type: public_trustname: Derick Dmellolocated_in: New Yorkstatus: Open to → SOC | GRC | DFIR rolesindustry: Public Sector & Higher Ed. Cyber Defenceeducation:
- "Self-taught Red Teamer with a core focus on Cyber Defence"
- "🎓 M.S. Digital Forensics & Cyber Security"
- "🎓 B.S. IT Infrastructure Management & Cyber Security"fields_of_interest:
- "Security Operations (SOC Tier 1–3)"
- "Incident Response & Digital Forensics (DFIR)"
- "Governance, Risk & Compliance (GRC)"
- "Cyber Threat Intelligence & OSINT"
- "Cloud Security & DevSecOps"technical_background:
- "Threat Detection, Log Correlation & SIEM Engineering"
- "IR Playbook Development & Root Cause Analysis"
- "Security Compliance → NIST CSF/800-53, CIS, ISO 27001, ISO 42001, SOC2, PCI-DSS"
- "Vulnerability Assessment & Adversary Simulation"
- "Sandboxing, Virtualization & Homelab Infrastructure"currently_building:
- "SIEM detection rule library (Splunk + Elastic)"
- "AI assited IR scripts"
- "ATT&CK-mapped homelab threat simulation environment"2026_goals:
- "Ship 3+ public security engineering projects"
- "Contribute to open-source threat intel tooling"
- "Earn CISA / CISSP"| Project | Description | Status |
|---|---|---|
| 🚨 S.I.R.T. | AI-powered SOC analyst assistant generating stack-specific, MITRE ATT&CK-tagged IR checklists. Live at sirt-five.vercel.app | 🟢 Live |
| 🏢 ResolvX GRC | A complete end-to-end GRC program for a fictional mid-size fintech SaaS service organization | 🟢 Active |
| 🐍 Mini-PySec Projects | Python security tool suite — offensive & defensive, built through full SDLC | 🟢 Active |
| 🏗️ Homelab Enterprise IT | Simulated enterprise IT environment for detection & response testing | 🟢 Active |
| 📡 SIEM Detection Library | Splunk & Elastic detection rules mapped to MITRE ATT&CK | 🔨 In Progress |
| Security Ops | SplunkElastic StackMS SentinelWazuhCrowdStrike FalconThe HiveMITRE ATT&CKNessusOpenVAS |
| DFIR | AutopsyVolatilityKAPEFTK ImagerRedlineBelkasoft XWiresharkCAINE |
| Network & Infra | CiscoCheckpoint NGFWActive DirectoryVPN / IDS / IPSVMware ESXiEntra ID |
| Compliance | NIST CSFNIST 800-53NIST 800-37ISO 27001:2022ISO 42001:2023PCI-DSSHIPAASOC 2VantaRSA Archer |
"Security is not a product, but a process." – Bruce Schneier





