Detection rules, threat-intel repositories, and write-ups from the SOC floor — the technical output that backs up the résumé.
Ongoing series on Medium, Hashnode, and DEV.to covering SOC operations, detection strategy, and CISO-level decision-making.
Curated threat-intel pulses published on OTX AlienVault, tracking emerging indicators and campaigns.
Detection rule set mapped to MITRE ATT&CK techniques, built for Elastic SIEM/ELK deployments.
Curated lists of malicious domains, IPs, and hash values (MD5 / SHA-1 / SHA-256) for community reference.
Operational playbooks for SIEM tooling — investigation workflows, escalation paths, and tuning guidance.
Reporting script for Linux system performance and FIO storage benchmarking.