Building enterprise-grade cybersecurity projects focused on Microsoft Sentinel, Microsoft Defender XDR, Detection Engineering, Threat Hunting, KQL, Sigma Rules, and SOC Automation.
| Experience | Specialization | Ecosystem | Current Focus |
|---|---|---|---|
| 2.5+ Years | Detection Engineering | Microsoft Security | Enterprise SOC |
| Cyber Security Consultant | Threat Hunting | Sentinel • Defender XDR | Automation • KQL • Sigma |
Designing enterprise-grade security engineering solutions—from telemetry collection and detection engineering to threat hunting, incident response, automation, and documentation.
| Repository | Highlights |
|---|---|
| Azure SOC Simulation Project | Azure Infrastructure • Microsoft Sentinel • Defender XDR • Windows & Linux Telemetry • Detection Engineering • Threat Hunting • Sigma Rules • Attack Simulations • SOC Automation |
| KQL Mastery | Operators • Aggregations • Joins • Detection Queries • Hunting Queries • Analytics Rules • Investigation Queries |
| Sigma Rules | Fundamentals • Rule Development • Rule Conversion • Sentinel Deployment • Detection Validation • Rule Tuning |
| Detection Engineering | Windows • Linux • Microsoft Sentinel • KQL • Sigma Rules • MITRE ATT&CK |
| Cloud Security | Detection Engineering | Threat Hunting | Automation |
|---|---|---|---|
| Microsoft Azure | KQL | MITRE ATT&CK | Automation Rules |
| Microsoft Sentinel | Sigma Rules | Threat Hunting | Logic Apps |
| Defender XDR | Analytics Rules | IOC Analysis | Playbooks |
| Microsoft Entra ID | Detection Tuning | Incident Response | SOC Automation |
| Domain | Technologies |
|---|---|
| Cloud Security | Microsoft Azure • Microsoft Sentinel • Defender XDR • Microsoft Entra ID |
| Detection Engineering | KQL • Sigma Rules • Analytics Rules • MITRE ATT&CK |
| Endpoint Security | Windows Internals • Sysmon • PowerShell • Linux • Syslog |
| Incident Response | Investigation • Alert Triage • Threat Hunting • IOC Analysis |
| Monitoring | Log Analytics • Windows Event Logs • Linux Telemetry |
| Automation | Automation Rules • Logic Apps • Playbooks |
Understand ───► Build ───► Validate ───► Detect ───► Investigate ───► Improve ───► Document
| Principles | |
|---|---|
| ✔ Build security solutions from scratch | ✔ Validate every implementation |
| ✔ Generate real telemetry | ✔ Engineer practical detections |
| ✔ Investigate alerts & incidents | ✔ Document everything for reproducibility |
| Detection Engineering | Cloud Security | Research |
|---|---|---|
| Advanced Detection Engineering | Microsoft Security Ecosystem | Threat Intelligence |
| Detection Tuning | Azure Security | Malware Analysis |
| KQL Optimization | Defender XDR | Digital Forensics |
| SOC Automation | Zero Trust | Security Architecture |
| Microsoft | Hands-on Learning | Professional Development |
|---|---|---|
| Security Operations Analyst | Practical Blue Team Labs | Offensive Security Fundamentals |
| Building | Exploring | Long-Term Vision |
|---|---|---|
| Enterprise SOC Engineering | Advanced Threat Hunting | Senior Detection Engineer |
| Detection Engineering | Malware Analysis | Security Research |
| Microsoft Security Stack | Digital Forensics | Blue Team Specialist |
| SOC Automation | Threat Intelligence | Microsoft Security Architect |
