ISC2- and CompTIA-certified cybersecurity professional, with operational experience in endpoint security, incident response, and compliance auditing across mixed Linux and Windows Server environments.
I work on the operational side of security — maintaining endpoint agent health, triaging alerts, and conducting compliance audits across multi-segment network infrastructure.
Day-to-day this means Trend Micro Deep Security operations, CIS benchmark audits, and root-cause analysis on incidents and degraded endpoints. I work primarily in mixed Linux and Windows Server environments.
ISC2 CC & CompTIA Security+ certified · BSc Computer Science, York University
A small detection-and-response lab built for practising the full alert-to-triage-to-postmortem cycle end-to-end. A Wazuh SIEM aggregates telemetry from a Windows agent and a CentOS agent, with a honeypot drawing traffic and a Kali Linux attacker running controlled red-team exercises against the stack.
A quick version of the compliance audits I run at work. Checks a host against ~30 controls from the CIS Distribution Independent Linux Benchmark: SSH configuration (read via sshd -T), kernel and network sysctls, account and password policy, file permissions, logging and auditd. Each result includes what the check actually found, plus a fix hint when it fails. Reports to console, JSON or HTML, and the exit code makes it easy to cron for drift detection.