I am a recent Master’s graduate with four years of hands-on experience in SOC operations, application security, and DevSecOps. Throughout my career, I have developed expertise in threat detection, secure code review, CI/CD pipeline security, and automation. I have a proven track record of reducing vulnerabilities and enhancing the security posture across complex environments.
I am highly skilled in collaborating across teams to drive cross-functional initiatives and deliver secure, scalable solutions. My technical proficiency includes programming in Python, PowerShell, C, SQL, and Bash, along with extensive experience using security tools such as Elastic SIEM, Metasploit, Burp Suite, and Palo Alto Firewall.
I have worked with cloud and DevSecOps platforms including AWS, Azure, Docker, Kubernetes, Terraform, Jenkins, and SonarQube. I am also knowledgeable in compliance frameworks such as NIST 800-53, ISO 27001, HIPAA, MITRE ATT&CK, and OWASP Top 10. I hold certifications including CompTIA Security+ and CySA+.
In my recent role as an Application Security Engineer, I conducted secure code reviews, implemented SAST scanning, and remediated numerous vulnerabilities. I have built secure data transfer services and enhanced authentication protocols using advanced technologies like SPIFFE-based mTLS and JWT authorization.
My internship experiences have strengthened my skills in log analysis, threat hunting, automation scripting, and incident response. I have contributed to improving alert fidelity and automating security workflows, which accelerated investigation processes and enhanced threat response capabilities.
I am passionate about continuous learning and have engaged in academic projects involving malware analysis, reverse engineering, SIEM and SOC home labs, forensic analysis, and secure CI/CD pipelines. I actively volunteer in cybersecurity communities, supporting event coordination and fostering professional networking.
I am eager to leverage my skills and experience to contribute to a forward-thinking organization focused on advancing security operations and protecting critical assets.