Current
Cybersecurity Analyst
Embedded with engineering and ops to run the security loop — vulnerabilities, detections, and the policy that keeps them from recurring. Also designed and shipped the public site at Cybrotech.us.
What I do
- Web & network pentests OWASP Top 10 engagements across client surfaces — Burp, Nmap, Nessus.
- Vulnerability assessments CVE-mapped findings with remediation that engineering can actually ship.
- Data loss prevention Policies and endpoint controls designed to be adopted, not just documented.
- Office security audits Endpoint hardening, Wi-Fi segmentation, and awareness that sticks past the quiz.
- SIEM operations Wazuh and ThreatSpike — correlation, triage, and less noise on the board.
- API & database security Auth boundaries, validation, and encryption with the teams who own the risk.
- Policy & reporting Findings and controls mapped to ISO/IEC 27001:2022 for auditors and leadership.
Tools in daily use
Burp Suite · Nmap · Nessus · Wazuh · ThreatSpike · DLP · ISO 27001 · OWASP Top 10 · Python