Hi, I'm
Detecting threats before they become incidents — SIEM · Threat Hunting · MITRE ATT&CK · ISO 27001
Security Engineer with 4+ years of experience protecting enterprise infrastructure. Started as an IT Operations Engineer at Digi-Texx and evolved into a dedicated Cyber Security specialist with deep expertise in SIEM operations and detection engineering.
I specialize in building detection pipelines aligned with MITRE ATT&CK, operating enterprise SIEM platforms (Wazuh/Splunk), and conducting proactive threat hunting to uncover adversary activity before damage occurs.
Currently at STS Software Technology, architecting centralized security monitoring and driving ISO/IEC 27001:2022 compliance initiatives across the organization.
CÔNG TY CỔ PHẦN CÔNG NGHỆ PHẦN MỀM STS
Công Ty TNHH DIGI-TEXX
Công Ty TNHH DIGI-TEXX
Công Ty TNHH DIGI-TEXX
A curated collection of Wazuh and Sigma detection rules mapped to MITRE ATT&CK. Covers credential access, lateral movement, ransomware indicators, and defense evasion. Rules validated with Atomic Red Team and Caldera simulations.
Structured threat hunting playbooks with ready-to-use Wazuh and Splunk SPL queries for each ATT&CK technique. Each playbook includes hypothesis, step-by-step investigation guide, response actions, and false positive handling.
Python CLI tool for automated IOC analysis — checks IPs, domains, and file hashes against VirusTotal and AbuseIPDB. Features auto-classification, color-coded Rich terminal output, bulk processing, and JSON/CSV export.
Open to new opportunities in security engineering, threat detection, or blue team roles. Let's connect.