Detection & Response
Work across the SOC lifecycle by analyzing telemetry, triaging alerts, scoping incidents and converting adversary behavior into reliable detection, containment and continuous-improvement workflows.
DEFEND · INVESTIGATE · VALIDATE
Defensive insight. Offensive understanding. Practical security operations.
Capabilities developed through hands-on labs, security research, technical training and real-world defensive workflows.Work across the SOC lifecycle by analyzing telemetry, triaging alerts, scoping incidents and converting adversary behavior into reliable detection, containment and continuous-improvement workflows.
Map network architecture, identify exposed services and analyze traffic across enterprise systems from both defensive and adversarial perspectives.
Assess web applications and APIs through systematic validation of input handling, identity controls, sessions, server behavior and business logic.
Analyze enterprise identity controls and map how configuration weaknesses can develop into privilege escalation, lateral movement and broader attack paths.
Study adversary behavior, observable indicators and attack chains to support investigation, detection and informed defensive decisions.
Understand security monitoring, identity, misconfigurations and attack surfaces across cloud and containerized environments.
Apply core cryptographic concepts and hardening practices to protect data, credentials, transport security and system configurations.
Communicate cybersecurity concepts, evidence and technical findings clearly across written, verbal and community-facing contexts in English and Spanish.
Wazuh · Microsoft Sentinel · Splunk Enterprise Security · Elastic Security · Microsoft Defender XDR · CrowdStrike Falcon · Cortex XDR · IBM QRadar
Nmap · Wireshark · TCP/IP · Service Enumeration · Network Mapping
Linux · Windows · Active Directory · Kerberos · Hardening
Python · PowerShell · Bash · SQL · JavaScript · TypeScript · C Fundamentals · Go Fundamentals · Regex · JSON / YAML
Burp Suite · OWASP ZAP · ffuf · Gobuster · sqlmap · Postman · SecLists · OWASP Top 10
Amass · Subfinder · Naabu · Nuclei · Metasploit Framework · Searchsploit · Hydra · Hashcat · John the Ripper
BloodHound CE · SharpHound · Impacket · NetExec · Responder · Kerbrute · Certipy · Evil-WinRM
MITRE ATT&CK · OSINT · Malware Triage · Digital Forensics
AWS · Azure · Google Cloud · Kubernetes
English C1 · TOEIC · Technical Writing · Bilingual Documentation