I build practical SOC automations that security teams actually use.
My focus is on alert triage, threat intelligence enrichment, and automated response.
- SOAR Workflows: n8n automation for IAM and alert response
- Detection Engineering: Splunk, QRadar, Sentinel integrations
- Automation Pipelines: Python backend logic supporting scalable workflows
- Security Frameworks: MITRE ATT&CK, SOC best practices
- n8n SOC Automation Workflows – 10× more clones than other repos
- Python Security Automation – Supporting services for workflow automation
