
Cybersecurity professional with practical experience investigating security-related events and supporting incident response activities across endpoint, identity, and cloud environments. Skilled in EDR-based analysis using SentinelOne and Datto EDR, identity security monitoring within Microsoft 365, and access control hardening in Active Directory and Azure AD. Familiar with alert escalation, root-cause analysis, and remediation workflows, with exposure to vulnerability management and compliance requirements including HIPAA and ITIL 4. Certified in Security+, CySA+, and PenTest+, bringing attacker-minded insight to defensive security operations.
Wazuh SIEM Implementation & Log Pipeline - Wazuh, Sysmon, Winlogbeat, Honeypot Deployment to to understands TTPs from threat actors.