Introduction
Overview.
Hello! I'm Muhammad Rafay Ali, an Experienced Cyber Security Engineer Skilled in crafting detection logic, optimizing logs, and engineering scalable monitoring pipelines using Wazuh and Threat Hawk to surface high-signal threats.
I specialize in Threat Hunting, Rule Optimization, and ISO 27001 compliance. Experienced in SOC Operations, SIEM Engineering, and Threat Detection, ensuring robust monitoring and rapid threat mitigation.
Actively sharpening offensive and defensive skills through TryHackMe and Hack The Box labs, translating attack techniques into practical detection and response strategies. Certified in ISO/IEC 27001 Lead Auditor, SOC Foundations, and Google Cybersecurity Professional programs, reinforcing a strong foundation in governance concepts, security operations, and modern defensive practices.
"Let's collaborate to bring your secure infrastructure to life!"
Expertise
Skills.
SIEM & SOC
Threat Detection & Response
Offensive Security
VAPT & Exploitation
OS & Cloud
Infrastructure & Hardening
Governance
GRC & Standards
Automation
Scripting & DevOps
Work Experience
Academic Background
Bachelor of Science in Computer Science
2019 - 2023Key Courses
Featured Projects
Active Directory Attack Simulation & Hardening
securityEmulated post-exploitation techniques in a Windows AD lab using Atomic Red Team, PowerShell, and Mimikatz. Integrated Wazuh SIEM to alert on 20+ MITRE-mapped TTPs and performed CIS-based hardening, achieving 80% increase in compliance.
Multi-Sensor Intrusion Detection IoT
developmentDeveloped an IoT-based security solution using ESP32, motion/gas/fire sensors, and ESP32-CAM. Engineered a mobile application using Flutter and Firebase for real-time alerts, improving response time by 60%.
Interactive Terminal
Execute commands, simulate attacks, and analyze security.
Live Threat Simulation
* Simulated attack chain for educational demonstration.
Password Auditor
Password analysis checks against Have I Been Pwned database (11+ billion breached passwords).
Security Checklist
Get In Touch
Let's Connect
I'm open to discussing SOC operations, SIEM engineering opportunities, and security consultation.