Cybersecurity Projects
Enterprise Security Monitoring and Threat Detection using Wazuh SIEM
Fall 2025
- Deployment of a functional open-source Wazuh SIEM and EDR environment.
- Collect, analyze, and visualize system and security events
- Simulate and detect real-world attack behaviors
- Demonstrate foundational SOC (Security Operations Center) skills
Skills:
SOC Analysis, FIM, Log Analysis, Threat detection, MITRE ATT&CK
Network Forensics Investigation using Wireshark
Fall 2025
- Analyzing a packet capture (PCAP) file containing internal user network traffic.
- Detecting suspicious connections and web activity over the network.
- Reconstructing and extracting transferred files and images
- Documenting findings in a structured investigation report.
Skills:
PCAP Analysis, Wireshark, Network Forensics, Network Protocols
Cryptology: Encryption & Decryption
Fall 2025
- Implemented secure encryption workflows using symmetric (AES) and asymmetric (RSA) cryptography to protect data confidentiality across test communication channels and local storage systems.
- Developed custom encryption and decryption scripts with secure key generation, hashing (SHA-256), and integrity validation to prevent tampering, unauthorized access, and replay attacks.
Encryption, Decryption, Key Management
Phishing Email Simulation Lab Using GoPhish on Kali Linux
Spring 2025
Designed and deployed a controlled phishing simulation environment using GoPhish on Kali Linux to demonstrate social engineering awareness, credential harvesting techniques, and secure email campaign execution. Configured campaign elements including landing pages, email templates, and user target lists, while monitoring real-time engagement metrics such as email opens, link clicks, and submitted credentials.
Phishing email analysis, Kali Linux, Report writing
Cybersecurity Awareness Training Program for Hospitality Staff
Spring 2025
Developed and delivered a tailored cybersecurity awareness training program for hotel employees, focusing on phishing prevention, safe handling of guest data, secure use of hotel management systems, and incident reporting procedures. Conducted live demonstrations, scenario-based learning, and post-training assessments to measure knowledge retention and improve security behaviors, ultimately strengthening the hotel’s human-layer defense and compliance posture.
Security awareness training, Documentation & Reporting
Services & Capabilities
My capabilities range from technical vulnerability management, SOC deployment and optimization to Risk management frameworks.
Risk-Based Vulnerability Management
By translating technical findings into business risk for strategic resource allocation and conducting in-depth vulnerability assessments using industry-standard tools like Nessus.
SIEM Optimization & Threat Detection Controls
Implementing highly effective detection controls to minimize threat dwell time. Adept at deploying, architecting, and tuning SIEM solutions (Wazuh, Splunk, QRadar) with custom threat detection logic and advanced log correlation.