Skip to content
View cy-sc2911's full-sized avatar
🎯
Lock in
🎯
Lock in
  • 01:06 (UTC -12:00)

Block or report cy-sc2911

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
cy-sc2911/README.md

Cybersecurity Professional | Blue Team • Red Team

Breaking things ethically to Defend better


👤 About Me

Experienced professional with 9+ years of operational experience in data governance and security operations. I combine hands-on technical expertise with industry-recognized certifications.

Passionate about continuous learning, ethical hacking, and building secure infrastructure. Currently focused on advanced vulnerability assessment, SOC operations, and incident response.


🛠️ Technical Stack

Languages & Scripting

Python • Bash • SQL

Operating Systems

Kali Linux • Debian • Ubuntu • Windows 10/11

Tools & Technologies

CategoryTools
Network SecurityWireshark, Nmap, Cisco Packet Tracer, Nikto
Cloud & IdentityMicrosoft 365, Entra ID, Intune
SIEM & MonitoringSplunk, TryHackMe Labs, Security event analysis
Penetration TestingBurp Suite, Social Engineering Toolkit (SET), Custom Python tools
Development & Version ControlGitHub, Git

🏆 Certifications

Google Cybersecurity Professional Certificate — Coursera

  • Risk Management • Security Audits • Identity & Access Management • Incident Response • DLP • Python • Linux • MySQL

Cisco Networking Academy

  • Introduction to Cybersecurity
  • Networking Basics (IP Addressing • Subnetting • Routing • DHCP • DNS)

💼 Featured Projects

🛡️ Blue Team — Defensive Security

ProjectDescriptionTechnologies
Microsoft 365 SOC OperationsMonitored Entra ID, Exchange, SharePoint, and Intune security events; analyzed incident logs; implemented detection rulesEntra ID, SPLUNK, Log Analysis, SIEM
Network Security LabDesigned and deployed SOHO network topologies; configured Ethernet switching, DNS/DHCP, and hierarchical network architectureCisco Packet Tracer, Network Design
Security Audits & ComplianceConducted security assessments, identified vulnerabilities, documented remediation strategiesRisk Assessment, Threat Analysis

⚔️ Red Team — Offensive Security

ProjectDescriptionTechnologies
Custom Brute-Force ToolingDeveloped Python-based password attack tools; tested against various authentication mechanismsPython, Security Testing
Vulnerability Scanning & AssessmentIntermediate-level vulnerability identification across systems, networks, and web applications; remediation recommendationsNmap, Nikto, Metasploit
Payload Development & ExploitationCustom exploit creation; testing and validation in lab environmentsPython, Shellcode
Social Engineering & PhishingPhishing campaign development; security awareness testing; human element attack vectorsSET Framework, Red Team Tactics

🌐 Infrastructure & Networking

ProjectDescriptionTechnologies
Cisco Network DesignFull network topology design: Ethernet switching, IPv4 addressing, ARP, DNS, DHCP, routing protocolsCisco IOS, Packet Tracer, Network Architecture
Cisco Networking LabsHands-on IP addressing, subnetting, VLAN configuration, wireless security, transport layer protocolsPacket Tracer, Hands-On Labs

📚 Learning & Development Path

  • Fundamentals — Networking protocols, TCP/IP stack, system security architecture
  • Certifications — Google Cybersecurity Professional, Cisco Networking Academy
  • 🔄 Hands-On Labs — TryHackMe, Cisco Packet Tracer, custom lab environments
  • 🎯 Current Focus — Advanced vulnerability assessment, SOC operations, threat detection, incident response

🚀 Philosophy & Values

"I have no special talent. I am only passionately curious." — Albert Einstein

I believe in:

  • Ethical Hacking — Understanding attack vectors to build stronger defenses
  • Continuous Learning — The security landscape evolves constantly; staying ahead is essential
  • Practical Excellence — Real-world scenarios and hands-on labs over theory alone
  • Accountability — Security is a shared responsibility across organizations
  • Defense in Depth — Layered security strategies and proactive threat detection

📊 Featured Learning Resources

Pinned Collections

  • CISCO Networking Devices — Network design, switching, protocols, IOS CLI
  • Ethical Hacking & Pen Testing — TryHackMe labs, tools, techniques, methodologies
  • Microsoft 365 Security — Entra ID, Exchange, SharePoint, Intune monitoring and defense
  • SOC Fundamentals — Cloud security, Microsoft Intune monitoring, incident response
  • Vulnerability Scanning — Intermediate-level assessments and remediation
  • Google Cybersecurity — Python scripting, Linux fundamentals, security operations

Pinned Loading

  1. CISCO_Networking_DevicesCISCO_Networking_DevicesPublic

    Notes and labs from the Cisco Networking Devices course (NetAcad) | Covering network design, Ethernet switching, IPv4 addressing, ARP, DNS, DHCP, transport layer protocols, and Cisco IOS CLI

  2. Microsoft_365Microsoft_365Public

    Documentation and hands-on notes for monitoring Microsoft 365 (Entra ID, Exchange, SharePoint & Intune) from a SOC perspective, based on the TryHackMe M365 Monitoring module.

  3. SOC_fundamentals_TryHackMeSOC_fundamentals_TryHackMePublic

    SOC Fundamentals learning path from TryHackMe - Cloud security, Microsoft Intune monitoring, and incident response

  4. Ethical_Hack_TryHackMeEthical_Hack_TryHackMePublic

    A collection of ethical hacking and penetration testing notes, tools, and resources from TryHackMe walkthroughs. Covers network scanning, offensive security techniques, and organized hacking method…

  5. vulnerability-scanning-toolsvulnerability-scanning-toolsPublic

    Documentation of intermediate-level vulnerability scanning concepts — identifying weaknesses, misconfigurations, and security issues across systems, networks, and web applications.

  6. Google_Cybersecurity_Certificate_Lesson_07Google_Cybersecurity_Certificate_Lesson_07Public

    Hands-on Python scripting from the Google Cybersecurity Certificate (Lesson 07) | Automating file parsing, managing allow lists, and analyzing login data for security operations.

    Python