Breaking things on purpose, so I understand how to defend them.
I'm making the shift from operations into the world of logs, alerts, and infrastructure that isn't supposed to fail. This profile is my lab notebook in public.
I don't learn a system by reading about it β I stand it up, attack it, watch it fail, and rebuild it properly. Every repo here started as a question I couldn't answer yet.
Right now that means:
- Standing up detection pipelines and learning to read what they're telling me
- Automating the boring, error-prone parts of infrastructure
- Mapping real attacker behavior to real defensive signal
ansible-linux-hardening A playbook that patches and locks down Linux servers automatically.
soc-lab-wazuh-elk A homegrown watchtower β detection stack built from scratch, an intrusion simulated against it, alerts mapped back to real attacker behavior.
CreatorLog An Android app built to track Instagram song posts and content ideas β Kotlin, Jetpack Compose, and Room.
Still learning. Still building. Still breaking things on purpose.