Manual Triage Automation With Enrichment
An enrichment-driven workflow that replaced manual incident creation by adding routing metadata, onboarding teams through lookup tables, and making ownership decisions automatable.
Projects
Selected work across security automation, detection engineering, and platform-focused problem solving.
An enrichment-driven workflow that replaced manual incident creation by adding routing metadata, onboarding teams through lookup tables, and making ownership decisions automatable.
An ELK-based lab for simulating credential dumping, execution, and lateral movement so detections can be tuned against realistic behavior instead of theory.
This site rebuilt around static project and blog content so new entries can be added from JSON now and moved to a CMS later without rewriting the UI.