Portrait of Shannon Smith

Cybersecurity Professional

Shannon Smith

U.S. Navy veteran and Virginia Tech graduate who builds working SOC detection tooling — including a three-phase SOC pipeline spanning alert triage, MITRE ATT&CK mapping, and a self-directing investigation agent.

Selected into the competitive WiCyS / SANS Security Training Scholarship, with hands-on experience in log analysis, network traffic analysis, and threat detection across Windows and Linux environments using Splunk, Wireshark, Zeek, and Nmap. GFACT and GSEC complete, GCIH in progress — working toward a Security Operations, Detection Engineering, or SOC Analyst role.

  • Focus: Security investigations, DFIR, log analysis, and CTF challenges
  • Training: WiCyS Security Training Scholarship • SANS Courses • Intellectual Point • NPower
  • Background: Software development and systems thinking
  • Current Work: Portfolio development, home lab engineering, and technical writeups
2025–Present

WiCyS / SANS Security Training Scholarship

SEC275 (GFACT) • SEC401 (GSEC) • SEC504 (GCIH)

Selected competitively for a national scholarship pairing WiCyS with SANS GIAC training — advancing through system security, enterprise defense, and incident-handling coursework, with hands-on labs in forensics, web vulnerabilities, and privilege escalation. Currently completing SEC504 (GCIH), targeting November 2026.

2024–2025

Intellectual Point

Security Training • Certification Preparation

Completed 540 hours of hands-on training in SOC operations and network defense — including Splunk alert monitoring, vulnerability assessment, and simulated incident investigation with Kali Linux and Burp Suite — supporting certification study for Security+, Linux+, Splunk Core Power User, CEH, and UiPath Certified RPA Associate.

2024

NPower

IT Support • Networking • Cybersecurity Foundations

Hands-on training installing, configuring, and troubleshooting Windows, Linux, and macOS systems, with core networking fundamentals in TCP/IP, ports, and protocols. Included CompTIA ITF+ and A+ coursework alongside Google IT Support training.

2021–2023

Master of Information Technology

Virginia Tech

Graduate coursework spanning full-stack software engineering — Java, web and mobile application development, database design — alongside cybersecurity policy and program design, including graduate certificates in Software Development and Cybersecurity Policy.

2024–2026

Completed Certifications

GSEC • GFACT • UiPath RPA • Splunk CCPU • CEH • Linux+ • Sec+ • A+

Eight certifications spanning GIAC/SANS security fundamentals (GSEC, GFACT), offensive security (CEH), systems administration (Linux+, A+), SIEM analysis (Splunk Core Power User), DoD 8570/8140-aligned security (Security+), and process automation (UiPath RPA) — a foundation across security operations, systems, and automation.

View verified certifications on Credly
2025–Present

Cybersecurity Portfolio Development

CTFs • Technical Writeups • Home Lab

Designed and built a three-phase SOC detection pipeline — alert triage, MITRE ATT&CK mapping, and a self-directing investigation agent — alongside documented investigations into authentication and DNS anomalies, and threat actor write-ups covering NotPetya, Wizard Spider, and the Uber/Lapsus$ breach.

2021–2023

Software Development Projects

Kotlin • Java • Web Development

Graduate coursework spanning Java application development, Android development in Kotlin, and full-stack web application design — technical foundations that now support the automation and tooling behind current security projects.

Prior Service

U.S. Navy Leadership & Operations

Operations • Teamwork • Discipline

Led and supervised 20+ personnel across technical operations and maintenance for mission-critical equipment, directing incident response under operational pressure and building training programs that achieved a 100% team qualification rate. Developed resilience, accountability, and mission-focused execution that continue to shape how I approach technical work.