Михаил Муравьев
@0004577
I investigate incidents, hunt threats, and build efficient security monitoring pipelines.
What I'm looking for
At the Cyber Security Research Institute, I investigate enterprise security alerts using MaxPatrol SIEM and Kaspersky KUMA, supporting SOC L2 monitoring and incident response.
I've led forensic investigations across compromised Windows and Unix-like endpoints, scoped incidents, collected evidence, and developed threat-hunting queries for suspicious communications, anomalous network behavior, and malicious subnet activity.
I migrated real-time NetFlow analytics from ELK Stack to Akvorado, ClickHouse, and Grafana with custom integration scripts, reducing telemetry storage requirements by approximately 8–9x. I also tune PTAF WAF rules, analyze web attacks, monitor Suricata events, and maintain network security infrastructure.
I build practical security operations capabilities through T-Pot honeypots, Zabbix monitoring, automated backups, Python and Bash automation, secure code reviews, and Tier 1 analyst playbooks.
Experience
Work history, roles, and key accomplishments
SOC & Security Engineer
Cyber Security Research Institute
Feb 2025 - Present (1 year 6 months)
Investigated and triaged security alerts using MaxPatrol SIEM and Kaspersky KUMA, led forensic investigations of compromised endpoints, and migrated NetFlow analytics to Akvorado, ClickHouse, and Grafana, reducing storage requirements by 8-9x.
Education
Degrees, certifications, and relevant coursework
Don State Technical University
Master's Degree, Cybersecurity
Master's Degree in Cybersecurity with specialization in Network Security, Cryptography, and Cyber Threat Intelligence.
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Михаил?
You can contact Михаил and 90k+ other talented remote workers on Himalayas.
Message МихаилGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
