Cybersecurity professional specializing in threat detection, SIEM engineering, and security workflow automation. My work spans blue-team operations, detection rule development, and threat intelligence with hands-on experience across Splunk, Sigma, Suricata, and MITRE ATT&CK.
I build detections, not just monitor for them. Projects include Sigma rules converted to Splunk SPL, a CTI dashboard correlating AlienVault OTX against live Sysmon telemetry, and Python tools for phishing triage and IOC enrichment.
Currently seeking roles in detection engineering, SOC analysis, and MDR operations.
| Certification | Issuer |
|---|---|
| SecurityX · PenTest+ · CySA+ · Security+ · A+ | CompTIA |
| Splunk Core Certified Power User & Core Certified User | Splunk |
| AWS Cloud Practitioner (CCP) | Amazon |
| Azure Fundamentals (AZ-900) | Microsoft |
| Blue Team Level 1 (BTL1) | Security Blue Team |
M.S. Cybersecurity & Information Assurance · B.A.S. Cybersecurity
Blue Team / Defense
Infrastructure & Platforms
Scripting & Dev
| Project | Description |
|---|---|
| 🎣 Simple Phishing Analyzer | Python-based phishing email analyzer performing automated triage of .eml files |
| 🔍 Simple IOC Lookup | Python-based IOC enrichment tool for automated triage of IPs, domains, URLs, and file hashes |
| 🪵 Simple Log Parser | Python-based log parser that automatically detects and extracts IOCs from Windows Event XML, Apache, and auth.log files |
| 🔎 Simple PCAP Extractor | Python-based PCAP parser for extracting network metadata and HTTP file artifacts from capture files |
| 📋 Sigma Detection Rules | Sigma detection rules for common adversary TTPs mapped to MITRE ATT&CK with Splunk SPL conversions |
| 🛡️ Splunk OTX CTI Dashboard | Splunk Classic Dashboard correlating AlienVault OTX threat intelligence against live Sysmon telemetry |
| 🔒 Linux Security Monitoring Dashboard | Ubuntu 24.04 hardened with DoD STIG V1R1 using OpenSCAP. MITRE ATT&CK mapped detections in Splunk with drift simulation and automated daily compliance scanning |
| 📡 Suricata NIDS on Raspberry Pi + Splunk | Deployed Suricata as a home NIDS on a Raspberry Pi 4, visualized alerts via Splunk dashboard |
| 🔊 Suricata ET Noise Analysis | Analyzed Emerging Threats ruleset noise on a live home network |
Building security tools that answer real questions. Open to roles in threat detection, MDR, and SOC operations.