Skip to content
View mello-io's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report mello-io

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mello-io/README.md

Hello there !! Let's Connect!☕💬


👨🏻‍💻 Security File : [DECLASSIFIED]

type: public_trustname: Derick Dmellolocated_in: New Yorkstatus: Open to → SOC | GRC | DFIR rolesindustry: Public Sector & Higher Ed. Cyber Defenceeducation:
- "Self-taught Red Teamer with a core focus on Cyber Defence"
- "🎓 M.S. Digital Forensics & Cyber Security"
- "🎓 B.S. IT Infrastructure Management & Cyber Security"fields_of_interest:
- "Security Operations (SOC Tier 1–3)"
- "Incident Response & Digital Forensics (DFIR)"
- "Governance, Risk & Compliance (GRC)"
- "Cyber Threat Intelligence & OSINT"
- "Cloud Security & DevSecOps"technical_background:
- "Threat Detection, Log Correlation & SIEM Engineering"
- "IR Playbook Development & Root Cause Analysis"
- "Security Compliance → NIST CSF/800-53, CIS, ISO 27001, ISO 42001, SOC2, PCI-DSS"
- "Vulnerability Assessment & Adversary Simulation"
- "Sandboxing, Virtualization & Homelab Infrastructure"currently_building:
- "SIEM detection rule library (Splunk + Elastic)"
- "AI assited IR scripts"
- "ATT&CK-mapped homelab threat simulation environment"2026_goals:
- "Ship 3+ public security engineering projects"
- "Contribute to open-source threat intel tooling"
- "Earn CISA / CISSP"

📊 GitHub Activity


🔬 Featured Projects

ProjectDescriptionStatus
🚨 S.I.R.T.AI-powered SOC analyst assistant generating stack-specific, MITRE ATT&CK-tagged IR checklists. Live at sirt-five.vercel.app🟢 Live
🏢 ResolvX GRCA complete end-to-end GRC program for a fictional mid-size fintech SaaS service organization🟢 Active
🐍 Mini-PySec ProjectsPython security tool suite — offensive & defensive, built through full SDLC🟢 Active
🏗️ Homelab Enterprise ITSimulated enterprise IT environment for detection & response testing🟢 Active
📡 SIEM Detection LibrarySplunk & Elastic detection rules mapped to MITRE ATT&CK🔨 In Progress

🧰 Toolkit

Security OpsSplunkElastic StackMS SentinelWazuhCrowdStrike FalconThe HiveMITRE ATT&CKNessusOpenVAS
DFIRAutopsyVolatilityKAPEFTK ImagerRedlineBelkasoft XWiresharkCAINE
Network & InfraCiscoCheckpoint NGFWActive DirectoryVPN / IDS / IPSVMware ESXiEntra ID
ComplianceNIST CSFNIST 800-53NIST 800-37ISO 27001:2022ISO 42001:2023PCI-DSSHIPAASOC 2VantaRSA Archer

"Security is not a product, but a process." – Bruce Schneier

Pinned Loading

  1. Operations-in-Cyber-Defense-IOperations-in-Cyber-Defense-IPublic

    This academic project explores defensive cybersecurity operations through practical implementation of Security Operations Center (SOC) workflows and Network Security Monitoring (NSM)

    1

  2. Operations-in-Cyber-Defense-IIOperations-in-Cyber-Defense-IIPublic

    This project demonstrates Digital Forensics and Incident Response (DFIR) methodologies in enterprise Security Operations Centers.

  3. ResolvX-GRC-ProgramResolvX-GRC-ProgramPublic

    A complete end-to-end GRC program for a fictional mid-size fintech SaaS service organization "ResolvX".

    HTML

  4. Mini-PySec-ProjectsMini-PySec-ProjectsPublic

    Small scale locally deployable python projects for offensive and defensive security.

    Python

  5. Enterprise-IT-Infrastructure-LabEnterprise-IT-Infrastructure-LabPublic

    Enterprise grade IT infrastructure home lab.