I’m a cybersecurity professional focused on Endpoint Security, security operations, cloud and identity security, vulnerability risk management, incident investigation, and AI-assisted analyst workflows.
I build hands-on security projects that combine deterministic security logic, local AI models, evidence analysis, risk prioritization, dashboards, reporting, and human-in-the-loop decision support.
AI-assisted SOC investigation, evidence correlation, triage, and human-reviewed reporting.
TraceAI Engine is a local-first AI security investigation workspace for SOC workflows. It combines deterministic SOC logic, Ollama-powered local LLM workflows, RAG-style case context retrieval, AI-assisted triage, evidence correlation, interactive relationship graphs, MITRE ATT&CK mapping, KQL pivots, and Markdown/PDF incident reporting.
- Local LLM workflows using Ollama
- RAG-style SecOps Copilot over local case context and playbooks
- AI-assisted phishing and endpoint evidence triage
- Interactive evidence relationship graph using PyVis / NetworkX
- MITRE ATT&CK mapping and KQL pivot generation
- Missing evidence checklist for analyst validation
- Human-reviewed incident reports with guardrails
Repository currently private while the project is being refined.
Local-first cyber risk prioritization, remediation planning, SLA tracking, and governance workflow platform.
RiskWeaver AI is a local-first cyber risk platform focused on turning raw security findings into prioritized remediation decisions. It supports vulnerability risk scoring, control-gap analysis, remediation SLA tracking, risk decisions, exception workflows, local AI-assisted guidance, agentic risk reduction planning, and executive-style risk reporting.
- Risk scoring and prioritization
- Asset and finding risk queue
- Control gap analysis
- Remediation SLA and task tracking
- Risk acceptance, exception, and governance decisions
- Agentic risk reduction planning
- Local AI-assisted planning and reporting
- Dark-mode risk operations dashboard
Repository currently private while the project is being refined.
-
Federated Identity Management with Okta and Azure AD / Entra ID
Walkthrough -
Cloud-Driven Website Transformation with AWS
Walkthrough
-
Penetration Testing and Security Enhancement Project
Walkthrough -
Windows Privilege Escalation with Local Potato
Walkthrough
-
Advanced Malware Analysis and Digital Forensics
Walkthrough -
WannaCry Ransomware Reverse Engineering
Walkthrough
-
Biometrics Facial Recognition using OpenCV
Walkthrough
- AI security engineering and local LLM workflows
- SOC automation and analyst decision support
- Incident investigation, evidence review, and reporting
- Microsoft Sentinel, Defender XDR, KQL, and security operations
- Entra ID, Okta, SSO, MFA, and identity security
- Endpoint evidence analysis and PowerShell investigation
- Vulnerability management and risk-based remediation
- Cloud security and infrastructure hardening
- Malware analysis, DFIR, and threat investigation
- Python, PowerShell, FastAPI, Next.js, TypeScript, and automation
Languages & Frameworks:
Python, PowerShell, TypeScript, FastAPI, Next.js, Streamlit
Security & Cloud:
Microsoft Defender XDR, Microsoft Sentinel, KQL, Entra ID, Intune, Azure, Okta, Splunk, CrowdStrike
AI & Automation:
Ollama, local LLM workflows, Microsoft Graph, NetworkX, PyVis, ReportLab
- CompTIA Security+
- Security Blue Team Level 1
- Palo Alto Cortex XSOAR SOAR Engineer
- Microsoft Copilot for Security Ninja
- Building local-first AI tools for cybersecurity operations
- Improving SOC investigation and analyst decision-support workflows
- Developing agentic risk reduction and remediation planning systems
- Creating security dashboards, reports, and governance workflows
- Applying AI safely with human approval and local data guardrails
Building practical AI security tools, SOC workflows, cloud security labs, and cyber risk automation platforms.