I document defensive security work end-to-end: SIEM analysis in Splunk, incident response, phishing triage, threat hunting, digital forensics, and detection engineering - every investigation written as a case study with findings and MITRE ATT&CK mapping.
Portfolio (8 documented SOC investigations): soc-analyst-portfolio
Pinned repositories:
- soc-analyst-portfolio - 8 end-to-end SOC investigations: Splunk C2 beaconing detection, phishing triage, DFIR, Remcos RAT forensics, OSINT-driven hunting, Snort detection engineering
- TrustGuard-AI - cross-channel scam detection (calls/SMS/chat) with Urdu and Roman Urdu coverage - Alibaba Cloud AI Hackathon Pakistan 2026
- rapid-invoicing - FBR-compliant invoicing SaaS: JWT, RBAC, CSRF, rate limiting - real production security work
- android-threat-detection-research - Android 15 threat modeling mapped to MITRE ATT&CK producing YARA rules and network IoCs for blue teams (final-year project)
BS Cybersecurity, Riphah International University (2026) | Islamabad, Pakistan