- π Cyber security analyst focused on defensive security β detection engineering, log analysis, triage, and incident response.
- π§° Former IT Specialist and digital skills trainer β I bring real IT grounding and the ability to explain security to non-technical people.
- π― Currently seeking a junior SOC analyst / blue team role (Melbourne & remote).
- π Always building: I learn by turning concepts into working detections and tools, not just theory.
- β Blue Team Level 1 (BTL1) β Security Blue Team
- β CompTIA Security+
- β Certificate IV in Cyber Security
- β CCNA β Cisco Certified Network Associate
Security stack:
Domains: SIEM & log analysis Β· Detection engineering Β· Incident response Β· Threat intelligence Β· Windows/Linux security Β· Network fundamentals
| Skill | Where I demonstrate it |
|---|---|
| Detection engineering (Sigma / SPL / KQL) | Detection Engineering Lab |
| MITRE ATT&CK mapping & triage playbooks | Detection Engineering Lab |
| Python security tooling | SOC Analyst Toolkit |
| Log parsing & brute-force detection | SOC Analyst Toolkit |
| SIEM deployment & attack simulation | Home SOC Lab |
| Incident response, forensics & threat intel | Blue Team Labs |
| Phishing triage & email authentication (SPF/DKIM/DMARC) | Phishing Analyzer |
| AI / LLM security testing | AI Security Scanner |
| Project | What it demonstrates |
|---|---|
| π§ͺ Blue Team Labs | 5 hands-on SOC labs β incident response & triage, phishing analysis, MISP threat intel, Splunk SIEM, digital forensics. The full detect β investigate β contain β report workflow. |
| π― Detection Engineering Lab | SIEM detection rules in Sigma β Splunk SPL β Sentinel KQL, mapped to MITRE ATT&CK, each with sample logs & analyst triage playbooks. |
| π£ Phishing Analyzer | Python CLI that parses email headers (SPF/DKIM/DMARC), extracts IOCs, and risk-scores a .eml β CRITICAL vs LOW verdicts, with sample emails & unit tests. |
| π SOC Analyst Toolkit | Python tool: parse auth logs, detect brute force, enrich IOCs, output triage reports. Dependency-free & tested. |
| π Home SOC Lab | Documented Wazuh SIEM lab β simulate attacks, detect with ATT&CK-mapped rules, respond. |
| π€ AI Security Scanner | LLM red-teaming tool β automated prompt-injection vulnerability detection. |
βDefenders think in graphs, attackers think in steps β I'm learning to do both.β