Skip to content
ZK
ZAIN KHALIL KHAN
PORTFOLIO
Hero background
Z KOriginal

Zain Khalil Khan

Security builderSoftware engineerCybersecurityAIITTS-MA

I build secure software, AI-powered tools, and operational systems that solve real problems. Information Assurance & Security Engineering at DePaul University, Class of 2027.

On air
Detection engineeringSecurity operationsCloud and identityIncident responseNetwork securityOSINTApplied AIFull-stack productPython automationNext.js engineeringEnterprise ITAviation data
Projects in catalog
curated builds and research
Interactive demos
53 working product previews
Security projects
detection, identity, cloud
Certifications
credentials and coursework

New standalone systems and focused collections9 titles

Latest ReleasesExplore all

Automated Java & Python Grading Engine

Independent build

Hybrid grading system that compiles, executes, and evaluates student submissions at scale. Custom Java test harness with Python orchestration, sandboxed environments, and detailed pass/fail reports.

Live buildJavaPython

IT Ticketing Platform

Independent build

IT service management platform for submitting, categorizing, assigning, tracking, and resolving technical support requests. Models real-world service desk workflows while providing centralized visibility into ticket status, priorities, and support operations.

Live buildFull StackITSM

SharePoint Analyzer

Independent build

Enterprise SharePoint security analysis platform that maps users, security groups, files, folders, sharing links, and permissions into a unified access hierarchy. Analyzes permission inheritance and excessive access to identify security risks and simplify SharePoint cleanup, with a planned remediation workflow for creating security groups and automatically applying least-privilege access.

Live buildMicrosoft SharePointMicrosoft Graph

Encrypted File Vault

Independent build

Open-source secure file storage prototype with client-side AES encryption, PBKDF2-derived per-user keys, role-based access control, audit logging, S3 presigned URLs, and an admin dashboard.

Live buildAES EncryptionS3

Premier IT Operations Suite

Client Work

Internal IT operations suite that combines a searchable support knowledge base with an auditable technology-history ledger. It centralizes troubleshooting guidance, procedures, infrastructure changes, system context, review status, and institutional knowledge for dependable support and operational decision-making.

Case studyKnowledge ManagementIT Support

Patient Summary Assistant

Healthcare AI

Streams patient documents and generates specialist-tailored summaries with citation-level traceability. Updates instantly when new records arrive, helping clinicians focus on decisions instead of record gathering.

Live buildPathwayFastAPI

DevSecPipeline

Independent build

Shift-left security gate that scans a repository on push for hardcoded secrets, vulnerable dependencies, and injection patterns, then blocks or passes the build with a findings report.

Live buildDevSecOpsSAST

ZeroTrust Gateway

Independent build

Policy-based access broker that evaluates every request against device posture, geo, MFA status, and resource sensitivity to make an explainable allow, step-up, or deny decision.

Live buildZero TrustAccess Control

Sentinel Rules Studio

Security Labs

Detection authoring and regression workbench that evaluates Sigma-style rules against a labelled event corpus, reporting precision, recall, and per-event outcomes so the cost of broadening a condition is measurable instead of assumed.

Live buildDetection EngineeringSigma
In active developmentFounder build

Currently building

Aegis Intelligence

Autonomous AI-powered penetration testing assistant that converts raw reconnaissance data into structured, actionable threat intelligence in real time. Ingests outputs from Nmap and Gobuster, performs live OSINT enrichment, and automatically maps potential vulnerabilities, misconfigurations, and attack paths.

Latest capabilities

  • Built an autonomous assistant that ingests raw Nmap and Gobuster output and converts it into structured, prioritised threat intelligence in real time.
  • Parsed scanner output into a normalised host, port, service, and version model, so downstream reasoning works on data rather than on text.
  • Performed live OSINT enrichment against discovered hosts and services to add ownership, exposure, and known-vulnerability context.
  • Mapped findings to likely attack paths, chaining a misconfiguration or outdated service into the next step an attacker would take.
Generative AIOSINTCybersecurityReactTypeScript
Zain Khalil Khan in ChicagoChicago, IL

Behind the work

Security builder. IT operator. Product-minded engineer.

I study Cybersecurity with a Computer Science minor at DePaul University while working across enterprise IT and software development. That combination shapes how I build: secure by default, useful under pressure, and grounded in the way people actually work.

Current work

NASCAR IT + Premier AI development

Education

DePaul University, Class of 2027

Trust and proof

Work connected to real organizations and working systems.

NASCAR

Enterprise IT operations

Premier

AI and software development

DePaul University

Information Assurance and Security Engineering

Interactive demos
Security labs
Certifications
  • Security work names the control, mechanism, and evidence behind each finding.
  • Live builds are separated from case studies and externally deployed client work.
Inspect public work

Security, software, and operations9 reads

Field NotesExplore all

How I Built Xternal: Production AI Systems Beyond the Chat Box

How I Built Xternal: Production AI Systems Beyond the Chat Box

5 min

How I Built Aegis SOC Analyst: Turning Noisy Telemetry Into Actionable Incidents

How I Built Aegis SOC Analyst: Turning Noisy Telemetry Into Actionable Incidents

4 min

How I Built Fixr: An AI Troubleshooter That Can See the Problem

How I Built Fixr: An AI Troubleshooter That Can See the Problem

4 min

How I Built Khan OS: Designing a Multimodal AI Workspace Around Intent

How I Built Khan OS: Designing a Multimodal AI Workspace Around Intent

4 min

How I Built an Automated Java and Python Grading Engine

How I Built an Automated Java and Python Grading Engine

4 min

How I Built Aegis Intelligence: Giving Reconnaissance Data a Security Narrative

How I Built Aegis Intelligence: Giving Reconnaissance Data a Security Narrative

4 min

How I Built Flight Tracker: Making Four Live Data Sources Feel Like One Product

How I Built Flight Tracker: Making Four Live Data Sources Feel Like One Product

4 min

How I Built FinSight: An AI Financial Workflow With Traceable Decisions

How I Built FinSight: An AI Financial Workflow With Traceable Decisions

4 min

How I Built an Airport Operations Simulator

How I Built an Airport Operations Simulator

4 min

Available for opportunities

Let’s build something secure, useful, and worth shipping.

I am interested in cybersecurity engineering, security operations, full-stack software development, applied AI, and enterprise technology roles in Chicago or remote.

Preferred roles

  • Security engineering
  • Security operations
  • Full-stack development
  • Applied AI engineering
  • Enterprise technology
View GitHub