experience / 02

Experience

Three structured roles across detection engineering, SOC operations, and cloud infrastructure.

0+

hands-on AWS labs completed

0+

malware samples triaged

0+

IOCs extracted & categorized

0

KQL scheduled query rules

Jan – Apr 2026 Remote

Security Engineering Intern

Cyblack Internship

  • Conducted a full penetration test on VulnBank, a deliberately vulnerable training application (not a production banking system), using Burp Suite; independently discovered and exploited 7 vulnerabilities (SQL injection, JWT manipulation, mass assignment, race condition, IDOR, XSS, SSRF), mapped to the Cyber Kill Chain
  • Authored 8 KQL Scheduled Query Rules in Microsoft Sentinel covering credential stuffing, phishing payloads, WannaCry C2, XWorm persistence, and AsyncRAT communications, each mapped to MITRE ATT&CK with entity mappings for automatic incident enrichment
  • Led Team 7's cloud security sprint: deployed Microsoft Defender for Servers with JIT VM access and a Logic App playbook for automated incident escalation
  • Authored a Privileged Account Policy (P7S-PAP-01) aligned to ISO/IEC 27002:2022, NYDFS 23 NYCRR 500.07, and PCI-DSS, with MFA enforcement, bastion host access, and a dual-approval Break-Glass procedure
  • Profiled three government-sector threat actors in OpenCTI using the Diamond Model; extracted and categorized 60+ IOCs from WannaCry, XWorm, and AsyncRAT malware samples
Sep – Dec 2025 Remote

SOC Analyst Intern

Cyblack SOC Academy

  • Performed malware triage on 30+ samples using VirusTotal hash scanning and OSINT enrichment, producing written IOC reports
  • Ran credentialed Nessus scans across lab environments, triaged findings by CVSS score, drafted remediation recommendations
  • Automated patch deployment for common CVEs using Ansible playbooks, cutting manual remediation steps
  • Investigated simulated security incidents using SIEM log analysis and threat intelligence feeds (OTX, AbuseIPDB)
Aug – Nov 2025 Remote

Cloud Engineering Trainee

AWS re/Start Program

  • Completed 40+ hands-on labs covering EC2, VPC, S3, CloudTrail, KMS, SNS, and EventBridge
  • Built and documented cloud architecture patterns around least-privilege IAM and audit logging
  • Developed proficiency in CI/CD fundamentals, infrastructure automation, and AWS Well-Architected Framework principles