Featured Projects
Scroll to explore
Active Directory Attack Simulation & Hardening
securityEmulated post-exploitation techniques in a Windows AD lab using Atomic Red Team, Mimikatz, and PowerShell. Integrated Wazuh SIEM to detect 20+ MITRE-mapped TTPs and performed CIS-based hardening, achieving 80% compliance improvement.
ThreatHawk SIEM Deployment & Custom Detection Engineering
securityDeployed ThreatHawk and Wazuh SIEM across multi-vendor enterprise environments. Built 30+ custom detection rules and log parsers for Huawei routers, WatchGuard firewalls, TrendMicro EDR, CrowdStrike, and spyware/grayware events. Reduced false positives by 45% through systematic rule tuning.
GCC Compliance Mapping Automation
securityBuilt a compliance mapping framework with Python scripts that cross-reference ISO 27001 controls against NCA ECC, SAMA CSF, ADHICS, PDPL, UAE IA, and Bahrain NCSC. Scripts auto-detect existing ISO controls in rules and append matched regional framework controls from a master spreadsheet, cutting manual mapping effort by 60%.
NoxShield SIEM
securityFull-featured security operations dashboard with live Wazuh API integration, geolocation attack maps, MITRE ATT&CK visualization, and compliance tracking (PCI-DSS, HIPAA, NIST). Backed by SQLite with auto-refreshing data pipelines.
Multi-Sensor Intrusion Detection IoT
developmentIoT security solution using ESP32, motion/gas/fire sensors, and ESP32-CAM. Engineered a Flutter + Firebase mobile app for real-time alerts, improving response time by 60%.