Skip to content
MG logo MAHDI GHAZNAWY
Actively seeking cybersecurity roles

Cybersecurity-focused candidate ready for SOC work.

Fast-learning cybersecurity professional with real-world network operations experience in live production environments. I focus on threat detection, incident investigation, network analysis, and security hardening for SOC and blue team roles.

1
Current NTAC role
3
Featured projects
SOC
Career focus
Operational Snapshot
splunk search index=prod sourcetype=wineventlog
`notable`
| search risk_score >= 70 OR signature="Mimikatz"
| stats count by src, user, signature
| sort -count
| head 5
pfSense

VLAN segmentation, IDS feeds to SIEM, alerting on policy violations.

Wazuh + ELK

Host telemetry, correlation rules, dashboards for lateral movement & persistence.

Focused on real-world blue team readiness

Detection mindset

  • • Analyze network traffic for anomalies
  • • Identify suspicious behavior and attack patterns
  • • Escalate issues with clear documentation

Investigation focus

  • • Review logs, system symptoms, and evidence
  • • Support triage and root cause analysis
  • • Produce concise findings and recommendations

Security foundation

  • • Network segmentation and firewall hardening
  • • Endpoint protection and monitoring
  • • Practical blue team problem solving

Experience

NTAC Technician I (Network Technical Assistance Center) — Mercury Fiber

Monitor and respond to service-impacting incidents in live production environments, analyze logs and network behavior to identify root causes, and escalate issues with structured documentation under time-sensitive conditions.

September 2025 – Present
Analyze logs, network behavior, and system symptoms to support root cause analysis.
Triage and escalate incidents using structured operational procedures and clear handoff notes.
Communicate incident details accurately to escalation teams under SLA-driven conditions.
Operate in a real-world production environment where availability, speed, and accuracy matter.

What I Do

Threat Detection

Network traffic analysis, anomaly identification, alert triage, and escalation support.

Investigation

Digital forensics, evidence review, root cause analysis, and incident documentation.

Defense & Hardening

Firewall configuration, segmentation, endpoint protection, and security control improvement.

About Mahdi

I am a cybersecurity-focused candidate with real-world network operations experience and a strong interest in SOC, blue team, and analyst work. My background combines live production incident handling with project work in network security, digital forensics, and threat detection.

  • • Current role: NTAC Technician I at Mercury Fiber
  • • Focus: SOC operations, threat detection, investigation, and network security
  • • Tooling: Splunk, Wazuh, Elastic Stack, Azure Sentinel, Wireshark, Nmap, Nessus, Autopsy
  • • Certifications: Security+, CySA+, Network+, SSCP, Pentest+, Linux Essentials, A+, ITIL 4
  • • Degree: B.S. in Cybersecurity and Information Assurance (WGU)

Core Skills

Log analysis and triage
Digital forensics fundamentals
Network traffic analysis
Endpoint and SIEM monitoring
Python, Bash, PowerShell
Structured incident documentation

Contact

I am seeking a cybersecurity role where I can contribute in detection, investigation, and blue team operations.