Security Operations & Infrastructure
- SIEM & Monitoring: Expert at deploying and managing Wazuh, Promtail, Loki, and Grafana (PLG Stack).
- Sources: Deep experience with Sysmon, Windows Event Logs, Linux Auditd, and Suricata IDS.
- Environment Mastery: Building and managing adversary emulation labs using Docker, KVM/Virt-Manager, and Ubuntu.
- Log Pipeline Design: Constructing centralized log ingestion workflows and managing data normalization for security analysis.