Protecting digital infrastructure through intelligent threat detection, SIEM engineering, and cloud security operations. Specialized in Azure environments and advanced KQL analytics.
I'm a Security Analyst with a passion for hunting threats before they become incidents. My work lives at the intersection of data, detection engineering, and cloud security.
Day-to-day I operate across SIEM platforms and XDR solutions, building detection rules, triaging alerts, and conducting investigations. My Azure expertise lets me secure cloud-native workloads from the ground up.
I'm fluent in KQL — writing complex analytics queries that turn raw telemetry into actionable intelligence. Whether it's a Windows endpoint or a Linux server, I know where adversaries hide.
Building, tuning, and managing security information and event management platforms. Detection rule creation, log ingestion, and alert optimization.
Extended detection and response across endpoints, network, and cloud. Correlating telemetry sources to identify and contain threats fast.
Securing Microsoft Azure environments using Defender for Cloud, Sentinel, Entra ID, and native security controls across subscriptions.
Advanced Kusto Query Language for threat hunting, detection engineering, and security dashboards in Microsoft Sentinel and Log Analytics.
Deep understanding of Windows internals, event logs, Active Directory security, and endpoint hardening against common adversary techniques.
Linux system monitoring, log analysis, privilege escalation detection, and securing server workloads against lateral movement and persistence.
Open to security roles, consulting, and collaboration on detection engineering projects. Reach out through any of the channels below.