I apply a security engineering approach across network, endpoint, identity, and cloud environments, strengthening preventive and detective controls around asset criticality and operational needs.
In my security operations work, I correlate telemetry to validate alerts, scope impact, preserve evidence, and support containment and recovery decisions. I use least privilege, segmentation, and secure configuration to reduce exposure.
I also developed portfolio projects including a segmented home lab with Sigma and YARA detection examples, and a simulated incident response and threat hunting case study. I document the work so the methods, tests, evidence, and recovery steps are reproducible.

