4+ years in security — from internship to enterprise. I build systems that detect, respond, and automate, write the scripts, tune the alerts, and ship the tools.
About Me
I started on the defensive side — SOC triage, identity and access management, privileged access monitoring, GRC. Four-plus years of real alerts, real breaches, and real infrastructure at enterprise scale. Detection engineering, malware analysis, IAM/PAM, compliance programs — I've worked across all of it.
Now I'm learning the other half. Working through CTFs, studying attack techniques, and mapping offensive thinking back to the defensive controls I've been building. Understanding how attackers operate makes you a sharper defender.
I write everything down — tool teardowns, quick TILs, CTF walkthroughs. All public, all searchable. A knowledge base I actually maintain, not a highlight reel.
Let's Connect →Knowledge Map
Areas I work in, study, and write about. Click any tag to read related posts.
Technical Arsenal
Tools, platforms, and frameworks across the full stack.
Detection & Response
Identity & Access
GRC & Compliance
Scripting & Automation
Endpoints & Infrastructure
Things I've Built
Side projects that solve real problems.
Pulls LinkedIn and Indeed job alerts from Gmail every 5 hours, parses the emails, and syncs them to an Airtable dashboard with Open / Applied / Not Relevant status tracking. Zero copy-pasting, zero lost opportunities.
Progress Tracker
Tracking every room rooted and every concept clicked — in public. Updated as I go.
Mission Log
A track record of defending real enterprise environments at scale.
Get In Touch
Whether it's a job opportunity, collaboration, or just a security chat — I'm reachable.