experience
Timeline
Generic
Daniel Murphy

Daniel Murphy

Leiden,Netherlands

Summary

Computer Science graduate from Columbia University and current MSc student in Computer Science & Business Studies with expertise in offensive security and penetration testing. Proficient in scripting, networking fundamentals, and cloud environments, complemented by hands-on security research experience. Recognized for strong communication skills in conveying technical risks. Actively pursuing a junior penetration testing role to enhance skills in web, API, cloud, and infrastructure security testing.

Work history

Summer Intern, Data Privacy & Protection Unit

Colorado Office of the Attorney General
Denver, Colorado
05.2023 - 08.2023
  • Conducted analysis of data handling practices for sensitive account and user information in tech firms.
  • Assessed security risks across AI systems, social media, and data pipelines.
  • Drafted internal AI policy affecting approximately 720 employees.
  • Collaborated with teams to communicate technical insights to non-technical stakeholders.
  • Presented risk analyses and strategic recommendations to senior leadership.

Education

Master of Science - Computer Science & Business Studies

Universiteit Leiden
Leiden Netherlands
09.2025 -

Bachelor of Arts - Computer Science

Columbia University
New York City, New York
08.2021 - 06.2024

Skills

    TECHNICAL SKILLS

    Offensive Security & Testing

    Web application security fundamentals (OWASP Top 10)

    API security concepts

    Network reconnaissance and enumeration

    Vulnerability analysis and exploitation fundamentals

    Threat modeling and attack surface analysis


    Tools & Techniques

    Burp Suite (intercepting, request tampering, basic scanning)

    Nmap (host discovery, port scanning, service enumeration)

    Metasploit (basic exploitation workflows)

    Linux (CLI, permissions, networking tools)


    Programming & Scripting

    Python (automation, scripting, security tooling)

    Bash (basic scripting)

    Java, C, C, C#

    REST APIs


    Cloud & Systems

    AWS fundamentals (IAM, S3, networking basics)

    Understanding of cloud misconfigurations and security risks

    SQL (PostgreSQL, MySQL), NoSQL


    SOFT SKILLS

    Technical communication skills

    Client engagement and risk discussion

    Team collaboration

    Problem-solving mindset


Projects (Security-Relevant)

DataDaemon — Defensive Threat Intelligence Platform (In Progress)

Go, APIs, Logging, Cloud-Ready Architecture

· Designed and implemented a read-only, event-driven threat intelligence platform for monitoring Telegram bot infrastructure used in real-world attack campaigns.

· Built multiple Go services to collect, validate, and analyze security telemetry without interacting with or controlling external systems.

· Implemented token validation, event ingestion, and structured logging to support investigation and correlation workflows.

· Developed a queryable HTTP API for analysts to explore collected events and actor activity.

· Focused on defensive research, safe data handling, and clear separation between collection, processing, and analysis components.

· Gained hands-on experience with threat intelligence pipelines, backend services, and security-focused system design.


Cloud Security Misconfiguration Scanner (In Progress)

· Developing a Python-based tool to identify common AWS security misconfigurations.
· Detects publicly accessible S3 buckets, overly permissive IAM policies, open security groups, and
missing encryption.
· Produces structured findings with severity levels and remediation guidance.
· Focused on understanding real-world cloud attack surfaces and defensive gaps.


Web Application Backend with SQL Database

· Built a Flask-based backend with SQL database and RESTful endpoints.
· Implemented GET/POST data access and basic authentication logic.
· Gained hands-on understanding of common web application attack surfaces.

Activities & Interests

Application Development Initiative (ADI), Columbia University

· Mentored student teams by debugging and reviewing code across multiple projects.

· Assisted with Python, C++, Java, and JavaScript issues in time-constrained environments.

Independent Security Learning

· Actively studying web, network, and cloud security vulnerabilities.

· Regularly experimenting with labs, scripts, and security tooling to deepen offensive security skills.

· Implemented GET/POST data access and basic authentication logic.

· Gained hands-on understanding of common web application attack surfaces.

Interests

Cybersecurity research, penetration testing labs, cloud systems, scripting, building and benchmarking computers, and technical writing.

Volunteer Experience

Denver Zoo Conservation Alliance — Zookeeper Assistant

· Worked in safety-critical, fast-paced team environments.

· Emphasized communication, responsibility, and operational awareness.

Timeline

Master of Science - Computer Science & Business Studies

Universiteit Leiden
09.2025 -

Summer Intern, Data Privacy & Protection Unit

Colorado Office of the Attorney General
05.2023 - 08.2023

Bachelor of Arts - Computer Science

Columbia University
08.2021 - 06.2024
Daniel Murphy