"Always code as if the person maintaining your code will be a violent psychopath who knows where you live."
β John F. Woods, 1991
- Developed a malicious activity detection model using Python and PyTorch, capable of processing over 1 million offense entries daily.
- Cooperated with SIEM operators and SOC analysts to build a real-time situational awareness dashboard for SOC using Next.js, React and TypeScript.
- Developed an android app and server for OTP authentication with Java, Spring Boot and FCM
- Created a desktop application for log analysis, labeling and incident report using PyQt.
- Currently in development of WION with Next.js, MongoDB, and Tailwind stack
- Led a department-wide Git workshop, training 7 developers on advanced branching strategies and conflict resolution.
- Orchestrated a version control migration from Gitea to GitLab for a team of 15, maintaining 100% code integrity.
- Set up a Jenkins pipeline integrated with realtime Slack alert that reduced deployment time from 1 hours to 15 minutes and caught 95% of bugs before production.
- Containerized an application into 8 microservices using Docker, improving deployment flexibility and scaling.
- Configured a VMware ESXi server to host company-wide GitLab, with 99.9% uptime.
- Implemented a Traefik reverse proxy with automatic SSL renewal via Let's Encrypt, securing 5+ internal services.
- Designed MongoDB schemas for an online social network.
- Designed MariaDB schemas for a log management system, optimized for data integrity and consistency.
- Utilized Redis to cache frequently accessed statistics and analytics, reducing database load by 10%.
- Developed a custom ChatGPT-powered log analysis assistant to aid manual analysis.
- Conducted a comparative study between IBM Watson and ChatGPT-4, identifying specific use cases where each excels in cybersecurity applications.
- Implemented an anomaly detection system using scikit-learn.
- Created custom Grafana dashboards for real-time monitoring of system health and security events integrated with QRadar.
- Integrated QRadar with custom log sources, opensource threat inteligence(such as Alien Vault) and opensource SIEM rule repository to improve user experience.
- Integrated Sumo Logic Cloud SIEM with a custom dashboard and rule management solution.
- Created comprehensive API documentation using OpenAPI/Swagger, and used the documentation with App Scan(a web security testing tool by IBM/HCL) to proactively find vulnerabilities and bugs.
- Developed an internal knowledge base using Docusaurus, consolidating information from multiple sources and reducing onboarding time by 30%.
- Experienced in writing a data analysis and report using LaTeX,R and Sweave
Credit to Jonah Lawrence