"I break assumptions. Then I build detections for what slips through."
I'm a security professional with 5+ years of experience working across enterprise SOC, security consulting, and MSSP environments. My work spans incident investigation, threat analysis, and identifying security gaps that automated systems routinely miss.
I don't wait for alerts to tell me something is wrong. I look at how controls are configured, where assumptions are made, and where those assumptions break. That's where the real risk lives — in the gaps between policy and behavior.
I've worked with organizations across banking and advisory sectors, operating in 24×7 environments where precision matters. Along the way I've built internal tooling to improve how security teams triage and investigate incidents.
I focus on understanding how attackers actually operate — TTPs, choke points, blind spots — not just what signature fired. Alerts are symptoms. Behavior is the disease.
Every security control is built on assumptions. I look for where those assumptions don't hold — that's where gaps live, often silently, for months before someone finds them the hard way.
I want to understand how systems fail, not just how they work when everything goes right. The interesting security problems are in edge cases, misconfigurations, and unexpected interactions.
A finding that doesn't produce a better detection or a closed gap is just a report. I try to close the loop — turning what I discover into something that makes the environment harder to exploit.
Open to Security Engineer roles in detection, threat analysis, and incident response. Let's talk.