KCD Security Observability Demo
A Kubernetes security observability demo built for my KCD Guadalajara talk, showing how Cilium Tetragon and eBPF can detect, correlate, and block an attack in real time.
Projects
Selected work across security automation, detection engineering, and platform-focused problem solving.
A Kubernetes security observability demo built for my KCD Guadalajara talk, showing how Cilium Tetragon and eBPF can detect, correlate, and block an attack in real time.
An enrichment-driven workflow that replaced manual incident creation by adding routing metadata, onboarding teams through lookup tables, and making ownership decisions automatable.
An ELK-based lab for simulating credential dumping, execution, and lateral movement so detections can be tuned against realistic behavior instead of theory.
This site rebuilt around static project and blog content so new entries can be added from JSON now and moved to a CMS later without rewriting the UI.