I'm a CS student focused on defensive security — detection engineering, log analysis, and the unglamorous work of making sure an alert actually means something before it wakes anyone up.
Right now I'm building toward a blue team role: SOC fundamentals, SIEM tooling, network monitoring, and enough offensive knowledge to know what I'm defending against.
— replace this with your real bio. Be specific about what you've actually done.
Self-hosted detection lab: ingest sample traffic, alert on anomalies, tune rules to cut false positives. (This site runs on that same homelab.)
A set of Sigma/Splunk rules built from real ATT&CK techniques, with notes on why each one triggers and how it was validated.
— placeholders. Swap in real repos/writeups whenever you're ready.
Type help for available commands.