Core Competencies
GRC
ISO 27001, NIS2, GDPR, EU AI Act. Translating regulations into technical controls.
Automation
Python, Bash, CI/CD pipelines. Automating threat intelligence and reporting.
Infrastructure
Docker, Kubernetes, Networking (TCP/IP, DNS, TLS). Hardening systems.
Security Ops
Wazuh, Suricata, ELK Stack. Monitoring, detection, and incident response.
Featured Projects
View allWatchPhish
A phishing intelligence and simulation platform that aggregates live threat feeds, enriches domain data, and delivers interactive phishing awareness training.
ReactTypeScriptNode.jsExpress
View Project
ISMS Training Platform Design
Designed the content structure and user journey for an ISO 27001 compliant security awareness training platform.
FigmaMarkdownLMSISO 27001
View Project
Regulatory Monitoring Automation
Automated pipeline for tracking regulatory changes using RSS feeds, LLM summarization, and Slack notifications.
PythonOpenAI APISlack APIRSS
View Project