▸ COMMAND CENTER DATA
| SYSTEM | CURRENT STATE | SCOPE |
|---|---|---|
| ROLE | Director · IT & Cyber Security | Mints Global |
| PRIMARY MODE | BUILD → DETECT → EXPLAIN → VERIFY | Security engineering |
| ACTIVE DOMAINS | AI Security · CTI · IoT · DFIR · SOC | Research + engineering |
| PUBLIC PROJECTS | 53 | GitHub public repositories |
| OPERATING PRINCIPLE | Evidence before claim · Verify before action | Human-governed security |
MISSION: Build practical security systems that turn telemetry, intelligence and automation into explainable, verifiable decisions.
Current
Leading cybersecurity engineering, security product development and technical security initiatives across offensive security, incident response, cloud/application security, OT/IoT security, AI security and security products including ShieldDesk.
Engineering focus: security automation · AI-assisted analysis · evidence-driven decisions · production-minded architecture.
| Capability | Engineering Focus | Representative Systems |
|---|---|---|
| SOC / Detection | Alert normalization · investigation · response | ShieldDesk |
| Threat Intelligence | IOC extraction · ATT&CK mapping · knowledge graphs | CTI Analysis |
| IoT Security | Honeypots · telemetry · botnet detection | SENTINEL-IoT |
| AI Security | LLM workflows · verification · human governance | ShieldDesk · AI research |
| DFIR | Evidence handling · forensic automation · analysis | Forensic Automation |
| Identity Security | Identity graphs · risk analytics | TOTAL ENTITY |
| Security Automation | APIs · orchestration · agents · MCP | CODEX CYBERSTRIKE |
| Secure Engineering | Backend · infrastructure · access control · auditability | Python · FastAPI · Docker |
| NOW | NEXT | EXPLORING |
|---|---|---|
| ShieldDesk | Security knowledge graph | Agentic SOC |
| AI security research | Autonomous security validation | LLM security |
| Security automation | Remediation workflows | Advanced DFIR |
| CTI engineering | MCP security tooling | Security digital twins |
AI-assisted SOC control plane
Problem → Security telemetry and investigations need structured analysis, evidence and controlled action.
Approach → Alert normalization · investigation · blast-radius analysis · remediation planning.
Security model → Human governance · RBAC · audit trail · evidence controls · signed dispatch.
Access → Repository
IoT threat detection & honeypot system
Problem → Detect and understand hostile activity against exposed IoT-style services.
Approach → Vulnerable-service emulation · attack capture · telemetry · dashboard/API.
Security model → Isolated experimentation · observable attack activity · detection-focused analysis.
Access → Repository
Threat intelligence analysis pipeline
Problem → Convert unstructured threat intelligence into actionable security relationships.
Approach → IOC extraction · MITRE ATT&CK mapping · relation extraction · knowledge graph.
Security model → Evidence-linked intelligence with LLM-assisted analysis.
Access → Repository
Cybersecurity Engineer · AI Security Builder · Researcher
AI security · threat intelligence · IoT/embedded security · digital forensics · secure systems
BUILD → DETECT → EXPLAIN → VERIFY
Development, research and experimentation are intentionally separated from production claims.
Core: Python · React · FastAPI · Docker · PostgreSQL · Node.js · TypeScript
Security: Kali Linux · Burp Suite · Nmap · Wireshark · Volatility 3 · MITRE ATT&CK
AI / Data: PyTorch · scikit-learn · Redis · Elasticsearch · LLM tooling
| Project | Domain | Stack | Access |
|---|---|---|---|
| ShieldDesk | AI-assisted SOC | AI · FastAPI · React · PostgreSQL | Repo |
| SENTINEL-IoT | IoT threat detection | Python · Honeypot · ML | Repo |
| CTI Analysis | Threat intelligence | Python · NLP · MITRE ATT&CK | Repo |
| AI Digital Safety Assistant | Personal security | AI · FastAPI · Android | Repo |
| TOTAL ENTITY | Identity risk | Identity Graph · Security Analytics | Repo |
| Vulnerability Management | Exposure management | NVD/CISA · Neo4j · Risk | — |
| CODEX CYBERSTRIKE | Security orchestration | AI · MCP · Security tooling | — |
| Forensic Automation | DFIR | ML · Volatility 3 · CASE | — |
🛡️ ShieldDesk — AI-assisted SOC control plane for alert normalization, investigation, blast-radius analysis, remediation planning, human governance, signed fleet dispatch and evidence/audit controls.
🛰️ SENTINEL-IoT — IoT botnet early-warning and honeypot system that emulates vulnerable services, captures attack activity and exposes security telemetry through a dashboard/API.
🧬 CTI Analysis — Automated CTI pipeline for IOC extraction, MITRE ATT&CK mapping, relation extraction, knowledge-graph construction and LLM-assisted intelligence analysis.
Generated from GitHub contribution activity by repository workflow.
Focus: Cybersecurity engineering · AI security · security automation · CTI · IoT security · secure application development








