About

Security-minded operator with enterprise experience

Help desk and technical support background with a consistent security focus — incident investigation, phishing response, identity administration, and endpoint protection across Microsoft and Google environments.

Professional summary

I am a CompTIA Security+ and CySA+ certified cybersecurity professional supporting security operations from a high-volume managed IT environment. I combine end-user support with real security work: investigating alerts, containing phishing, and administering identity and endpoint platforms that SOC teams rely on every day.

I read Defender XDR, SentinelOne, CrowdStrike, and Huntress alerts in production. I pull Entra ID and Google Workspace audit logs to reconstruct account activity, and I communicate findings to non-technical users without slowing containment.

Earlier cybersecurity internship work added vulnerability scanning, Kibana threat hunting, tabletop incident response, and NIST-aligned vendor review. I am now preparing for OSCP and documenting that work in public notes.

Focus. Investigation, detection, and response across identity, email, and endpoint — the same work a security operations team does every day.

Tools & platforms

What I work with

Security tools

Microsoft Defender XDR SentinelOne CrowdStrike Falcon Huntress RocketCyber Nessus Tenable.io Kibana VirusTotal

Identity & access

Microsoft Entra ID Active Directory Okta SSO MFA Google Workspace

Cloud & endpoint

Microsoft 365 Exchange Online Intune SharePoint Teams Jamf NinjaOne AWS EC2 / IAM

Frameworks & scripting

NIST CSF CIS Benchmarks Incident Response Python PowerShell Bash