At Lentra AI, I engineered Wazuh SIEM telemetry and custom DBMS and application-log decoders, improving detection accuracy and reducing false-positive alert noise by 40%.
I investigate IoCs, map anomalous activity to MITRE ATT&CK, and administer Palo Alto Cortex XDR, Prisma Cloud, and Panorama for host isolation, threat hunting, and policy validation. Previously, I automated vulnerability reporting at Bloggerscon Vision and conducted web application assessments using Nmap, Nessus, and Burp Suite at DCDIUM Technologies.
Through personal detection engineering work, I've integrated Wazuh, Falco, Velociraptor, Shuffle SOAR, and MISP to automate telemetry enrichment, endpoint triage, containment, and malicious-IP blocking.
