Projects

Agentic SOC Investigation Engine screenshot

SOC Engineering • AI • SOAR • Investigation

Agentic SOC Investigation Engine

A stateful investigation agent that accumulates evidence across IOC, CVE, and asset enrichment steps — then decides its own next action based on confidence.

View Project
AI-Assisted SOC + MITRE ATT&CK Mapping Engine screenshot

Detection Engineering • ATT&CK • AI

AI-Assisted SOC + MITRE ATT&CK Mapping Engine

Built a detection-focused SOC pipeline that maps alerts to MITRE ATT&CK using hybrid scoring (TF-IDF, embeddings, and rules) with explainable output and evaluation metrics.

View Project
AI-Assisted SOC Alert Analyzer screenshot

SOC Analysis • AI • Alert Triage

AI-Assisted SOC Alert Analyzer

Developed an AI-assisted alert analysis pipeline to triage security events, generate explanations, and improve analyst understanding of suspicious activity.

View Project
Suspicious Authentication Activity screenshot

Log Analysis • SIEM

Suspicious Authentication Activity

Investigating repeated login attempts and suspicious authentication patterns in Linux logs using Splunk.

View Project
Suspicious DNS Activity screenshot

DNS Analysis • Threat Detection

Suspicious DNS Activity

Analyzing enterprise DNS logs to identify reverse lookups, zone transfer attempts, and internal naming exposure.

View Project
Network and Web App Security Assessment screenshot

Enumeration • Exploitation

Network & Web App Security Assessment

Performing multi-tool enumeration across web paths, ports, and exposed services to identify and validate unauthorized access.

View Project
NotPetya project screenshot

Threat Research

NotPetya

Destructive malware investigation covering propagation, operational impact, and response lessons.

View Project
Stolen Footprints project screenshot

Network Forensics

Stolen Footprints

Reconstructing attacker activity from packet captures and tracing file theft through FTP traffic analysis.

View Project
Notepad Online project screenshot

Web Security

Notepad Online

Testing authorization controls and request manipulation in a web-based note storage application.

View Project
What Does the Cow Say project screenshot

Web Exploitation

What Does the Cow Say?

Investigating unsanitized input handling and demonstrating command injection behavior in a web application.

View Project
Wizard Spider project screenshot

Threat Research

Wizard Spider

Threat actor profiling and ransomware attack-chain analysis focused on TrickBot-linked operations.

View Project
Uber Breach project screenshot

Threat Research

Uber Breach (Lapsus$)

Analysis of social engineering, MFA fatigue, access escalation, and attacker tradecraft.

View Project

tools & platforms

Top Skills

Additional Tools & Technologies

credentials

Certifications

Click any badge to open details, verify the credential, or view the certificate PDF.