Security professional specializing in detection engineering, threat hunting,
and security research. Focused on understanding adversary tradecraft and
building detections that matter.
Threat research, adversary emulation, purple teaming & application security testing. Led adoption of OCSF data standardization for over 200 telemetry sources. Designed CI/CD pipelines for detection-as-code at scale. Creation and maintainer of detection validation tooling, and autonomous red-teaming with a focus on AI-first process development.
Standardized taxonomy for over 5000 detection analytics. Co-presented with MITRE & Unit 42 a webinar on RMM abuse. Automated response playbooks in Ruby/Go. Contributed Atomic Red Team test cases & Sigma rules.
Threat hunting & intrusion response for Fortune 100-1000 clients. Proactive hunt campaigns against advanced and persistent threats. Executive-level incident reporting, and customer-level training in multiple SIEM and EDR technologies. Mentor junior analysts in the form of 1-on-1 peer feedback, and organization-wise lunch and learn sessions.