Cybersecurity analyst specializing in enterprise incident triage, Microsoft Defender for Endpoint (MDE), Microsoft Sentinel SIEM, and vulnerability management. Based in New York.

Automated threat hunting assistant leveraging OpenAI's API to query Azure and MDE telemetry, accelerating alert triaging.
Forensic reconstruction of an RDP initial breach, Windows Defender tampering, LSASS Mimikatz extraction, and Discord exfiltration.
Incident investigation into AnyDesk remote persistence, archive staging, and unauthorized cloud exfiltration through MEGA.
Hunting methodology correlating DeviceNetworkEvents with known TOR directory nodes and proxy tunneling.
Implementation of credentialed discovery scans, SLA prioritization, and remediation reporting in Tenable.io.
Custom interactive workbooks for Sentinel mapping authentication failures, network anomalies, and threat intelligence.
SY0-701
Core 1 & 2
Entry-Level Cybersecurity
Professional Certificate (Coursera)
1Z0-1085-25
1Z0-1122-25
AZ-900
I am always open to discussing enterprise security operations, incident triage, detection engineering, and vulnerability management opportunities.
Download my complete verified resume for a comprehensive breakdown of technical skills, enterprise certifications, and security incident investigations.
Cybersecurity Operations & Detection Engineering