What I bring to the table

Skills & Arsenal

A security engineer's toolkit — built through hands-on practice, research, and relentless curiosity.

Areas of expertise

What I Specialise In

Scripting & Automation

Writing Python and Bash to automate security workflows, build tooling, and orchestrate SOAR playbooks.

PythonBashPowerShellSOAR

Offensive Security

Penetration testing, ethical hacking, and vulnerability exploitation — understanding threats from the attacker's perspective.

PentestingMetasploitBurp SuiteNmap

Malware Analysis

Static and dynamic malware analysis, reverse engineering techniques, and threat intelligence research.

Reverse EngineeringThreat IntelCVE Analysis

Cloud Security

Securing AWS environments, hardening IAM configurations, and building security into CI/CD pipelines.

AWS IAMAWS WAFCI/CD SecurityLogging

Threat Detection & IR

SIEM operations, log analysis, incident investigation, and response playbooks aligned to MITRE ATT&CK.

SplunkMITRE ATT&CKWiresharkIR

Governance & Compliance

Implementing and auditing security frameworks across enterprise environments to manage risk effectively.

ISO 27001NIST CSFCISISO 42001
The full toolkit

Technical Stack

Scripting & Automation
Python Bash PowerShell SOAR Playbooks CI/CD Pipeline Security
Offensive Security Tools
Metasploit Burp Suite Nmap Nessus Penetration Testing Ethical Hacking
SIEM & Threat Detection
Splunk Microsoft Defender Wireshark MITRE ATT&CK Incident Response Log Analysis
Cloud Security
AWS IAM AWS WAF Security Groups CloudTrail / Logging Infrastructure Hardening
Frameworks & Standards
ISO 27001 NIST CSF CIS Benchmarks ISO 42001 Risk Management Security Policies
Malware & Research
Malware Analysis Reverse Engineering Threat Intelligence CVE Analysis Vulnerability Research
Credentials

Certifications

Certified

CompTIA Security+

CompTIA
Certified

Certified in Cybersecurity (CC)

ISC2
Lead Auditor

ISO/IEC 27001:2022

Information Security Mgmt
Lead Auditor

ISO/IEC 42001:2023

AI Management Systems
Never stop learning

Currently Leveling Up

The best security practitioners never stop studying. Here's what's in my lab right now.

In Progress

OSCP Path

Offensive Security Certified Professional — the gold standard in penetration testing.

Actively Practicing

Malware Analysis

Deep-diving into static and dynamic analysis, assembly basics, and reverse engineering tooling.

Studying

CEH

Certified Ethical Hacker — systematic methodology for pen testing and vulnerability assessment.

Planned

AWS Security Specialty

Advanced cloud security architecture, threat modelling, and AWS-native defensive services.

Beyond the technical

Professional Capabilities

Teamwork & Collaboration

Communicating security risks clearly to both technical and non-technical stakeholders across teams.

Communication

Confident communicator — from incident reports and security briefings to awareness campaigns.

Project Management

Structured planning and execution for security engagements, research, and compliance projects.

Problem Solving

Methodical and creative — breaking down complex security challenges to find actionable solutions.

Adaptability

Security threats evolve fast. Staying sharp, learning continuously, and pivoting quickly is second nature.

Security Evangelism

Passionate about building security culture through training, writing, and making complex topics accessible.

Want to see these skills in action?

Check out my portfolio for real-world projects, or get in touch to discuss how I can contribute to your team.