Cybersecurity-focused candidate ready for SOC work.
Fast-learning cybersecurity professional with real-world network operations experience in live production environments. I focus on threat detection, incident investigation, network analysis, and security hardening for SOC and blue team roles.
`notable` | search risk_score >= 70 OR signature="Mimikatz" | stats count by src, user, signature | sort -count | head 5
VLAN segmentation, IDS feeds to SIEM, alerting on policy violations.
Host telemetry, correlation rules, dashboards for lateral movement & persistence.
Detection mindset
- • Analyze network traffic for anomalies
- • Identify suspicious behavior and attack patterns
- • Escalate issues with clear documentation
Investigation focus
- • Review logs, system symptoms, and evidence
- • Support triage and root cause analysis
- • Produce concise findings and recommendations
Security foundation
- • Network segmentation and firewall hardening
- • Endpoint protection and monitoring
- • Practical blue team problem solving
Projects
Enterprise Network Security Implementation & Hardening
Implemented enterprise-grade security controls including firewall configuration, VLAN segmentation, and centralized endpoint protection. Reduced attack surface and strengthened phishing resilience through layered defense strategies.
Digital Forensics – Insider Threat Investigation
Conducted forensic analysis to recover deleted intellectual property data, analyzed user activity and system artifacts, and produced structured reports aligned with legal and compliance standards.
Network Traffic Analysis & Vulnerability Assessment
Analyzed network traffic and performed vulnerability assessments to identify exposed services, misconfigurations, and attack paths, then prioritized remediation based on risk impact.
Experience
NTAC Technician I (Network Technical Assistance Center) — Mercury Fiber
Monitor and respond to service-impacting incidents in live production environments, analyze logs and network behavior to identify root causes, and escalate issues with structured documentation under time-sensitive conditions.
What I Do
Threat Detection
Network traffic analysis, anomaly identification, alert triage, and escalation support.
Investigation
Digital forensics, evidence review, root cause analysis, and incident documentation.
Defense & Hardening
Firewall configuration, segmentation, endpoint protection, and security control improvement.
About Mahdi
I am a cybersecurity-focused candidate with real-world network operations experience and a strong interest in SOC, blue team, and analyst work. My background combines live production incident handling with project work in network security, digital forensics, and threat detection.
- • Current role: NTAC Technician I at Mercury Fiber
- • Focus: SOC operations, threat detection, investigation, and network security
- • Tooling: Splunk, Wazuh, Elastic Stack, Azure Sentinel, Wireshark, Nmap, Nessus, Autopsy
- • Certifications: Security+, CySA+, Network+, SSCP, Pentest+, Linux Essentials, A+, ITIL 4
- • Degree: B.S. in Cybersecurity and Information Assurance (WGU)
Core Skills
Contact
I am seeking a cybersecurity role where I can contribute in detection, investigation, and blue team operations.