Detection engineering, cloud automation, and the occasional 3 a.m. side build. Every card links straight to its repo.
Implemented detection alerts, learned to read and write Russian, and investigated the chain of command to determine the legitimacy of a highly suspicious user.
Integrated SolarWinds Service Desk, custom KQLs and Analytics Rules, Teams, and Logic Apps for more efficient, robust security event detection and lifecycle management.
Placeholder bio. Analyst by day, poet by night, perpetually mid-experiment. I spend my hours hunting anomalies across cloud telemetry and turning tedious response steps into automations nobody has to think about again.
San Diego born and based. I like the part of security where a small, well-placed detection quietly saves a week of somebody’s life — and the part of writing where a small, well-placed line does the same thing.
Off the clock: reverse-engineering things that were never meant to be opened, drafting verses on the drive home, and drinking more coffee than the threat model allows.