LinkedIn GitHub SOC Portfolio Zero2Aura Email Profile views
SOC Analyst & DFIR Specialist specializing in security monitoring, proactive threat detection, digital forensics, and security tool engineering. Currently completing intensive SOC & cybersecurity tracks at NTI (Fortinet SecOps) and ITI (Enterprise Network Hardening), working in DFIR at the Digital Egypt Pioneers Initiative (DEPI), and serving as a Cybersecurity Instructor at Zero2Aura.
Wazuh FortiSIEM FortiAnalyzer Splunk Elastic Sentinel Defender Velociraptor
MITRE ATT&CK Sigma Rules STIX 2.1 FortiGuard YARA MISP ThreatScopeX
Volatility Autopsy FTK Imager KAPE EZ Tools Memory Forensics
Cisco Routing & Switching Wireshark Suricata Zeek pfSense SSH Hardening
Python Bash PowerShell C/C++ SQL Linux Docker Git
| Project | Description | Stack / Focus |
|---|---|---|
| π ThreatScopeX | Advanced log intelligence and threat detection engine with 115+ built-in detection rules | Python, MITRE ATT&CK, Sigma, STIX 2.1 |
| π IR-Report-Generator | Browser-based incident response reporting tool supporting 40+ security tool artifacts | HTML5, CSS3, JS, MITRE Navigator |
| π‘οΈ SOC Lab Project | End-to-end enterprise attack simulation, Wazuh detection, and automated IR simulation | Wazuh, Sysmon, EventLogs, Ubuntu, PowerShell |
| π£ Phishing IR Framework | Complete 6-phase email forensic investigation framework aligned with NIST 800-61 | Email Header Forensics, IOC Extraction |
National Telecommunication Institute (NTI) | SOC Analyst Intern (FortiAnalyzer + FortiSIEM) | August 2026 β Present
β’ Completing intensive SOC Analyst track focused on Fortinet Security Operations workflows: event examination, event handlers, automated playbooks, forensic analysis, and threat intelligence reporting.
β’ Using FortiAnalyzer for log collection and analysis, FortiView searches, incident management, threat hunting, custom reports, and Incident Response playbook creation and monitoring.
β’ Operating FortiSIEM for real-time and historic searches, event correlation, custom incident rules, dashboard configuration, and UEBA-based threat hunting with FortiGuard Threat Intelligence.
β’ Practicing detection, analysis, and remediation of security incidents using traditional and AI/ML-assisted methods; preparing for FCP β Security Operations and NSE 6 FortiSIEM Analyst certifications.
Information Technology Institute (ITI) | Cybersecurity Intern | April 2026 β Present
β’ Engineered and hardened multi-zone enterprise network architecture in Cisco Packet Tracer with multi-VLAN Layer 2/3 segmentation, dynamic DHCP, and multi-area OSPF routing for secure high-availability communication.
β’ Designed and enforced Extended ACLs to control traffic flow, isolate wireless zones, and restrict management-plane and server access to authorized hosts.
β’ Hardened network appliances by enforcing cryptographic SSH on VTY lines and restricting management access; successfully defended architecture before ITI evaluation panel.
β’ Completed modules in Cyber Security Essentials, Ethical Hacking & Vulnerability Assessment, and Huawei HCCDA Tech Essentials (cloud computing and ICT infrastructure).
Digital Egypt Pioneers Initiative (DEPI) | Digital Forensics Investigator | Jan 2025 β Present
β’ Conducting digital forensics examinations, artifact analysis, and memory/disk investigation.
Zero2Aura Tech Academy | Cybersecurity Instructor | Oct 2025 β Present
β’ Training students and aspiring security analysts in Cybersecurity, DFIR, Penetration Testing, and Networking.
Digital Egypt Pioneers Initiative (DEPI) | Cyber Security Incident Response Analyst | Oct 2024 β May 2025
β’ Analyzed security alerts, mapped incidents to MITRE ATT&CK, and executed IR playbooks.
The British University in Egypt (BUE) | Cyber Security Intern | Jul 2024